AWS Firewall Manager
- What it is
- Central security policy management across all accounts in AWS Organizations.
- You write a rule once; Firewall Manager applies and enforces it everywhere, including on resources created later.
- What it manages
- AWS WAF rules, AWS Shield Advanced protections, AWS Network Firewall policies, security groups, and Route 53 Resolver DNS Firewall rules.
- Why it exists
- Prevents drift: a new account or a new load balancer automatically inherits the required protections.
- Gives compliance teams one place to see and fix violations.
- Not to be confused with
- The individual firewall services themselves — Firewall Manager does not inspect traffic; it distributes and audits the configuration.