Help Center/ Config/ User Guide/ Resource Compliance/ Built-In Policies/ Elastic Load Balance/ ELB Listeners Are Configured to Use HTTPS or TLS
Updated on 2025-08-25 GMT+08:00

ELB Listeners Are Configured to Use HTTPS or TLS

Rule Details

Table 1 Rule details

Parameter

Description

Rule Name

elb-tls-https-listeners-only

Identifier

ELB Listeners Are Configured to Use HTTPS or TLS

Description

If any listener of a load balancer does not have the protocol set to HTTPS or LTS, this load balancer is non-compliant.

Tag

elb

Trigger Type

Configuration change

Filter Type

elb.loadbalancers

Rule Parameters

None

Application Scenarios

You need to add at least one listener after you have created a load balancer. Listeners listen to requests on load balancers. For details, see Listener Overview.

Set the protocol of your network load balancer listeners to TLS to encrypt data and prevent unauthorized access.

Set the protocol of your application load balancer listeners to HTTPS to encrypt data and prevent unauthorized access.

Solution

Add a TLS listener or Add an HTTPS listener to meet transmission encryption requirements.

Rule Logic

  • If any listener of a load balancer does not have the protocol set to HTTPS or LTS, this load balancer is non-compliant.
  • If all listeners of a load balancer have the protocol set to HTTPS or LTS, this load balancer is compliant.