top of page
< Back

AWS Foundational Security Best Practice

NetworkFirewall.5

The default stateless action for Network Firewall policies should be drop or forward for fragmented packets

Severity

Cloud Platforms

Resources

MEDIUM

AWS

AWS Network Firewall

This control checks whether a Network Firewall policy has drop or forward as the default stateless action for fragmented packets. The control passes if Drop or Forward is selected; and fails if Pass is selected.

bottom of page