Direct Traffic to Cloud NGFW for AWS

After your have deployed your Cloud NGFW and created endpoints, you must update your route tables to send traffic to your firewall. Which route tables you update and how they are updated depends on your specific deployment.
In the AWS console, NGFW endpoints are displayed as Gateway Load Balancer endpoints. You can identify the NGFW endpoints in the AWS console by their endpoint ID. You can find the endpoint IDs for a specific firewall in the Cloud NGFW console under
The following are examples of packet flows in different deployment modes and include examples of updated routes for those packet flows.

Recommended For You