AWS WAF for HTTP APIs

2

Are there any plans to add WAF support for the new HTTP API endpoints?

preguntada hace 4 años1760 visualizaciones
16 Respuestas
1

Currently, we do not support WAF for HTTP APIs. We have a backlog item for this request. Thank you for reaching out.

regards,
Senthil

respondido hace 4 años
1

2023 still waiting :/

Joan
respondido hace un año
0

Hello there,

Since AWS is not providing the mentioned HTTP API end-point protection you are welcome to try Wallarm's API protection service - https://wallarm.com/solutions#api-protection

It is easy to try the service - just open a trial account at https://us1.my.wallarm.com/signup

Thanks.

respondido hace 4 años
0

It seems like most WAF providers out there don't provide support for HTTP APIs. Even saw one which had a support page saying to just turn off the WAF when it comes to API requests. Too prone to false positives lol.
I checked out Wallarm too as per the other suggestion and looks like they actually accurately handle API requests without any manual tuning

respondido hace 4 años
0

I'm glad to hear that you liked the Wallarm API protection product - the platform also protects gRPC, GraphQL and Websocket protocols. Feel free to reach out to sales@wallarm.com for a detailed demo.

respondido hace 4 años
0

Is there an ETA on this feature, or is the backlog visible?

PJR
respondido hace 4 años
0

Is there an ETA on this feature?

respondido hace 3 años
0

Seconding an interest in what the ETA is, or transparency into the backlog progress.

mwalle
respondido hace 3 años
0

I'm also in need for waf support for apigatewayv2

respondido hace 3 años
0

Much needs for me, WAF for HTTP APIs

respondido hace 3 años
0

We are also really in need of this.

cmanzi
respondido hace 3 años
0

Another upvote for this backlog item. Thanks

mjvan
respondido hace 3 años
0

+1 feature needed !
Thanks

respondido hace 3 años
0

+1 for either WAF support or private HTTP API.

We would love to switch to HTTP API gateways and make use of the built-in JWT authorizers, but many of our API should only be accessible internally and the lack of support on HTTP API's currently pushes us to continue to use REST APIs.

Thank you!

respondido hace 3 años
0

Hi,

We'd very much like this feature processed on your backlog. WAF protection for HTTP APIs would greatly help us as we're figuring out how to protect us from harmful intents.

Regards,

tom
respondido hace un año
0

+1 feature needed for both HTTP API and apigatewayv2

Junaid
respondido hace 10 meses

No has iniciado sesión. Iniciar sesión para publicar una respuesta.

Una buena respuesta responde claramente a la pregunta, proporciona comentarios constructivos y fomenta el crecimiento profesional en la persona que hace la pregunta.

Pautas para responder preguntas