AWS API Gateway with AWS WAF

前端 未结 3 1355
我在风中等你
我在风中等你 2020-12-19 04:50

I want to use AWS Web Application Firewall service with AWS API Gateway. AWS WAF works only with AWS CloudFront distributions.

According to this post https://forums.

3条回答
  •  轮回少年
    2020-12-19 05:19

    Alright guys, i had a similar issue, what is best you can do at this stage is ,

    have api gateway terminate the SSL - make a call from api gateway to your alb , elb or nlb (is the best , if it fits your architecture) - have alb protected by the WAF with two ruleset 1. white list all the api gateways ip 2. have the http header accepted by api gateway only

    this way you are securing your infra to its best.

    if you have nlb, then you can have the private link to NLB straight, keep in mind NLB doesnt support path based routing, and cross zone application failover

    I have asked AWS to raise a feature request for the same

提交回复
热议问题