Checks if AWS AppSync APIs are associated with AWS WAFv2 web access control lists (ACLs). The rule is NON_COMPLIANT for an AWS AppSync API if it is not associated with a web ACL.

This config rule supports the following parameters:

  • wafWebAclARNs
    • Required: No
    • Type: CSV
    • Description:Comma-separated list of Amazon Resource Names (ARNs) for authorized web ACLs.

ConfigRule
AWS::Config::ConfigRule


Source *
CustomPolicyDetails
SourceDetails

CloudFormation Template

Share Template