Network Firewall policies should have at least one associated rule group

Esta página aún no está disponible en español. Estamos trabajando en su traducción.
Si tienes alguna pregunta o comentario sobre nuestro actual proyecto de traducción, no dudes en ponerte en contacto con nosotros.

Description

This control verifies if a Network Firewall policy includes at least one stateful or stateless rule group.

A firewall policy dictates how traffic is monitored and managed within an Amazon Virtual Private Cloud (Amazon VPC). Configuring stateful and stateless rule groups enables packet filtering, regulates traffic flow, and establishes default traffic handling rules.

Remediation

For guidance on configuring firewall logging, refer to the Firewall policy settings in AWS Network Firewall section of the AWS Network Firewall Developer Guide.