AWS redshift: Recommend verify-full for Redshift SSL connections
Summary
Adds a note recommending the verify-full SSL mode for connections whenever possible.
Security assessment
Documents a security best practice to use verify-full SSL mode, which enforces certificate validation and mitigates MITM/eavesdropping on connections; it is guidance rather than a fix for a specific vulnerability.
Evidence
+We recommend using `verify-full` for SSL connections whenever possible.
Diff
diff --git a/redshift/latest/mgmt/python-configuration-options.md b/redshift/latest/mgmt/python-configuration-options.md index d1a807eee..d3cb62b60 100644 --- a//redshift/latest/mgmt/python-configuration-options.md +++ b//redshift/latest/mgmt/python-configuration-options.md @@ -715,0 +716,4 @@ The security of the connection to Amazon Redshift. You can specify either of the +###### Note + +We recommend using `verify-full` for SSL connections whenever possible. +