Readonly
capacityThe capacity of the rule group.
Optional
Readonly
description(OPTIONAL) A description for the rule group.
Readonly
nameA friendly name for the rule group.
Readonly
regionsThe regions to deploy the rule group to.
Optional
Readonly
rule(OPTIONAL) A Network Firewall rule configuration.
Optional
Readonly
share(OPTIONAL) Resource Access Manager (RAM) share targets.
Optional
Readonly
tags(OPTIONAL) An array of tags for the rule group.
Readonly
typeThe type of rules in the rule group.
NetworkConfig / CentralNetworkServicesConfig / NfwConfig / NfwRuleGroupConfig
Network Firewall rule group configuration.
Description
Use this configuration to define stateful and stateless rule groups for Network Firewall. An AWS Network Firewall rule group is a reusable set of criteria for inspecting and handling network traffic. You add one or more rule groups to a firewall policy as part of policy configuration.
See
https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-networkfirewall-rulegroup.html
Example
Stateful rule group:
Stateless rule group: