Medium
NetworkFirewall
Regional
Network Firewall firewalls should have deletion protection enabled
NIST 800-53
Description
This control checks whether an AWS Network Firewall firewall has deletion protection enabled. The control fails if deletion protection isn't enabled for a firewall.
Remediation
Enable deletion protection on the firewall to protect against accidental deletion.
Steps
- Open the AWS Network Firewall console.
- Select your firewall and choose 'Edit'.
- Enable 'Deletion protection'.
- Save changes and verify the firewall shows deletion protection enabled.
Compliance
NIST 800-53