On October 8, 2026, Amazon Web Services announced that AWS Network Firewall now supports wildcard matching in container attribute-based inspection filters for Amazon EKS and Amazon ECS.
Streamlining Rule Management
According to Amazon Web Services, this new capability allows users to define attribute filters using wildcard patterns to match multiple container workloads in a single rule. This enhancement eliminates the need to create individual container associations for each application variant.
AWS stated that administrators can use patterns such as app=payments-* to automatically cover multiple application variants like payments-api, payments-worker, and payments-cron. This update reduces operational overhead and maintains consistent security coverage across dynamic container environments.
Availability
Wildcard support for container attribute filters is available in all AWS Regions where AWS Network Firewall container attribute-based inspection is supported. For a full list of supported regions, Amazon Web Services points users to the AWS Region Table.
What to do
- Visit the AWS Network Firewall product page and service documentation to get started.
Key facts and where they come from
- AWS Network Firewall now supports wildcard matching in container attribute-based inspection filters for Amazon EKS and Amazon ECS.
AWS Network Firewall now supports wildcard matching in container attribute-based inspection filters for Amazon Elastic Kubernetes Service (Amazon EKS) and Amazon Elastic Container Service (Amazon ECS).
- The feature allows users to match multiple container workloads in a single rule using wildcard patterns.
This enhancement allows you to define attribute filters using wildcard patterns to match multiple container workloads in a single rule
- The update is available in all AWS Regions where container attribute-based inspection is supported.
Wildcard support for container attribute filters is available in all AWS Regions where AWS Network Firewall container attribute-based inspection is supported.
