Medium CloudFront

CloudFront distributions should have WAF enabled

NISTISO 27001

Description

Checks whether CloudFront distributions are associated with either AWS WAF Classic or AWS WAF web ACLs.


Remediation

To associate an AWS WAF web ACL with a CloudFront distribution, refer to the Amazon CloudFront Developer Guide.

Steps

  1. Open the Amazon CloudFront console.
  2. Choose the distribution to update.
  3. Navigate to the 'Distribution Settings' and select the 'WAF and Shield' tab.
  4. Associate a Web ACL with the distribution.
  5. Save changes.

Compliance

NISTISO 27001