Azure Web Application Firewal and special characters

Nibbler 616 Reputation points
2021-01-08T11:38:52.28+00:00

Hello Q&A,

I`m having issues adding special characters such as À à È è to the WAF exclusion lists.

Getting the following error message.

Azure Application Gateway
Azure Application Gateway
An Azure service that provides a platform-managed, scalable, and highly available application delivery controller as a service.
956 questions
Azure Web Application Firewall
0 comments No comments
{count} votes

Accepted answer
  1. JoyDutt 816 Reputation points
    2021-01-10T23:06:37.867+00:00

    Hi @KE1980 , I tried this adding in Azure portal WAF - it doesnt allow. I assume its by design of product.


1 additional answer

Sort by: Most helpful
  1. JoyDutt 816 Reputation points
    2021-01-08T13:00:07.353+00:00

    Hi @KE1980

    Thank you for your post MS Q&A!

    Example Special Characters: Active Directory inserts tokens that are used for authentication. These tokens can contain special characters that may trigger a false positive from the WAF rules. WAF exclusion lists allow you to omit certain request attributes from a WAF evaluation.

    Ref read - https://learn.microsoft.com/en-us/azure/web-application-firewall/afds/waf-front-door-exclusion

    (Please don’t forget to **"Accept the answer" & “up-vote” **, this can be beneficial to other members. Thank You)

    Regards, ** J.D. **