Skip to content

Commit 23c88dc

Browse files
authored
Update application-gateway-crs-rulegroups-rules.md
Following https://dev.azure.com/msft-skilling/Content/_workitems/edit/240706 - Moved the note regarding rule ID 949110 to not be part of specific ruleset definitions - Highlighted the unsupported ruleset versions
1 parent e1c9ef0 commit 23c88dc

File tree

1 file changed

+8
-9
lines changed

1 file changed

+8
-9
lines changed

articles/web-application-firewall/ag/application-gateway-crs-rulegroups-rules.md

Lines changed: 8 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -446,11 +446,6 @@ The following rule groups and rules are available when using Web Application Fir
446446

447447
*<sup>This rule's action is set to log by default. Set action to Block to prevent against Apache Struts vulnerability. Anomaly Score not supported for this rule.</sup>
448448

449-
> [!NOTE]
450-
> When reviewing your WAF's logs, you might see rule ID 949110. The description of the rule might include *Inbound Anomaly Score Exceeded*.
451-
>
452-
> This rule indicates that the total anomaly score for the request exceeded the maximum allowable score. For more information, see [Anomaly scoring](./ag-overview.md#anomaly-scoring-mode).
453-
454449

455450
# [OWASP 3.2](#tab/owasp32)
456451

@@ -1027,11 +1022,15 @@ Bot300600 scans both client IP addresses and IPs in the `X-Forwarded-For` header
10271022

10281023
---
10291024

1030-
The following rule groups and rules are no longer supported on Web Application Firewall on Application Gateway.
10311025
> [!NOTE]
1032-
> CRS 3.0 and CRS 2.2.9 are no longer supported in Azure WAF. We recommend you upgrade to DRS 2.1 / CRS 3.2
1026+
> When reviewing your WAF's logs, you might see rule ID 949110. The description of the rule might include *Inbound Anomaly Score Exceeded*.
1027+
>
1028+
> This rule indicates that the total anomaly score for the request exceeded the maximum allowable score. For more information, see [Anomaly scoring](./ag-overview.md#anomaly-scoring-mode).
1029+
1030+
1031+
The following rulesets - CRS 3.0 and CRS 2.2.9 groups and rules are no longer supported in Azure Web Application Firewall on Application Gateway. We recommend you upgrade to DRS 2.1 / CRS 3.2
10331032

1034-
# [OWASP 3.0](#tab/owasp30)
1033+
# [OWASP 3.0 - no longer supported](#tab/owasp30)
10351034

10361035
## <a name="owasp30"></a> 3.0 rule sets
10371036

@@ -1239,7 +1238,7 @@ The following rule groups and rules are no longer supported on Web Application F
12391238
|943110|Possible Session Fixation Attack = SessionID Parameter Name with Off-Domain Referrer|
12401239
|943120|Possible Session Fixation Attack = SessionID Parameter Name with No Referrer|
12411240

1242-
# [OWASP 2.2.9](#tab/owasp2)
1241+
# [OWASP 2.2.9 - no longer supported](#tab/owasp2)
12431242

12441243
## <a name="owasp229"></a> 2.2.9 rule sets
12451244

0 commit comments

Comments
 (0)