Neworkfirewall
Basics
- Its a regional product
- Add ingres route table to the internet gateway which redirects traffic to the network firewall VPC endpoints
- Any traffic leaving the firewall subnets refer to firewall route tables
- Network firewall consists of
- Firewall - VPC subnets it is protecting, the subnets that firewall endpoints are going & firewall policy
- Poilicy - One firewall can have only one policy but same policy can be used in multiple firewalls
- Rule Groups - Processing order & default action
- Rules - Stateful or Stateless