FazBrowse GitHub Viewer | Trending |
URL:
| Home
Tools: [Download Repo ZIP]   [Original HTTPS Page]

[Security] Deploy Azure Front Door with WAF · Issue #17 · devopsabcs-engineering/gh-advsec-devsecops · GitHub

[Security] Deploy Azure Front Door with WAF #17

Description

Summary

Deploy Azure Front Door with Web Application Firewall (WAF) to protect the sample-web-app blueprint from DDoS and web application attacks.

Threats Addressed

  • T-001: DDoS Attack (High Risk)
  • T-002: Web Application Attacks - SQLi, XSS (Critical Risk)

Acceptance Criteria

  • Azure Front Door Premium deployed with WAF policy
  • WAF configured with OWASP Core Rule Set 3.2
  • WAF mode set to Prevention
  • App Service configured to only accept traffic from Front Door
  • Rate limiting rules configured

Implementation Reference

See security-plan-sample-web-app.md for Bicep code samples.

Priority

P1 - Critical - Implement immediately

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions


      Back | FazBrowse Home | New Git URL