Skip to main content

💼 [APIGateway.4] API Gateway should be associated with a WAF Web ACL

  • ID: /frameworks/aws-fsbp-v1.0.0/api-gateway/04

Description

AWS WAF is a web application firewall that helps protect web applications and APIs from attacks. It enables you to configure an ACL, which is a set of rules that allow, block, or count web requests based on customizable web security rules and conditions that you define. Ensure that your API Gateway stage is associated with an AWS WAF web ACL to help protect it from malicious attacks.

Similar

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST SP 800-53 Revision 5 → 💼 AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows3748no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS API Gateway REST API Stage is not associated with a WAF Web ACL🟢1🟢 x6no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-bfdadcc41