awslabs / awslabs/aws-solutions-constructs

feat(new construct): aws-networkfirewall-vpc

Open
#952 1 comment 0 reactions 0 assignees View on GitHub
feature-request needs-triage
Dominant language
TypeScript
Stars
1.4k
Forks
268
Avg merge
5h 18m
Merged PRs (30d)
5

Description

The construct being purposed is an integration of AWS Firewall Manager into a VPC to either inspect all intra-subnet traffic or just internet egress/ingress traffic.

### Use Case

A user would like an accelerated way to integrate AWS Network Firewall into their workload to take advantage of traffic inspection.

### Proposed Solution

This illustrates the services used to create a VPC with intra-subnet inspection and two private subnets. The overall architecture will vary depending on the parameters specified such as: number of subnets, number of AZs and intra-subnet vs internet egress/ingress inspection.

![image](https://user-images.githubusercontent.com/86670002/233156498-7a90870f-7b2f-4dbe-bf46-c1868b78cd0e.png)

* [X ] :wave: I may be able to implement this feature request
* [ ] :warning: This feature might incur a breaking change

---

This is a :rocket: Feature Request

Contributor guide

Open the contributing guide

Research direction

No source files or tests are named in the issue. Start by reviewing the repository's AWS CDK construct patterns and the services needed for AWS Network Firewall integration. Done should cover configurable subnet and Availability Zone counts plus intra-subnet or internet ingress/egress inspection, with the architecture validated against the proposed use case.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, typescript
Domain
cloud, infrastructure, networking
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
28/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.