appsync-associated-with-waf
Checks if Amazon AppSync APIs are associated with Amazon WAFv2 web access control lists (ACLs). The rule is NON_COMPLIANT for an Amazon AppSync API if it is not associated with a web ACL.
Identifier: APPSYNC_ASSOCIATED_WITH_WAF
Resource Types: AWS::AppSync::GraphQLApi
Trigger type: Periodic
Amazon Web Services Region: All supported Amazon regions except Asia Pacific (Thailand), Asia Pacific (Jakarta), Africa (Cape Town), Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Malaysia), Asia Pacific (Melbourne), Amazon GovCloud (US-East), Amazon GovCloud (US-West), Mexico (Central), Israel (Tel Aviv), Canada West (Calgary), Europe (Spain), Europe (Zurich) Region
Parameters:
- wafWebAclARNs (Optional)
- Type: CSV
-
Comma-separated list of Amazon Resource Names (ARNs) for authorized web ACLs.
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.