This document discusses WAF architecture on AWS. It begins by explaining what a WAF is and why they are used, such as to protect against common attacks like SQL injection and cross-site scripting. It then covers different WAF architecture options on AWS like using AWS WAF or traditional on-premise WAFs. It also compares these options based on factors like meeting compliance standards, maintainability and pricing. Finally, it includes a demo of AWS WAF rules and references additional resources.