Skip to main content

Public Preview: Default Rule Set 2.1 for Regional WAF with Application Gateway

Published date: June 29, 2023

Announcing the preview of the Default Rule Set 2.1 (DRS 2.1) for regional WAF on Azure Application Gateway. The default rule set is now available on the Azure Application Gateway WAF V2 SKU.

DRS 2.1 is baselined off the Open Web Application Security Project (OWASP) Core Rule Set (CRS) 3.3.2 and extended to include additional proprietary protections rules developed by Microsoft Threat Intelligence team. The Microsoft Threat Intel team analyzes Common Vulnerabilities and Exposures (CVEs) and adapts the CRS ruleset to address CVE and reduce false positives.

For more information on what's included in this release, please see our managed rules documentation.

  • Application Gateway
  • Web Application Firewall
  • Security Information
  • Features
  • Services