View a markdown version of this page

AWS::WAFv2::WebACL RegexMatchStatement - Amazon CloudFormation
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

This is the new Amazon CloudFormation Template Reference Guide. Please update your bookmarks and links. For help getting started with CloudFormation, see the Amazon CloudFormation User Guide.

AWS::WAFv2::WebACL RegexMatchStatement

A rule statement used to search web request components for a match against a single regular expression.

Syntax

To declare this entity in your Amazon CloudFormation template, use the following syntax:

Properties

FieldToMatch

The part of the web request that you want Amazon WAF to inspect.

Required: Yes

Type: FieldToMatch

Update requires: No interruption

PreParseTextTransformations

Pre-parse text transformations normalize the raw query string before Amazon WAF parses it into individual query arguments. They are applied before the standard text transformations. Pre-parse text transformations are only supported when FieldToMatch is SingleQueryArgument or AllQueryArguments. You can specify up to 10 pre-parse text transformations per rule statement.

Required: No

Type: Array of PreParseTextTransformation

Update requires: No interruption

RegexString

The string representing the regular expression. Amazon WAF enforces a quota on the maximum number of characters in a regex pattern. For the current limit, see Amazon WAF quotas in the Amazon WAF Developer Guide.

Required: Yes

Type: String

Minimum: 1

Maximum: 512

Update requires: No interruption

TextTransformations

Text transformations eliminate some of the unusual formatting that attackers use in web requests in an effort to bypass detection. If you specify one or more transformations in a rule statement, Amazon WAF performs all transformations on the content of the request component identified by FieldToMatch, starting from the lowest priority setting, before inspecting the content for a match.

Required: Yes

Type: Array of TextTransformation

Minimum: 1

Update requires: No interruption