πΌ [WAF.6] AWS WAF Classic global rules should have at least one condition
-
Contextual name: πΌ [WAF.6] AWS WAF Classic global rules should have at least one condition
-
ID:
/frameworks/aws-fsbp-v1.0.0/waf/06
-
Located in: πΌ WAF
Descriptionβ
A WAF global rule can contain multiple conditions. A rule's conditions allow for traffic inspection and take a defined action (allow, block, or count). Without any conditions, the traffic passes without inspection. A WAF global rule with no conditions, but with a name or tag suggesting allow, block, or count, could lead to the wrong assumption that one of those actions is occurring.
Similarβ
- AWS Security Hub
- Internal
- ID:
dec-c-31b71d89
- ID:
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST SP 800-53 Revision 5 β πΌ CA-9(1) Internal System Connections _ Compliance Checks | 15 | |||
πΌ NIST SP 800-53 Revision 5 β πΌ CM-2 Baseline Configuration | 7 | 13 |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|