Help Center/ Config/ User Guide/ Conformance Packages/ Conformance Package Templates/ Best Practices for Web Application Firewall
Updated on 2024-12-10 GMT+08:00

Best Practices for Web Application Firewall

The following table lists the rules and solutions included in this conformance package template.

Table 1 Conformance package description

Rule

Cloud Service

Description

waf-instance-enable-block-policy

waf

If a WAF instance does not have a block policy associated, this instance is noncompliant.

waf-instance-enable-protect

waf

If domain name protection is not enabled for a WAF instance, this instance is noncompliant.

waf-instance-policy-not-empty

waf

If a WAF instance does not have a protection policy attached, this instance is noncompliant.

waf-policy-enable-geoip

waf

If there is a WAF protection policy that does not have geolocation access control configured or enabled, the current account is noncompliant.

waf-policy-not-empty

waf

If no rules are added for a WAF protection policy, this policy is noncompliant.