跳至内容

How to add managed stateful rule groups to network firewall with CloudFormation ?

1

Via the console, we can add managed stateful rule groups : how to achieve the same thing using a cloud formation template ?

For example :

PriorityName
1AbusedLegitMalwareDomainsStrictOrder
2BotNetCommandAndControlDomainsStrictOrder
3AbusedLegitBotNetCommandAndControlDomainsStrictOrder
4ThreatSignaturesBotnetStrictOrder
5ThreatSignaturesBotnetWebStrictOrder

The objective is also to have a strict order of priorities as indicated, as an example, in the table above.

Thank you in advance for your answers.

3 回答
1

Hello,

You can use AWS::NetworkFirewall::FirewallPolicy to add managed rule groups to your Network Firewall policies. Sub-Property StatefulRuleGroupReference can be used to set Priority for each managed rule group specified in property ResourceArn. To get the ARN of the AWS managed rule group, use list-rule-groups AWS CLI. See example for reference.

AWS
支持工程师

已回答 4 年前

1

ResourceArns for Managed Rulegroups follow the pattern: "arn:aws:network-firewall:<region>:aws-managed:stateful-rulegroup/<rulegroup-name"

For example: "arn:aws:network-firewall:ap-southeast-2:aws-managed:stateful-rulegroup/ThreatSignaturesMalwareMobileActionOrder"

已回答 3 年前

0

Hello,

Please follow the below link to add managed stateful rule groups to network firewall with CloudFormation: https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-networkfirewall-rulegroup.html#aws-resource-networkfirewall-rulegroup--examples

AWS
支持工程师

已回答 4 年前

  • Thank you for your answer, but it does not answer my question. The question is about the stateful rule groups managed by AWS, not the rules you create yourself.

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。