AWS Network Firewall - Recommended Subnet Size?

0

Hi all, I'm in the process of implementing AWS Network Firewall in my test environment and, while I understand that the Network Firewall must be launched into its own subnet, there's nothing saying how big or small this subnet should be. Does it matter? Is there a reason to size the subnet in any particular manner? Thanks!

1 Answer
2
Accepted Answer

Since the Network Firewall endpoint will be the only resource within that subnet, the smallest subnet possible in a VPC would be enough - /28.

Also, have a look at the Inspection Deployment Models with AWS Network Firewall reference architecture . You can see all examples there have /28 subnet for the firewall subnet.

profile pictureAWS
EXPERT
answered 2 months ago
profile picture
EXPERT
reviewed 2 months ago
profile picture
EXPERT
reviewed 2 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions