💼 [WAF.7] AWS WAF Classic global rule groups should have at least one rule
- ID:
/frameworks/aws-fsbp-v1.0.0/waf/07
Description
A WAF global rule group can contain multiple rules. The rule's conditions
allow for traffic inspection and take a defined action (allow, block, or count).
Without any rules, the traffic passes without inspection. A WAF global rule
group with no rules, but with a name or tag suggesting allow, block, or count,
could lead to the wrong assumption that one of those actions is occurring.
Similar
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)