aws-solutions / aws-waf-security-automations

This solution automatically deploys a single web access control list (web ACL) with a set of AWS WAF rules designed to filter common web-based attacks.
https://aws.amazon.com/solutions/aws-waf-security-automations
Apache License 2.0
845 stars 361 forks source link

Feature Request - Geo Match Condition support #93

Closed djbrightman closed 1 year ago

djbrightman commented 5 years ago

Would it be possible (or make sense?) to include rule using Geo Match Condition? e.g. Allow user to enable access from only specified countries

i.e. if no countries specified allow any, if list of countries defined create geo match conditions for those countries and a rule that will allow only access from those meeting the geo match conditions and deny all others

Use case might be for country specific government or public sector applications

dscpinheiro commented 4 years ago

Hi @djbrightman,

Sorry for the delay in the response. We've added your feature request to the backlog for the solution.

omartinex commented 2 years ago

Hi @dscpinheiro

Do you guys have any update on this topic?

Regards

aijunpeng commented 2 years ago

This is on our backlog but not prioritized yet.

omartinex commented 2 years ago

Hello @aijunpeng thank you very much for your answer,

rakshb commented 1 year ago

We recently released an update to the solution (4.0.0+), which supports country and URI configurations in HTTP Flood Athena log parser rule. Let me know if this addresses your request. Thanks!