aws AWS What's New ·

AWS WAF protects Amazon Bedrock AgentCore Gateway

aisecurityawsengineer
feature announcement

AWS WAF now offers protection for Amazon Bedrock AgentCore Gateway, shielding agentic AI applications from common web exploits and abuse as they move to production. This feature allows security and platform teams to enforce consistent, customizable web protections like IP-based access controls and rate-based rules at the Gateway layer. A single configuration applied at the Gateway protects all downstream agents and integrations, and is available in all regions where both services are offered.

  • AWS WAF general availability for Bedrock AgentCore Gateway
  • Centralized protection configuration
  • Enhanced rule enforcement options
  • Availability and documentation
Features (1)
  • AWS WAF general availability for Bedrock AgentCore Gateway

    AWS WAF now provides general availability for protecting Amazon Bedrock AgentCore Gateway, enabling users to secure agentic AI workloads against common web exploits. This allows security and platform teams to apply customizable web protections at the Gateway layer.

Enhancements (2)
  • Centralized protection configuration

    Users can configure a protection pack once at the AgentCore Gateway level, which AWS WAF then applies consistently to all downstream tools, agents, and integrations. This simplifies the management of security rules for agentic applications.

  • Enhanced rule enforcement options

    Protection packs include IP-based access controls, rate-based rules to throttle abusive traffic, and AWS Managed Rule Groups such as common rule sets, known bad inputs, and Bot Control.

Notes (1)
  • Availability and documentation

    Support for AWS WAF on AgentCore Gateway is available in all AWS Regions where both services are offered. Further details can be found in the AWS WAF Developer Guide and Amazon Bedrock AgentCore documentation.

Read the original announcement →

https://aws.amazon.com/about-aws/whats-new/2026/06/aws-waf-amazon-bedrock-agentcore/