Medium
CloudFront
CloudFront distributions should have WAF enabled
NISTISO 27001
Description
Checks whether CloudFront distributions are associated with either AWS WAF Classic or AWS WAF web ACLs.
Remediation
To associate an AWS WAF web ACL with a CloudFront distribution, refer to the Amazon CloudFront Developer Guide.
Steps
- Open the Amazon CloudFront console.
- Choose the distribution to update.
- Navigate to the 'Distribution Settings' and select the 'WAF and Shield' tab.
- Associate a Web ACL with the distribution.
- Save changes.
Compliance
NISTISO 27001