Application gateways should have Web Application Firewall enabled

이 페이지는 아직 한국어로 제공되지 않습니다. 번역 작업 중입니다.
현재 번역 프로젝트에 대한 질문이나 피드백이 있으신 경우 언제든지 연락주시기 바랍니다.

Description

Azure Web Application Firewall (WAF) on Application Gateway protects web applications from common exploits such as SQL injection, cross-site scripting, and other OWASP Top 10 threats by inspecting and filtering incoming HTTP traffic. Each Application Gateway should have an associated WAF policy to actively protect against web-based attacks.

Remediation

Associate a WAF policy with the Application Gateway. Create a WAF policy if one does not exist, then attach it to the gateway. For guidance, see Create a Web Application Firewall policy for Application Gateway.