Setting up Azure Function App with Azure Application Gateway (WAF)

tevin.sales 40 Reputation points
2024-08-05T07:07:02.6833333+00:00

Hello!

I am currently trying to setup an Azure function application that will be accessed through an Application Gateway that restricts the network level access using the Azure WAF. I want to restrict the network level access by geographical location and see that it's supported with Azure WAF.

I have tried doing some tests and get stuck at setting up the listener on the Application Gateway when we want to setup for HTTPs since we need to provide the certification. Currently the function app is setup only using the default azurewebsites.net. I don't know the exact IP's that will access the api's but ideally we want to restrict this api to specific countries only.

How can I go about setting this up correctly? Or is there a better option to setup this network level security instead?

Azure Functions
Azure Functions
An Azure service that provides an event-driven serverless compute platform.
5,073 questions
Azure Application Gateway
Azure Application Gateway
An Azure service that provides a platform-managed, scalable, and highly available application delivery controller as a service.
1,078 questions
Azure Web Application Firewall
0 comments No comments
{count} votes

Accepted answer
  1. Deepanshukatara-6769 10,205 Reputation points
    2024-08-05T07:37:26.94+00:00

    Hi , Welcome to MS Q&A

    I think you can create Custom rules to suit the exact needs of your applications and security policies and restrict access to your web applications by country/region. To create a geo-filtering custom rule, select Geo-location as the Match Type, and then select the country you want to allow/block from your application.

    For more information, see Geomatch custom rules (preview).

    And regarding certificates for configuration listener , please check this Configure App Service with Application Gateway

    Please let me know if any questions

    Kindly accept answer if it helps

    Thanks

    Deepanshu

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.