Security, Identity, and Compliance
RecognitionAWS Network Firewall
Managed stateful network firewall and intrusion prevention for Amazon VPC traffic.
Key points
- Route inspected traffic through firewall endpoints and design AZ-resilient paths; rule groups operate below the application endpoint layer.
Best-known use cases
- Inspect and filter centralized VPC ingress, egress, or east-west traffic.
What candidates often confuse it with
- Network Firewall inspects VPC network flows; WAF filters Layer 7 web requests and security groups control resource reachability.
Key takeaway
Choose Network Firewall for managed stateful VPC traffic inspection.
Related services
- AWS Firewall Manager
- AWS WAF
- Amazon VPC
Relevant exam tasks
- D1.2