aws-solutions / aws-waf-security-automations

This solution automatically deploys a single web access control list (web ACL) with a set of AWS WAF rules designed to filter common web-based attacks.
https://aws.amazon.com/solutions/aws-waf-security-automations
Apache License 2.0
843 stars 361 forks source link

AWS WAF solution doesn't work in "me-south-1" region #120

Closed mogilp closed 3 years ago

mogilp commented 4 years ago

From my findings, when try to launch the WAF solution stack in me-south-1 region, it fails with an error :

Error occurred while GetObject. S3 Error Code: IllegalLocationConstraintException. S3 Error Message: The unspecified location constraint is incompatible for the region specific endpoint this request was sent to. (Service: AWSLambdaInternal; Status Code: 400; Error Code: InvalidParameterValueException; Request ID: 1b2a347c-4c83-430a-830c-6db13369ca0e).

Please look into this issue further!

beomseoklee commented 4 years ago

@mogilp , Thanks for your input. Unfortunately, we don't currently support me-south-1 region, so if you want to deploy the solution in me-south-1 region, you can follow README to build and deploy in your account.

Once again, I apologize for your inconvenience, and if you have any other pains while building and deploying by yourself, please let us know.

RaviPrasadS commented 4 years ago

@beomseoklee
aws waf available in me-south-1 region as per latest update https://aws.amazon.com/about-aws/whats-new/2020/04/aws-waf-aws-shield-advanced-now-available-hong-kong-bahrain/ But still same error while implementing Version 2.3.2 https://aws.amazon.com/solutions/aws-waf-security-automations/
AWS-WAF-CF-Error

RaviPrasadS commented 4 years ago

@aijunpeng

127 (comment)ed on Apr 17 "The reason for the error in me-south-1 region is because the solution isn't officially supported in this new region, but it is on our roadmap.

@beomseoklee AWS WAF Security Automations Version 2.3.3 last updated: 06/2020 CFT has still same error (attached) while implementing in me-south-1 (Bahrain) region.

kindly check & update on ETA to implement in many customer's aws accounts.

image

aijunpeng commented 4 years ago

The new regions haven't been supported by the WAF solution. It is in our backlog for future releases. I don't have an ETA at this time but there will be an announcement when the new regions are supported. Thanks for your patience.

maykays commented 3 years ago

This was addressed in V3.1