Additional options governing how Network Firewall handles the rule group. You can only use these for stateful rule groups.
Type: objectProperties: 1
FirewallIntrusion DetectionNetwork SecurityVPC
StatefulRuleOptions is a JSON Structure definition published by Amazon Network Firewall, describing 1 property. It conforms to the https://json-structure.org/meta/core/v0/# meta-schema.
{
"$schema": "https://json-structure.org/meta/core/v0/#",
"$id": "https://raw.githubusercontent.com/api-evangelist/amazon-network-firewall/refs/heads/main/json-structure/openapi-stateful-rule-options-structure.json",
"name": "StatefulRuleOptions",
"description": "Additional options governing how Network Firewall handles the rule group. You can only use these for stateful rule groups.",
"type": "object",
"properties": {
"RuleOrder": {
"allOf": [
{
"$ref": "#/components/schemas/RuleOrder"
},
{
"description": "Indicates how to manage the order of the rule evaluation for the rule group. <code>DEFAULT_ACTION_ORDER</code> is the default behavior. Stateful rules are provided to the rule engine as Suricata compatible strings, and Suricata evaluates them based on certain settings. For more information, see <a href=\"https://docs.aws.amazon.com/network-firewall/latest/developerguide/suricata-rule-evaluation-order.html\">Evaluation order for stateful rules</a> in the <i>Network Firewall Developer Guide</i>. "
}
]
}
}
}
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we
store it to create your key and to recognise you if you sign in with another
provider. See our Privacy Policy and
Terms.