aws AWS What's New ·

Amazon MSK Replicator adds OAuth 2.0 authentication for external Apache Kafka clusters

dataawsgaengineer
feature

Amazon MSK Replicator now supports OAuth 2.0 (SASL/OAUTHBEARER) authentication, allowing data replication from external Apache Kafka clusters to Amazon MSK Provisioned clusters. This enhancement enables migration, disaster recovery, and hybrid/multi-cloud data distribution for clusters configured with OAuth/OIDC. It builds on existing SASL/SCRAM and mTLS support, offering more flexibility for engineers managing Kafka replication. The new capability is generally available in all AWS regions where MSK Replicator operates.

Features (1)
  • OAuth 2.0 authentication for external Kafka replication

    Amazon MSK Replicator now supports OAuth 2.0 (SASL/OAUTHBEARER) authentication when replicating data from external Apache Kafka clusters, including on-premises or other cloud providers, to Amazon MSK Provisioned clusters. This allows for easier migration, disaster recovery, and data distribution across hybrid and multi-cloud environments for Kafka clusters using OAuth/OIDC authentication.

Read the original announcement →

https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-msk-replicator-OAuth-support

Related releases