πΌ [WAF.8] AWS WAF Classic global web ACLs should have at least one rule or rule group
-
Contextual name: πΌ [WAF.8] AWS WAF Classic global web ACLs should have at least one rule or rule group
-
ID:
/frameworks/aws-fsbp-v1.0.0/waf/08
-
Located in: πΌ WAF
Descriptionβ
A WAF global web ACL can contain a collection of rules and rule groups that inspect and control web requests. If a web ACL is empty, the web traffic can pass without being detected or acted upon by WAF depending on the default action.
Similarβ
- AWS Security Hub
- Internal
- ID:
dec-c-0c868fe0
- ID:
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST SP 800-53 Revision 5 β πΌ AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows | 35 | 39 | ||
πΌ NIST SP 800-53 Revision 5 β πΌ SC-7 Boundary Protection | 29 | 5 | 33 | |
πΌ NIST SP 800-53 Revision 5 β πΌ SC-7(11) Boundary Protection _ Restrict Incoming Communications Traffic | 15 | |||
πΌ NIST SP 800-53 Revision 5 β πΌ SC-7(16) Boundary Protection _ Prevent Discovery of System Components | 16 | |||
πΌ NIST SP 800-53 Revision 5 β πΌ SC-7(21) Boundary Protection _ Isolation of System Components | 16 |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|