Skip to main content

💼 [CloudFront.6] CloudFront distributions should have WAF enabled

  • ID: /frameworks/aws-fsbp-v1.0.0/cloudfront/06

Description​

AWS WAF is a web application firewall that helps protect web applications and APIs from attacks. It allows you to configure a set of rules, called a web access control list (web ACL), that allow, block, or count web requests based on customizable web security rules and conditions that you define. Ensure your CloudFront distribution is associated with an AWS WAF web ACL to help protect it from malicious attacks.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST SP 800-53 Revision 5 → 💼 AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows3748no data
💼 PCI DSS v4.0.1 → 💼 6.4.2 For public-facing web applications, an automated technical solution is deployed that continually detects and prevents web-based attacks.9no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance