Signature-based intrusion detection and prevention in Azure Firewall Premium, which raises alerts on or blocks harmful traffic. It only takes effect with a Premium policy attached.
Also called intrusion detection and prevention system.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains IDPS in context, with comparison tables and the common traps.
Terms in this definition
- Azure Firewall Premium
Top Azure Firewall SKU, which builds on Standard with IDPS, TLS inspection, URL filtering and web categories; using those features requires a firewall policy on the Premium tier.
- Premium
Hosting plan for Azure Functions that keeps instances pre-warmed to avoid cold starts and supports VNet integration. Executions time out after 30 minutes by default, which host.json can extend.
- Exclusions
Scopes taken out of a policy assignment; they can only narrow its coverage, never widen it.
Related terms
- Azure Firewall Standard
Mid-level Azure Firewall SKU: it filters with application and network rules, can block known-bad addresses using threat intelligence and acts as a DNS proxy. Inspecting TLS traffic and IDPS are Premium-only.
- OIDC
OpenID Connect, an OAuth 2.0-based identity standard that issues JSON ID tokens. VCF Identity Broker supports it, alongside SAML 2.0, for external IdPs.