AWS Network Firewall Gets Rule Hit Count Visibility
AWS Network Firewall now tracks which rules actually match traffic, solving the headache of manual log digging to find dormant rules eating up your ruleset. Cloud engineers can finally ditch the guesswork and clean up inactive rules to meet compliance requirements and keep firewall performance sharp.
source: [aws/security-blog]