diff --git a/AWS/100030-amazon_aws_cloudwatch.xml b/AWS/100030-amazon_aws_cloudwatch.xml new file mode 100644 index 0000000..31a1d11 --- /dev/null +++ b/AWS/100030-amazon_aws_cloudwatch.xml @@ -0,0 +1,15 @@ + + + json + Wazuh-AWS$ + no_full_log + Wazuh AWS Integration + + + 100030 + ^ALB$ + no_full_log + AWS WAF Event - WAF Action $(action) By Rule Type: $(terminatingRuleType) + awswaf, + +