💼 [WAF.2] AWS WAF Classic Regional rules should have at least one condition
-
Contextual name: 💼 [WAF.2] AWS WAF Classic Regional rules should have at least one condition
-
ID:
/frameworks/aws-fsbp-v1.0.0/waf/02
-
Located in: 💼 WAF
Description​
A WAF Regional rule can contain multiple conditions. The rule's conditions allow for traffic inspection and take a defined action (allow, block, or count). Without any conditions, the traffic passes without inspection. A WAF Regional rule with no conditions, but with a name or tag suggesting allow, block, or count, could lead to the wrong assumption that one of those actions is occurring.
Similar​
- AWS Security Hub
- Internal
- ID:
dec-c-60e89005
- ID:
Similar Sections (Give Policies To)​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
💼 NIST SP 800-53 Revision 5 → 💼 AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows | 37 | 46 | ||
💼 NIST SP 800-53 Revision 5 → 💼 SC-7 Boundary Protection | 29 | 4 | 50 | |
💼 NIST SP 800-53 Revision 5 → 💼 SC-7(11) Boundary Protection _ Restrict Incoming Communications Traffic | 22 | |||
💼 NIST SP 800-53 Revision 5 → 💼 SC-7(16) Boundary Protection _ Prevent Discovery of System Components | 23 | |||
💼 NIST SP 800-53 Revision 5 → 💼 SC-7(21) Boundary Protection _ Isolation of System Components | 22 |
Sub Sections​
Section | Sub Sections | Internal Rules | Policies | Flags |
---|