WAF Front Door as an IDS/IDP system

Eric Logsdon 81 Reputation points
2022-02-23T20:03:37.433+00:00

Can Web Application Firewall on Front Door function as an Intrusion Detection/Prevention System? The IDPS systems I've seen for Azure don't look like they will work with Front Door since it is an Edge system. Am I correct in that?

Thanks,
Eric Logsdon

Azure Front Door
Azure Front Door
An Azure service that provides a cloud content delivery network with threat protection.
622 questions
Azure Web Application Firewall
0 comments No comments
{count} votes

Accepted answer
  1. SaiKishor-MSFT 17,216 Reputation points
    2022-02-23T22:50:41.86+00:00

    @Eric Logsdon Thank you for reaching out to Microsoft Q&A. I understand that you are having questions regarding WAF Front Door functioning as IDS/IPS system.

    As you mentioned, IDS/IPS is generally recommended to be at the Perimeter Network i.e. the exit/entry points of Network. Also note that WAFs are designed to protect web applications/servers from web-based attacks (HTTP/HTTPS) whereas IDS/IPS are designed to work on the Network Layer. Therefore, IDS/IPS is provided with the Azure Firewall which works on the Network Layer. Please find more details on deploying IDS/IPS in Azure here. Hope this helps.

    Please let us know if you have any further questions and we will be glad to assist you further. Thank you!

    Remember:

    Please accept an answer if correct. Original posters help the community find answers faster by identifying the correct answer. Here is how.

    Want a reminder to come back and check responses? Here is how to subscribe to a notification.

    0 comments No comments

2 additional answers

Sort by: Most helpful
  1. Eric Logsdon 81 Reputation points
    2022-03-03T13:37:43.88+00:00

    @SaiKishor-MSFT ,
    It seems that the IDPS solutions I have looked at work on a vnet. I can't put a vnet in front of Azure FrontDoor because of it's location in the edge network. I also saw where it is not recommended to a vnet on the back end (app service) when using FrontDoor. Is my understanding incorrect?

    Eric Logsdon


  2. Eric Logsdon 81 Reputation points
    2022-03-08T19:29:56.973+00:00