Training
Module
Introduction to Azure Web Application Firewall - Training
Describe how Azure Web Application Firewall protects Azure web applications from common attacks, including its features, how it's deployed, and its common use cases.
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Rule templates are used to provide a simple way of creating one or more rewrite rules for a certain scenario. URL rewriter module includes several rule templates for some common usage scenarios. In addition to that URL rewrite module UI provides a framework for plugging in custom rule templates. This walkthrough will guide you through how to use "Request Blocking" rule template that is included with URL rewrite module.
The "Request Blocking" rule template can be used to generate a rule that blocks incoming requests based on various criteria. For example, requests can be blocked based on certain pattern within URL path or based on certain value in one of the request headers.
To use the template follow these steps:
Go to IIS Manager
Select "Default Web Site"
In the "Actions" pane on right hand side click on "Add rules…"
In the "Add Rules" dialog select "Request Blocking" and click "OK":
In the "Add request blocking rule" dialog choose to:
Click "OK" to create the rule.
To test this rule, open a Web browser and make a request to http://127.0.0.1/iisstart.htm
. What you should see is a browser that does not receive any response from the server. However, if you request http://localhost/iisstart.htm
, then the Web server will respond successfully.
In this walkthrough you have learned how to use "Rule with Rewrite Map" template to generate rules that can protect security of your web application by blocking unwanted requests.
Training
Module
Introduction to Azure Web Application Firewall - Training
Describe how Azure Web Application Firewall protects Azure web applications from common attacks, including its features, how it's deployed, and its common use cases.