ReadonlycapacityThe capacity of the rule group.
Optional Readonlydescription(OPTIONAL) A description for the rule group.
ReadonlynameA friendly name for the rule group.
ReadonlyregionsThe regions to deploy the rule group to.
Optional Readonlyrule(OPTIONAL) A Network Firewall rule configuration.
Optional Readonlyshare(OPTIONAL) Resource Access Manager (RAM) share targets.
Optional Readonlytags(OPTIONAL) An array of tags for the rule group.
ReadonlytypeThe type of rules in the rule group.
NetworkConfig / CentralNetworkServicesConfig / NfwConfig / NfwRuleGroupConfig
Network Firewall rule group configuration.
Description
Use this configuration to define stateful and stateless rule groups for Network Firewall. An AWS Network Firewall rule group is a reusable set of criteria for inspecting and handling network traffic. You add one or more rule groups to a firewall policy as part of policy configuration.
See
https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-networkfirewall-rulegroup.html
Example
Stateful rule group:
Stateless rule group: