Network misconfigurations

Stateless Network Firewall rule group should not be empty


A rule group contains rules that define how your firewall processes traffic in your VPC. It was detected that the Network Firewall rule group '{AwsNetworkFirewallRuleGroup}' is empty. An empty stateless rule group, when present in a firewall policy, might give the impression that the rule group will process traffic. However, when the stateless rule group is empty, it does not process traffic.