AWS::WAFv2::WebACL GeoMatchStatement - AWS CloudFormation

AWS::WAFv2::WebACL GeoMatchStatement

A rule statement used to identify web requests based on country of origin.


To declare this entity in your AWS CloudFormation template, use the following syntax:


{ "CountryCodes" : [ String, ... ], "ForwardedIPConfig" : ForwardedIPConfiguration }



An array of two-character country codes, for example, [ "US", "CN" ], from the alpha-2 country ISO codes of the ISO 3166 international standard.

Required: No

Type: List of String

Update requires: No interruption


The configuration for inspecting IP addresses in an HTTP header that you specify, instead of using the IP address that's reported by the web request origin. Commonly, this is the X-Forwarded-For (XFF) header, but you can specify any header name.


If the specified header isn't present in the request, AWS WAF doesn't apply the rule to the web request at all.

Required: No

Type: ForwardedIPConfiguration

Update requires: No interruption