Azure Front Door include policy that associated to the endpoint, but actually it's not block anything.

Shlomi Rachamim 20 Reputation points
2025-07-27T10:20:47.0666667+00:00

Hello

We've Azure Front Door include policy that associated to the endpoint, but actually it's not block anything.

please help,

if needed I can send private message with all our settings,

the currently mode is Prevention, and have Managed rule and OWASP rules included, but not blocked anything when try to put any suspicious letters

Azure Front Door
Azure Front Door
An Azure service that provides a cloud content delivery network with threat protection.
{count} votes

1 answer

Sort by: Most helpful
  1. Praveen Bandaru 6,850 Reputation points Microsoft External Staff Moderator
    2025-07-28T01:32:38.9733333+00:00

    Hello Shlomi Rachamim
    I understand that you're experiencing issues with your Azure Front Door policies not blocking any traffic, even though they are configured in Prevention mode and both Managed and OWASP rules are enabled.

    • Please double-check that the WAF policy is properly associated with the Front Door endpoint and applied to the correct route or domain.
    • Make sure the OWASP rules are enabled and that the specific rules blocking suspicious characters or patterns are active. Review the rule sets to confirm they address the threats you’re targeting.
    • If you have custom rules, verify they are set to Block rather than just Log or Allow, and check the priority of these rules, as custom rules can sometimes override managed rules.
    • Enable logging if it’s not already active to help review processed requests and understand why certain requests may not be blocked. Azure Diagnostic Logs can be useful for this.
    • Also, review any exceptions or exclusions in your policies that could prevent blocking for specific requests.

    Check the below document for more understanding:
    https://learn.microsoft.com/en-us/azure/web-application-firewall/afds/afds-overview#protection
    https://learn.microsoft.com/en-us/azure/frontdoor/web-application-firewall#policy-settings


    Hope the above answer helps! Please let us know do you have any further queries.

    Please do consider to “up-vote” wherever the information provided helps you, this can be beneficial to other community members


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.