AWS Web Application Firewall also lets you control access to your content. Based on conditions that you specify, such as the IP Address that requests originate from or the values of URI Query strings, AWS API Gateway, AWS CloudFront or AWS Application Load Balancer Response to requests either with the requested content or with an HTTP 403 status code (Forbidden). You also can configure AWS CloudFront to return a custom error page when a request is blocked.