AWS App Runner introduces web application firewall (WAF) support for enhanced security
Share
Services
AWS App Runner now supports AWS web application firewall (WAF). [AWS WAF](/waf/) gives you control over what traffic reaches your web applications or APIs depending upon your security and business needs. App Runner makes it easier for developers to quickly deploy containerized web applications and APIs to the cloud, at scale, and without managing infrastructure. Now, you can strengthen the security posture of your web applications against web exploits and bots while benefiting from the simplicity and scalability offered by App Runner. You can place a security layer in form of WAF web access control lists (web ACLs) in front of your App Runner service endpoint to allow, block, or monitor web requests to your applications on the basis of predefined rules such as IP addresses, HTTP headers, HTTP body, URI strings, SQL injection, and cross-site scripting.
You can create WAF web ACLs using custom rules or use [Managed Rule Groups](https://docs.aws.amazon.com/waf/latest/developerguide/waf-managed-rule-groups.html) for AWS WAF, a set of pre-configured rules managed by AWS or AWS Marketplace sellers to address common security risks. You can then attach web ACL to your App Runner service while creating or updating an App Runner service. This feature is supported across all App Runner interfaces such as App Runner console, AWS Copilot CLI, AWS CLI, CloudFormation, and AWS cloud development kit (CDK). To learn more about using this feature in App Runner, see [WAF section](https://docs.aws.amazon.com/apprunner/latest/dg/waf.html) in the developer guide. To learn more about App Runner, see the [AWS App Runner Developer Guide](https://docs.aws.amazon.com/apprunner/latest/dg/what-is-apprunner.html).
What else is happening at Amazon Web Services?
Amazon AppStream 2.0 users can now save their user preferences between streaming sessions
December 13th, 2024
Services
Share
AWS Elemental MediaConnect Gateway now supports source-specific multicast
December 13th, 2024
Services
Share
Amazon EC2 instances support bandwidth configurations for VPC and EBS
December 13th, 2024
Services
Share
AWS announces new AWS Direct Connect location in Osaka, Japan
December 13th, 2024
Services
Share
Amazon DynamoDB announces support for FIPS 140-3 interface VPC and Streams endpoints
December 13th, 2024
Services
Share