Low
NetworkFirewall
Regional
Network Firewall firewall policies should be tagged
Description
Flags AWS Network Firewall firewall policies that have no user-defined tags. Tags help associate policies with their owning team and intended traffic profile; untagged policies are operationally opaque.
Remediation
Apply at least one user-defined tag to every Network Firewall firewall policy.
Steps
- Open the VPC console and choose Network Firewall, then Firewall policies.
- Select the policy and choose Manage tags.
- Add at least one tag with a non-aws: prefixed key.
- Save the changes.