Skip to content
AWS Enhances Network Firewall with Rule Hit Count Feature

AWS Enhances Network Firewall with Rule Hit Count Feature

First seen 24 Aug 2026, 09:46 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •August 25, 2026 at 09:19 UTC
  • •AWS Network Firewall now includes a rule hit count feature for better visibility.
  • •The feature helps identify active, inactive, and misconfigured firewall rules.
  • •No additional cost for the feature, but standard storage charges apply.

AWS has launched a new capability for its Network Firewall that allows security teams to see which stateful firewall rules are actively matching traffic. This feature, enabled by default, helps organizations identify unused or misconfigured rules without the need for extensive log reviews. The capability applies to both custom and managed rule groups, but does not support stateless rules. The introduction of this feature aims to improve the efficiency of firewall management and enhance security posture by ensuring that security controls are functioning as intended. This update comes at no additional cost for the Network Firewall service, although standard charges for storage still apply.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 47d ago How this analysis works

Timeline

2026-08-24
AWS announces rule hit count capability
AWS introduces a feature for its Network Firewall that shows which stateful rules match live traffic, enhancing security management.
Feeds2.Feedburner
2026-08-24
Feature enabled by default
The new rule hit count feature is automatically activated for users of AWS Network Firewall, streamlining security operations.
Cybersecuritynews

More articles in this cluster (2)

Following this threat?

Track AWS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed