What are the key differences between AWS WAF, AWS Network Firewall, and Security Groups when designing a layered security architecture?

AWS Cloud Practitioner Hard

AWS Cloud Practitioner — Hard

What are the key differences between AWS WAF, AWS Network Firewall, and Security Groups when designing a layered security architecture?

Key points

  • Security Groups manage instance traffic
  • WAF filters HTTP/HTTPS requests at Layer 7
  • Network Firewall offers VPC-level protection
  • Each service addresses a different layer of defense

Ready to go further?

Related questions