Note_Tech

All technological notes.


Project maintained by simonangel-fong Hosted on GitHub Pages — Theme by mattgraham

AWS - Security

Back


Summary

Services Features
WAF ACL rules, HTTP,layer 7, ALB(not NLB)
Shield DDos, Layer 3/4
Firewall Manager accounts in Organ,
GuardDuty Threat discovery, ML
Inspector Security Assessments, EC2, ECS, Lambda
Macie sensitive data, ML

WAF vs. Firewall Manager vs. Shield


AWS Best Practices for DDoS Resiliency

Edge Location Mitigation (BP1, BP3)

ddos_bp_diagram


Best pratices for DDoS mitigation

ddos_bp_diagram


Application Layer Defense

ddos_bp_diagram


Attack surface reduction

ddos_bp_diagram


TOP