---
title: "STACKIT OpenSearch"
description: "Managed search and analytics engine for real-time indexing, log processing, and full-text search with integrated OpenSearch Dashboards."
scfAsset:
  category: "service"
  managed: true
  marketplaceUrl: "https://marketplace.stackit.cloud/en/products"
  tags: ["Search", "OpenSearch", "Analytics", "Logging", "Database"]
  maintainers:
    - user: "alexander.gabert"
source_url: "https://framework.stackit.cloud/data-and-ai/assetcontainer/stackit/stackit-service-opensearch/"
source_file: "docs/data-and-ai/assetcontainer/stackit/stackit-service-opensearch.mdx"
---

STACKIT OpenSearch is a managed search service that abstracts the operational complexity of scaling distributed search clusters and log analytics.

## Service Overview
- **Turnkey Search & Analytics**: Rapid indexing for enterprise search, security analytics, and log collection.
- **Integrated Visualization**: Includes pre-installed OpenSearch Dashboards for custom data visualization.
- **Automated Lifecycle**: Handles cluster health checks, automated snapshots, and security updates.

## Technical Details
- **Architecture**: Single-node or high-availability multi-node cluster configurations.
- **Security & Access**: IP allowlisting, SSL/TLS transport encryption, and STACKIT IAM integration.
- **Automation**: Fully configurable via Terraform, REST API, STACKIT CLI, and Go/Python SDKs.

## Backups and Network

The values below come from the STACKIT documentation and update themselves.

> From the STACKIT docs: [Architecture › Backup system](https://docs.stackit.cloud/products/databases/opensearch/basics/architecture/#backup-system) (Source updated 13.08.2026, copied 05.10.2026)

The integrated Backup Manager automatically creates full backups every 4 hours and retains them for 14 days. You can also trigger manual backups and restore from existing backups through the service dashboard.

> From the STACKIT docs: [Architecture › Network access](https://docs.stackit.cloud/products/databases/opensearch/basics/architecture/#network-access) (Source updated 13.08.2026, copied 05.10.2026)

STACKIT OpenSearch instances are accessible using public IP addresses, allowing integration with:

- Cloud Foundry applications
- Kubernetes workloads
- Virtual machines
- External systems

Access is secured through ACLs (Access Control Lists) and instance-level authentication.

> From the STACKIT docs: [Architecture › Single Node vs. Cluster](https://docs.stackit.cloud/products/databases/opensearch/basics/architecture/#single-node-vs-cluster) (Source updated 13.08.2026, copied 05.10.2026)

**Single Node**

- Runs on a single VM
- Suitable for development and testing
- Not recommended for production use

**Cluster (Replica Set)**

- Consists of 3 nodes distributed across multiple availability zones
- Provides high availability and fault tolerance
- Recommended for production workloads
- Ensures service continuity even if a node or availability zone fails

## Limitations & Constraints
- **Broker Management Scope**: Cloud Foundry-provisioned instances cannot be directly altered via the STACKIT Cloud Portal.
- **Certification Boundary**: Excludes BSI C5 compliance certification due to upstream framework architecture.
- **Public ACL Endpoint**: Connectivity relies on public endpoints guarded by strict IP allowlists (private endpoints unavailable).

<LinkCard title="STACKIT OpenSearch Documentation" href="https://docs.stackit.cloud" />
