v3.3.15
What's Changed
Security
- Bump aws-amplify to
5.3.27
- Allow only TLS requests on S3 bucket through bucket policy
- Add CSP security headers on CloudFront
- Enable MFA for authentication by default
- Add AWS Managed WAF rules to ACL
- Disable introspection queries on AppSync endpoint
Changed
- Disable verbose logging on the AppSync endpoint
- AppRegistry application tags at resource level
Fixed
- Remove unused http methods from cache behavior, Cloudfront only needs to process and forward GET/HEAD requests to S3 origin
- Improve error response for
UpdateTransitNetworkOrchestratorTable
API path
Full Changelog: v3.3.14...v3.3.15