Low
NetworkFirewall
Regional
Network Firewall firewalls should be tagged
Description
Flags AWS Network Firewall firewalls that have no user-defined tags. Tags help associate firewalls with their owning team and VPC topology; untagged firewalls are operationally opaque.
Remediation
Apply at least one user-defined tag to every Network Firewall firewall.
Steps
- Open the VPC console and choose Network Firewall, then Firewalls.
- Select the firewall and choose Manage tags.
- Add at least one tag with a non-aws: prefixed key.
- Save the changes.