Azure Application Gateway
Use Cases and Deployment Scope
I have been using Azure Application Gateway to provide a security appliance for my Azure App Service applications by utilizing TLS certificates. Also application gateway has been used in conjunction with Azure Web Application Firewall (WAF) to protect the organization against the known OWASP web application vulnerabilities. Azure Application Gateway has provided a way to isolate the security management team from the application and software development team and delegate only the necessary permissions to each team.
Pros
- TLS bridging (end-to-end TLS encryption)
- TLS offloading
- Web Application Firewall with OWASP Web Application security rules
- Scalability and performance
Cons
- More cost-effective pricing plans are welcome for the future, especially for WAF
- Ability to automate the TLS certificate renewal procedure
- Ability to manage non-HTTP traffic
Return on Investment
- Application Gateway v2 has significantly improved the performance of applications and the end-user satisfaction, thus bringing more end users and customers into our infrastructure.
- Application Gateway v2 has significantly improved the overall security of our backend .NET apps by introducing TLS end-to-end encryption and OWASP rules via the WAF service.
- Business departments have reported a 20% increase in ROI over the last 6 months.
Usability
Other Software Used
Azure App Configuration, Azure Database Migration Service, Microsoft Azure IoT Central, Microsoft Azure IoT Hub, Azure Machine Learning, Azure Kubernetes Service (AKS), Azure Container Apps, Azure Container Instances, Azure Container Registry, Microsoft Azure Key Vault




