AWS WAF for HTTP APIs

2

Are there any plans to add WAF support for the new HTTP API endpoints?

已提問 4 年前檢視次數 1759 次
16 個答案
1

Currently, we do not support WAF for HTTP APIs. We have a backlog item for this request. Thank you for reaching out.

regards,
Senthil

已回答 4 年前
1

2023 still waiting :/

Joan
已回答 1 年前
0

Hello there,

Since AWS is not providing the mentioned HTTP API end-point protection you are welcome to try Wallarm's API protection service - https://wallarm.com/solutions#api-protection

It is easy to try the service - just open a trial account at https://us1.my.wallarm.com/signup

Thanks.

已回答 4 年前
0

It seems like most WAF providers out there don't provide support for HTTP APIs. Even saw one which had a support page saying to just turn off the WAF when it comes to API requests. Too prone to false positives lol.
I checked out Wallarm too as per the other suggestion and looks like they actually accurately handle API requests without any manual tuning

已回答 4 年前
0

I'm glad to hear that you liked the Wallarm API protection product - the platform also protects gRPC, GraphQL and Websocket protocols. Feel free to reach out to sales@wallarm.com for a detailed demo.

已回答 4 年前
0

Is there an ETA on this feature, or is the backlog visible?

PJR
已回答 4 年前
0

Is there an ETA on this feature?

已回答 3 年前
0

Seconding an interest in what the ETA is, or transparency into the backlog progress.

mwalle
已回答 3 年前
0

I'm also in need for waf support for apigatewayv2

已回答 3 年前
0

Much needs for me, WAF for HTTP APIs

已回答 3 年前
0

We are also really in need of this.

cmanzi
已回答 3 年前
0

Another upvote for this backlog item. Thanks

mjvan
已回答 3 年前
0

+1 feature needed !
Thanks

已回答 3 年前
0

+1 for either WAF support or private HTTP API.

We would love to switch to HTTP API gateways and make use of the built-in JWT authorizers, but many of our API should only be accessible internally and the lack of support on HTTP API's currently pushes us to continue to use REST APIs.

Thank you!

已回答 3 年前
0

Hi,

We'd very much like this feature processed on your backlog. WAF protection for HTTP APIs would greatly help us as we're figuring out how to protect us from harmful intents.

Regards,

tom
已回答 1 年前
0

+1 feature needed for both HTTP API and apigatewayv2

Junaid
已回答 10 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南