By Implementation

Service Control PoliciesConfig RulesAuto Remediation RulesConformance PacksAmazon GuardDutyAmazon InspectorAWS Security HubAWS Network FirewallRoute53 Resolver SecurityAmazon MacieS3 Bucket PoliciesCloudWatch Alarms and Event RulesAWS WAFAWS Secrets ManagerAWS Systems ManagerSecurity Groups & NACLsAWS KMSIAM Policies

By Service Protected

Configuration Packages

Strategy Guides

Other

Config Rules

AWS Shield Protection Enabled Check

A Config rule that checks whether an Application Load Balancer, Amazon CloudFront distributions, Elastic Load Balancer or Elastic IP has AWS Shield protection. This rule also checks if they have web ACL associated for Application Load Balancer and Amazon CloudFront distributions.

Items
1
Size
0.9 KB
Missing Parameters
AWSTemplateFormatVersion: "2010-09-09"
Description: ""
Resources:
  ConfigRule:
    Type: "AWS::Config::ConfigRule"
    Properties:
      ConfigRuleName: "fms-shield-resource-policy-check"
      Scope:
        ComplianceResourceTypes:
          - "AWS::CloudFront::Distribution"
          - "AWS::ElasticLoadBalancingV2::LoadBalancer"
          - "AWS::WAFRegional::WebACL"
          - "AWS::EC2::EIP"
          - "AWS::ElasticLoadBalancing::LoadBalancer"
          - "AWS::ShieldRegional::Protection"
          - "AWS::Shield::Protection"
      Description: "A Config rule that checks whether an Application Load Balancer, Amazon CloudFront distributions, Elastic Load Balancer or Elastic IP has AWS Shield protection. This rule also checks if they have web ACL associated for Application Load Balancer and Amaz..."
      Source:
        Owner: "AWS"
        SourceIdentifier: "FMS_SHIELD_RESOURCE_POLICY_CHECK"
Parameters: {}
Metadata: {}
Conditions: {}

Actions



Customize Template

Rule Settings


Rule Parameters


Trigger Settings

* Required field