
Create an AppSync graphql API protected with WAF rules. This WebACL limits the requests to certain countries and protects against common graphql attacks.
git clone https://github.com/aws-samples/serverless-patterns/cd serverless-patterns/waf-appsync-cdkcdk deploy --allcdk destroy.