AWS WAF: IIQ Best Practices / Cookbooks / Rulesets

Which IIQ version are you inquiring about?

8.4

Share all details about your problem, including any error messages you may have received.

Looking to deploy the AWS WAF & Shield in-line with our application load balancer. Reaching out to the community to see if others have prior art and experience to share for such an effort. Some thoughts:

  • How can IIQ be sliced up into different parts? e.g. what are the different URIs for main functions of the application? Looking for broad categories to functionaly separate different parts of the application for rule sets.
  • Are there specific rulesets out of AWS that are hard “NOs”?
  • Are there rulessets out of AWS that work as is?
  • We currently do IP restriction on the global application - are there areas where it is imperative to continue doing that (where a WAF will not be good enough)?

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.