Home icon

How to monitor AWS WAF logging centrally using Amazon Managed Grafana

AWS Cloud Operations Blog



This article explains how to monitor AWS WAF logs centrally using Amazon Managed Grafana. It provides a solution to centralize and visualize AWS WAF logs from multiple accounts and regions, enabling near real-time monitoring and analysis for security teams.

Specifically, the article covers:

  • Architecture overview using services like AWS Firewall Manager, Amazon S3, Kinesis Data Firehose, AWS Glue, Amazon Athena, and Amazon Managed Grafana
  • Prerequisites for setting up the solution
  • Step-by-step walkthrough:
    1. Deploying resources using a CloudFormation template
    2. Configuring centralized logging for AWS WAF policy using Firewall Manager
    3. Creating a view in Amazon Athena for WAF logs
    4. Configuring Amazon Athena as a data source in Amazon Managed Grafana
    5. Importing and visualizing a pre-built AWS WAF Insights dashboard in Amazon Managed Grafana
  • Cleanup steps to remove resources and avoid future charges


Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Apr 1
2025
Monitor AWS Transit Gateway Flow Logs centrally using Amazon Managed Grafana
Apr 9
2024
An Introduction to Amazon WorkMail Audit Logging
May 22
2024
Amazon Security Lake now supports logs from AWS WAF
Mar 20
2024
Real User Monitoring with Amazon CloudWatch RUM and Amazon Managed Grafana

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.