Skip to content

[Security] Deploy Azure Front Door with WAF #17

@emmanuelknafo

Description

@emmanuelknafo

Summary

Deploy Azure Front Door with Web Application Firewall (WAF) to protect the sample-web-app blueprint from DDoS and web application attacks.

Threats Addressed

  • T-001: DDoS Attack (High Risk)
  • T-002: Web Application Attacks - SQLi, XSS (Critical Risk)

Acceptance Criteria

  • Azure Front Door Premium deployed with WAF policy
  • WAF configured with OWASP Core Rule Set 3.2
  • WAF mode set to Prevention
  • App Service configured to only accept traffic from Front Door
  • Rate limiting rules configured

Implementation Reference

See security-plan-sample-web-app.md for Bicep code samples.

Priority

P1 - Critical - Implement immediately

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions