As cited
Citation snapshot as of .
cloud saas
AWS makes it easier to spot firewall rules that have gone quiet
AWS Network Firewall now offers a rule hit count capability that shows security teams which stateful firewall rules are actively matching traffic. The feature applies to both custom and managed rule groups, is enabled by default, and incurs no additional charges beyond standard Network Firewall costs.
Why it matters: AWS customers can use this visibility to identify and remove unused firewall rules, reducing configuration bloat and validating that security controls function as intended.
- Source published
- First seen by Cybersecurity Tracker