Low NetworkFirewall Regional

Network Firewall firewalls should be tagged

Description

Flags AWS Network Firewall firewalls that have no user-defined tags. Tags help associate firewalls with their owning team and VPC topology; untagged firewalls are operationally opaque.


Remediation

Apply at least one user-defined tag to every Network Firewall firewall.

Steps

  1. Open the VPC console and choose Network Firewall, then Firewalls.
  2. Select the firewall and choose Manage tags.
  3. Add at least one tag with a non-aws: prefixed key.
  4. Save the changes.