Do we have an option to enable WAF or implement a web app firewall to secure the D365 platform URLS that we use to serve customers or Microsoft has taken care of this security feature to cover OWASP and other attacks
Implementation of Web Application firewall to secure D365
Hi,
Microsoft Azure, the cloud platform that often hosts Dynamics 365, offers Azure Web Application Firewall for securing web applications. You can refer to this official documentation: Tutorial: Create an application gateway with a Web Application Firewall using the Azure portal | Microsoft Learn. This tutorial shows you how to use the Azure portal to create an Application Gateway with a Web Application Firewall (WAF). The WAF uses OWASP rules to protect your application. These rules include protection against attacks such as SQL injection, cross-site scripting attacks, and session hijacks.
Best regards,
Kevin
Under review
Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.