A Config rule that checks whether logging is enabled on AWS Web Application Firewall (WAFV2) regional and global web access control list (ACLs). The rule is NON_COMPLIANT if the logging is enabled but the logging destination does not match the value of the parameter.

This config rule supports the following parameters:

  • KinesisFirehoseDeliveryStreamArns
    • Required: No
    • Type: CSV
    • Description:Comma separated list of Kinesis Firehose delivery stream ARNs

ConfigRule
AWS::Config::ConfigRule


Source *
CustomPolicyDetails
SourceDetails

CloudFormation Template

Share Template