AWS makes it easier to spot firewall rules that have gone quiet
VulnAWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identify unused or redundant rules and validate whether security controls are working as intended. The capability covers stateful rules in both custom and managed rule groups, while stateless rules are not supported. The feature is enabled by default and comes at no additional Network Firewall cost, although standard charges still apply for storing and … More → The post AWS makes it easier to spot firewall rules that have gone quiet appeared first on Help Net Security.
Read full story at Help Net Security →