NetworkFirewallRuleGroup
Resource Icon

Resource Overview
A reusable set of criteria for inspecting and handling network traffic
Associated Resources
Parent Resources
Connected Resources
Resource Setting Values
description: Rule group typerule_group_type: Rule group type -STATEFUL,STATELESSgenerated_rules_type: Rule group format -StandardStatefulRules,DomainList,SuricataRuleStringsrule_evaluation_order: The way that your stateful rules are ordered for evaluation -STRICT_ORDER,DEFAULT_ACTION_ORDERcapacity: The number of rules expected to have in this rule group during its lifetime -1-30000ip_set: IP set variable namename: IP set variable namecidrs: Values of the IP set variable
port_set: Port variable namename: Name of the port set variablecidrs: Standard stateful rule
stateful_rule: Standard stateful rule namename: Name of the standard stateful ruleprotocol: Transport protocols to inspect for -IP,TCP,UDP,ICMP,HTTPsource_ip_or_cidr: The source IP addresses and address ranges to inspect forsource_port: Source port or port range to inspecttarget_ip_or_cidr: Target IP address and address range to inspecttraffic_direction: The traffic direction to inspect for -ANY,FORWARDaction: Action that a network firewall will do when a packet matches the rule settings -ALERT,DROP,PASS,REJECT
encryption_configurationenabled_custom_configuration: Encrypt data using AWS-managed key -false,true