Skip to content

Conversation

@zaro0508
Copy link
Contributor

@zaro0508 zaro0508 commented Jan 3, 2025

Web application firewall for agora app, enabled with the AWS managed Baseline core rule set[1] to protect again OWASP top 10 vunerablities[2]. Additional rules[3] can be added by updating the WebAcl rules object.

Note: AWS CDK Level 2 construct is not available for WAFv2 yet therefore we need to use level 1 construct

[1] https://docs.aws.amazon.com/waf/latest/developerguide/aws-managed-rule-groups-baseline.html#aws-managed-rule-groups-baseline-crs
[2] https://owasp.org/www-project-top-ten/
[3] https://docs.aws.amazon.com/waf/latest/developerguide/aws-managed-rule-groups-list.html

Web application firewall for agora app, enabled with the AWS managed Baseline
core rule set[1] to protect again OWASP top 10 vunerablities[2]. Additional
rules[3] can be added by updating the WebAcl rules object.

Note: AWS CDK Level 2 construct is not available for WAFv2 yet therefore we
need to use level 1 construct

[1] https://docs.aws.amazon.com/waf/latest/developerguide/aws-managed-rule-groups-baseline.html#aws-managed-rule-groups-baseline-crs
[2] https://owasp.org/www-project-top-ten/
[3] https://docs.aws.amazon.com/waf/latest/developerguide/aws-managed-rule-groups-list.html
@zaro0508 zaro0508 requested review from a team as code owners January 3, 2025 23:22
@zaro0508 zaro0508 merged commit 1ac9794 into Sage-Bionetworks-IT:main Jan 8, 2025
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants