

Microsoft Azure Application Gateway and Azure Web Application Firewall compete in web application security and traffic management. Azure Web Application Firewall has the upper hand in security features, whereas Azure Application Gateway is preferred for traffic routing and load balancing.
Features:Azure Application Gateway provides URL-based routing, SSL termination, and WebSocket support, enhancing traffic management. Azure Web Application Firewall offers protection against SQL injection, cross-site scripting, and supports custom rules for strong security.
Room for Improvement:Azure Application Gateway could improve by simplifying the setup process, enhancing DDoS protection, and better API integration. Azure Web Application Firewall could benefit from expanded rule sets, more intuitive management dashboards, and improved real-time threat analysis.
Ease of Deployment and Customer Service:Azure Web Application Firewall boasts a straightforward deployment and easier integration with customer service due to its focus on security. Azure Application Gateway presents setup complexities but offers extensive traffic management support.
Pricing and ROI:Azure Application Gateway generally has lower setup costs, offering a moderate ROI focused on traffic management. Azure Web Application Firewall, though more expensive, delivers a higher ROI through advanced security features when dealing with high-risk threats.
Recently, they have been under serious attack with major exploits, such as Log4j, affecting Fortinet and Palo Alto, and even Cisco and VMware.
AI-based recommendations save on time and money.
Microsoft Azure Application Gateway significantly impacts our cost savings while maintaining higher performance.
If we can use a shared resource, then the return on investment is really nice.
We have seen a return on investment in terms of time-saving and cost-saving by not creating our own infrastructure.
They are good at troubleshooting and configuring things.
I am very satisfied with the response from Microsoft dedicated architects if it happens that I have to call for their support.
I reached out to their support, and they helped me resolve the issue effectively.
I would say they provide the best support for Application Gateway because they own the product, so their support is top-notch.
There is room for improvement, specifically in paid support, by providing more direct contact.
I would rate Microsoft support as good because they have a very skilled technical support team in the background
Some Azure applications, like the web application firewall, require a certain level of SKU for hosting setup.
For our company, Azure Web Application Firewall works effectively for scalability.
Microsoft Azure Application Gateway is a very scalable product.
It has the autoscaling feature, so there is not much concern around performance; it can scale significantly.
Microsoft Azure Application Gateway is a scalable solution.
Very rarely do I see any latency issues.
We have been using it for the past two to three years, and there have been good results with no problems so far.
The stability is good, and except for a few instances, I don't see the non-availability of Azure Cloud services.
Upgrading the platform regularly is necessary for security, however, frequent updates every six months or year from Azure can be a maintenance overhead.
The pricing needs improvement, and I think for beginners it will be a little bit complicated, so the ease of use could be enhanced.
One feature I mentioned is the support for non-HTTPS protocols such as TCP, which could allow one endpoint for all kinds of protocols.
There is room for improvement in terms of support, such as assigning agents directly for more straightforward engagement.
In future releases of Microsoft Azure Application Gateway, I would like to see more AI functionalities and a better dashboard as well as some customizations.
It is even a lower cost compared to AWS and GCP.
Sometimes, when opting for a higher SKU, it's not the WAF itself that's costly but the additional requirements.
I would place Azure Web Application Firewall at an eight on a scale from one to 10, with one being cheap and 10 being expensive.
We would prefer to have it cheaper, but it is still expensive.
Azure solutions are quite expensive.
When it comes to pricing for Microsoft Azure Application Gateway, I would rate it a seven out of ten.
With Microsoft, everything is within a single suite, making it easier to configure and plan.
It is almost impossible to access these assets from outside, requiring a very skilled attacker to obtain asset tokens of a customer using Azure.
It integrates effectively with things such as Sentinel and Defender for Cloud, so mostly it's the analytics and now the AI capabilities that have been introduced with Co-pilot.
We are using it for some of the security features for our applications, particularly for securing traffic in transit with SSL.
The Web Application Firewall (WAF) in Microsoft Azure Application Gateway has been very effective in protecting applications from security threats.
The gateway's Web Application Firewall feature enhances security as it is the first entry point to your network from the outside world.
| Product | Mindshare (%) |
|---|---|
| Microsoft Azure Application Gateway | 3.0% |
| Azure Web Application Firewall | 1.8% |
| Other | 95.2% |
| Company Size | Count |
|---|---|
| Small Business | 6 |
| Large Enterprise | 12 |
| Company Size | Count |
|---|---|
| Small Business | 23 |
| Midsize Enterprise | 6 |
| Large Enterprise | 24 |
Azure Web Application Firewall provides strong protection, easy setup, and smooth integration with Microsoft services. It excels in request filtering, custom rule creation, and protection against OWASP Top 10 attacks, ensuring scalable and reliable performance for businesses.
Azure Web Application Firewall offers flexible, affordable, and efficient protection against critical security threats like DDoS and SQL injection, with seamless integration with Azure tools, analytics, and AI capabilities. Users appreciate its ability to handle web requests through role-based access, automation features, and custom policies, especially valuable in cloud environments and ecommerce. Despite the need to improve reporting, management, proxy forwarding, and documentation, it remains a reliable choice for securing front-facing applications.
What are the most important features of Azure Web Application Firewall?Azure Web Application Firewall is widely used in ecommerce for securing transactions against cyber threats like phishing and SQL injection. It also supports reverse proxy setups, provides detailed log analytics, and offers layer 7 protection, making it suitable for businesses needing robust security for both front-facing and branch connectivity applications.
Microsoft Azure Application Gateway offers advanced traffic management and security features for web applications. It includes built-in rules, Layer 7 control, autoscaling, and integration options, providing flexibility and security for managing application traffic efficiently.
Azure Application Gateway is utilized by organizations for securing and managing web traffic with its comprehensive web application firewall, load balancing capabilities, and Layer 7 firewall rules. Known for its ease of setup and integration, the platform facilitates external application access and deploys secure services. While it enhances security with customized configurations, users note areas for improvement such as configuration complexity, pricing, third-party tool integration, and automation. Addressing these aspects can improve user experience and performance.
What are the key features of Microsoft Azure Application Gateway?Industries such as finance, healthcare, and retail implement Azure Application Gateway to protect sensitive data and manage significant web traffic. Its application deployment support and security capabilities make it suitable for businesses needing to ensure secure data exchange and reliable access to online services.
We monitor all Web Application Firewall (WAF) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.