All Products
Search
Document Center

Cloud Config:waf3-instance-enabled-specified-defense-rules

Last Updated:Jun 17, 2026

Evaluates whether a WAF 3.0 instance has rules enabled for the specified protection scenario. If so, the instance is compliant.

Scenarios

Protection features must be enabled for WAF 3.0-protected domain names to ensure their security.

Risk level

Default risk level: medium.

You can adjust the risk level based on your business requirements.

Compliance evaluation logic

If rules for the specified protection scenario are enabled for a WAF 3.0 instance, the evaluation result is compliant.

Rule details

Item

Description

Rule name

waf3-instance-enabled-specified-defense-rules

Rule ID

waf3-instance-enabled-specified-defense-rules

Tag

waf3

Automatic remediation

Not supported

Trigger type

Configuration change

Supported resource type

ACS::WAFV3::Instance

Input parameter

None

Non-compliance remediation

To enable protection rules for a WAF 3.0 instance, see DescribeDefenseRules.