View a markdown version of this page

AWS::WAFv2::RuleGroup RegexMatchStatement - AWS CloudFormation

This is the new CloudFormation Template Reference Guide. Please update your bookmarks and links. For help getting started with CloudFormation, see the AWS CloudFormation User Guide.

AWS::WAFv2::RuleGroup RegexMatchStatement

A rule statement used to search web request components for a match against a single regular expression.

Syntax

To declare this entity in your CloudFormation template, use the following syntax:

Properties

FieldToMatch

The part of the web request that you want AWS WAF to inspect.

Required: Yes

Type: FieldToMatch

Update requires: No interruption

PreParseTextTransformations

Pre-parse text transformations normalize the raw query string before AWS WAF parses it into individual query arguments. They are applied before the standard text transformations. Pre-parse text transformations are only supported when FieldToMatch is SingleQueryArgument or AllQueryArguments. You can specify up to 10 pre-parse text transformations per rule statement.

Required: No

Type: Array of PreParseTextTransformation

Update requires: No interruption

RegexString

The string representing the regular expression. AWS WAF enforces a quota on the maximum number of characters in a regex pattern. For the current limit, see AWS WAF quotas in the AWS WAF Developer Guide.

Required: Yes

Type: String

Minimum: 1

Maximum: 512

Update requires: No interruption

TextTransformations

Text transformations eliminate some of the unusual formatting that attackers use in web requests in an effort to bypass detection. If you specify one or more transformations in a rule statement, AWS WAF performs all transformations on the content of the request component identified by FieldToMatch, starting from the lowest priority setting, before inspecting the content for a match.

Required: Yes

Type: Array of TextTransformation

Minimum: 1

Update requires: No interruption