Skip to content

Neworkfirewall

Basics

  • Its a regional product
  • Add ingres route table to the internet gateway which redirects traffic to the network firewall VPC endpoints
  • Any traffic leaving the firewall subnets refer to firewall route tables
  • Network firewall consists of
  • Firewall - VPC subnets it is protecting, the subnets that firewall endpoints are going & firewall policy
  • Poilicy - One firewall can have only one policy but same policy can be used in multiple firewalls
  • Rule Groups - Processing order & default action
  • Rules - Stateful or Stateless