Please provide more details, we don’t know what version you are using, what config, how you run Suricata (there are several IPS modes, since I assume you do IPS).
You could ask the AWS support for help in that case.
As I said we would need more details about the actual Suricata version, config etc.
Also which block/drop signatures you use that might block the traffic regardless of your pass rule.