Network Firewall firewalls should have deletion protection enabled

This page is not yet available in Spanish. We are working on its translation.
If you have any questions or feedback about our current translation project, feel free to reach out to us!

Description

This control verifies if deletion protection is activated for an AWS Network Firewall.

AWS Network Firewall is a managed stateful network security service, offering traffic inspection and filtering for traffic flowing into, out of, or between Virtual Private Clouds (VPCs). Enabling deletion protection safeguards the firewall from being unintentionally deleted.

Remediation

For guidance on configuring deletion protection, please refer to the Updating a firewall section of the AWS Network Firewall Developer Guide.

PREVIEWING: safchain/fix-custom-agent