AWS::WAFv2::LoggingConfigurationA WAFv2 Logging Configuration Resource Provider
4 configurable properties. 2 required. Click a row to see details.
| Property | Type | Flags |
|---|---|---|
LogDestinationConfigs | Array<string> | Required |
ResourceArn | string | RequiredCreate-only |
LoggingFilter | object | |
RedactedFields | Array<FieldToMatch> |
Values returned after the resource is created. Access these with Fn::GetAtt.
| Attribute | Type | Description |
|---|---|---|
ManagedByFirewallManager | boolean | Indicates whether the logging configuration was created by AWS Firewall Manager, as part of an AWS WAF policy configuration. If true, only Firewall Manager can modify or delete the configuration. |
A minimal template with required properties and common optional ones.
AWSTemplateFormatVersion: "2010-09-09"
Description: Sample template for AWS::WAFv2::LoggingConfiguration
Resources:
MyResource:
Type: AWS::WAFv2::LoggingConfiguration
Properties:
ResourceArn: "arn:aws:service:region:account:resource"
LogDestinationConfigs: []Permissions CloudFormation needs in your IAM role to manage this resource.
wafv2:PutLoggingConfigurationwafv2:GetLoggingConfigurationfirehose:ListDeliveryStreamsiam:CreateServiceLinkedRoleiam:DescribeOrganizationlogs:CreateLogDeliverys3:PutBucketPolicys3:GetBucketPolicywafv2:GetLoggingConfigurationwafv2:PutLoggingConfigurationwafv2:GetLoggingConfigurationfirehose:ListDeliveryStreamsiam:CreateServiceLinkedRoleiam:DescribeOrganizationlogs:CreateLogDeliverys3:PutBucketPolicys3:GetBucketPolicywafv2:DeleteLoggingConfigurationwafv2:GetLoggingConfigurationlogs:DeleteLogDeliverywafv2:ListLoggingConfigurationsOur bi-weekly newsletter teaches hands-on AWS fundamentals. No certification fluff - just practical knowledge.
Subscribe to NewsletterResourceArnThese properties cannot be changed after the resource is created. Updating them triggers a replacement.
ResourceArn