Skip to the content.

Below are the main categories of attacks that WAF provides protection for

Common configuration

Managed Rule Sets

These are AWS managed rules curated and maintained by the AWS Threat Research Team that provides protection against common application vulnerabilities (OWASP etc) or other unwanted traffic, without having to write your own rules. You can select and add some of the AWS managed rulegroups to protect your application from various threats.

Use-case specific rule groups provide incremental protection based on your application characteristics, such as the application OS or database.

Finally there are IP reputation rule groups managed by the Amazon threat intelligence team blocks known malicious IP addresses.

Rate-Based Rules

Depending upon your application needs and user traffic you can add rate limits to protect against DDoS attacks and other types of high-traffic anomalies.

Geographic Rules:

If you application and data needs to be restricted to certain locations you can add rules to block traffic from specific countries.

Deployment Best Practices

Below are the some best practices that can be utilized for effective WAF security while reducing risk of application availability issues.