Skip to main content

💼 [NetworkFirewall.10] Network Firewall firewalls should have subnet change protection enabled

  • Contextual name: 💼 [NetworkFirewall.10] Network Firewall firewalls should have subnet change protection enabled

  • ID: /frameworks/aws-fsbp-v1.0.0/network-firewall/10

  • Located in: 💼 Network Firewall

Description​

AWS Network Firewall is a stateful, managed network firewall and intrusion detection service that you can use to inspect and filter traffic to, from, or between your Virtual Private Clouds (VPCs). If you enable subnet change protection for a Network Firewall firewall, you can protect the firewall against accidental changes to the firewall's subnet associations.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 NIST SP 800-53 Revision 5 → 💼 CA-9(1) Internal System Connections _ Compliance Checks21
💼 NIST SP 800-53 Revision 5 → 💼 CM-2 Baseline Configuration725
💼 NIST SP 800-53 Revision 5 → 💼 CM-2(2) Baseline Configuration _ Automation Support for Accuracy and Currency15
💼 NIST SP 800-53 Revision 5 → 💼 CM-3 Configuration Change Control81725
💼 NIST SP 800-53 Revision 5 → 💼 SC-5(2) Denial-of-service Protection _ Capacity, Bandwidth, and Redundancy5

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags