Application Gateway Flashcards
1
Q
Use cases
A
HTTP/S TLS / SSL Offload Built-in WAF Cookie affinity URL routing
2
Q
Design considerations for Application Gateway
A
Only use if encryption it not needed from App Gateway to backend
Stateful apps should be avoided (apps that need client to connect to the same server)
3
Q
Configuration
A
1 - Frontend IP 2 - Listener HTTP/S, Cert SSL 3 - Rule/s 4 - Backend Pools Health probes created automatically
4
Q
WAF Protection (5)
A
SQL injection Cross-site scripting HTTP request smuggling Remote file inclusion HTTP protocol anomalies
5
Q
WAF Mode and logs
A
Prevention Detection - Azure Monitor - Azure Security Centre - Log Analytics
6
Q
3rd Party Firewalls
A
Place in DMZ