Skip to main content

πŸ’Ό [APIGateway.4] API Gateway should be associated with a WAF Web ACL

  • Contextual name: πŸ’Ό [APIGateway.4] API Gateway should be associated with a WAF Web ACL
  • ID: /frameworks/aws-fsbp-v1.0.0/api-gateway/04
  • Located in: πŸ’Ό API Gateway

Description​

AWS WAF is a web application firewall that helps protect web applications and APIs from attacks. It enables you to configure an ACL, which is a set of rules that allow, block, or count web requests based on customizable web security rules and conditions that you define. Ensure that your API Gateway stage is associated with an AWS WAF web ACL to help protect it from malicious attacks.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows3539

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ AWS API Gateway REST API Stage is not associated with a WAF Web ACL 🟒1🟒 x6

Internal Rules​

RulePoliciesFlags
βœ‰οΈ dec-x-bfdadcc41