ElasticSearch nodes should communicate with node to node encryption enabled.
Node-to-node encryption provides an additional layer of security on top of the default features of Amazon ES.
By default, domains do not use node-to-node encryption, and you can’t configure existing domains to use the feature.
Node-to-node encryption enables TLS 1.2 encryption for all communications within the VPC.
The following example will fail the AWS055 check.
The following example will pass the AWS055 check.