Switch Application Gateway tier from WAF v2 to Standard V2

cai1991 21 Reputation points
2022-01-31T05:32:51.853+00:00

169761-screenshot.jpg
For Application Gateway V2, there is tab to switch tier, but the tip says "Changing from the WAF_v2 tier to the Standard_v2 tier is not supported". But when actually switching it from waf v2 to standard v2 and it's saved successfully.
Is this ok to do that?

Azure Application Gateway
Azure Application Gateway
An Azure service that provides a platform-managed, scalable, and highly available application delivery controller as a service.
1,079 questions
{count} votes

2 answers

Sort by: Most helpful
  1. zaamasu 791 Reputation points
    2022-01-31T12:02:47.363+00:00

    Hi,

    According to my verification, I could change Application Gateway's level from "WAF_v2" to "Standard_v2" too(I could change it from [Configuration] but failed [Web application firewall] at left pain), and I can see the same message that "not supported".
    However, my Application Gateway has worked and no error occurs at the moment.

    169893-aaa.jpg

    I couldn't find the Microsoft official KB that means the message "not supported".
    But I realize that the difference point between "WAF_v2" and "standard_v2" is whether [Web Application Firewall] function is valid or not. So, I think if you wouldn't like to use [Web Application Firewall] function. maybe it's OK to set "Standard_v2".

    But if you have any problems after changing, please switch back from "Standard_v2" to "WAF_v2".

    I hope that it will be helpful for you.

    Best regards,
    Zaamasu

    0 comments No comments

  2. Preetha Rajesh 51 Reputation points
    2022-10-17T09:29:04.217+00:00

    Hi

    I would like to add my view here.

    We do have application gateway in production environment and the selected tier is WAF V2(settings->configuration), which in turn is associated with web application firewall policy.

    If you try to change WAF v2 to standard v2, it will throw an error stating “Application gateway does not support Firewall policy with the selected SKU tier standard_v2”

    We can try disabling the “associated web application firewall policy” , by clicking on
    settings->web application firewall-> click on the associated firewall policy -> click disable in the overview page.
    Once above step is done, try changing it to standard v2 tier.

    Please refer below link
    https://learn.microsoft.com/en-us/azure/application-gateway/overview-v2

    Microsoft specifies the enhancements of v2 (standard/WAF) and clear feature comparison of v1 and v2.
    There is no official documentation on switching WAF v2 to standard v2.

    There is no need to switch from WAF V2 to Standard V2

    I would request @Azure Support to confirm.

    Thank You
    Preetha


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.