Collection of WAF rules maintained by Azure, such as OWASP CRS/DRS and bot rules, that look for attack signatures in request content. Filtering by rate, geography or client address is not something they do.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Managed rule set in context, with comparison tables and the common traps.
Terms in this definition
- Web Application Firewall
Protection at layer 7 from OWASP Top 10 threats like XSS and SQL injection, available on Application Gateway or Front Door.
- OWASP
Short for Open Web Application Security Project. WAF rule sets are designed to block the critical web application risks this group lists in its OWASP Top 10.