A web application firewall (WAF) inspects HTTP and HTTPS requests at layer 7 and blocks common web attacks such as SQL injection, cross-site scripting, remote file inclusion and protocol violations. It complements, not replaces, secure coding. Azure Web Application Firewall can run in two places. On Azure Application Gateway, a regional layer 7 load balancer, it protects applications in one region, typically inside or in front of a virtual network. On Azure Front Door, a global edge service with anycast entry points, it filters traffic at Microsoft's edge before it reaches your origins, which suits global apps and stops bad traffic close to its source.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 5 more sections, 5 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.