AWS Network Firewall provides network protection across all workloads
New firewall tools offer improved security in virtual private clouds


AWS has launched a new security service for customers running virtual private clouds on AWS.
The AWS Network Firewall promises a high-availability, managed network firewall for customers’ workloads. AWS claims the firewall will offer protections against common network threats, including dynamic packet filtering, intrusion prevention and detection, and web filtering.
AWS said customers can also implement customized Snort and Suricata rules — two widely used open-source formats — to further tailor protections, like:
- Preventing their VPCs from accessing unauthorized domains
- Blocking thousands of known bad IP addresses
- Defending against common exploits by identifying patterns and behaviors associated with known threats.
In a blog post, Channy Yun, principal developer advocate for AWS, said the Network Firewall makes firewall activity visible in real-time via CloudWatch metrics and offers increased visibility of network traffic by sending logs to S3, CloudWatch and Kinesis Firehose.
“Network Firewall is integrated with AWS Firewall Manager, giving customers who use AWS Organizations a single place to enable and monitor firewall activity across all your VPCs and AWS accounts,” he said.
Steve Schmidt, CISO at AWS, said that when talking to customers about what they want in a cloud network firewall, they say network protections that work with their existing security systems and without the headache of managing the underlying infrastructure.
“AWS Network Firewall provides scalable network protections that allow customers to deploy highly customizable rules for their entire AWS infrastructure, and integrates with many of the APN partner services that customers already use. Best of all, there’s no need to configure or maintain additional infrastructure,” he added.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
AWS partners have built integrations with AWS Network Firewall include:
- Accenture
- Alert Logic
- Check Point Software Technologies
- CrowdStrike
- Datadog
- Fortinet
- Hashicorp
- IBM
- Palo Alto Networks
- Rackspace
- Splunk
- SumoLogic
- Trend Micro
- Tufin
AES expects more partners to come soon. These integrations allow customers to easily incorporate AWS Network Firewall into their existing security workflows for orchestration, automation and threat detection and response.
“We've made this expertise available to all AWS Network Firewall customers in the form of managed rules based on threat intelligence from FortiGuard Labs. Our collaboration with AWS will make it easy for customers to seamlessly integrate Fortinet threat intelligence with AWS Network Firewall as an additional layer of protection alongside their existing security,” said John Maddison, EVP of products and CMO at Fortinet.
AWS Network Firewall is available now in the US East (Northern Virginia), US West (Oregon), and Europe (Ireland) Regions. Pricing starts at 39.5 cents per hour a firewall is provisioned and 6.5 cents every GB of data the firewall processes.
Rene Millman is a freelance writer and broadcaster who covers cybersecurity, AI, IoT, and the cloud. He also works as a contributing analyst at GigaOm and has previously worked as an analyst for Gartner covering the infrastructure market. He has made numerous television appearances to give his views and expertise on technology trends and companies that affect and shape our lives. You can follow Rene Millman on Twitter.
-
The UK government wants quantum technology out of the lab and in the hands of enterprises
News The UK government has unveiled plans to invest £121 million in quantum computing projects in an effort to drive real-world applications and adoption rates.
By Emma Woollacott Published
-
Netgear WBE710 review
Reviews The compact WBE710 delivers great cloud management features and a good turn of Wi-Fi 7 speed – but it does have a premium price tag
By Dave Mitchell Published
-
Dell Technologies World 2022: Dell unveils security offerings for major cloud providers
News The tech giant also added Cyber Recovery Services to its existing Apex portfolio and announced a multi-cloud collaboration with Snowflake Data Cloud
By Sabina Weston Published
-
Denonia named as first malware to target AWS Lambda platform
News Deployment demonstrates how attackers are using advanced cloud-specific knowledge to exploit complex cloud infrastructure, Cado Security says
By Daniel Todd Published
-
MWC 2022: Ukrainian protesters call for Russian tech boycott
News The protestors are urging AWS to “shut down” servers being used by Russian entities
By Sabina Weston Published
-
AWS' CodeGuru Reviewer updated to tackle Log4j
News Amazon's code reviewer also now includes a library detailing every detector used by the platform
By Praharsha Anand Published
-
Sennheiser exposed personal data of 28,000 customers with leaky S3 bucket
News Server containing full names, email addresses, phone numbers, and supplier information was left open to the public for three years
By Danny Bradbury Published
-
AWS shuts down NSO Group infrastructure
News The Israeli company’s Pegasus spyware was used to target at least 50,000 mobile phones
By Sabina Weston Published
-
EU charges Amazon over misuse of third-party data
News The EC claims Amazon broke competition rules by using data gathered on third-party sellers to compete against them
By Carly Page Published
-
Hotel booking firm exposes data on "millions" of guests
News Reservation platform used by Hotels.com, Booking.com and Expedia left sensitive data exposed on a misconfigured AWS S3 bucket
By Carly Page Published