Apply a rule set to every request
Create the firewall rule whose Set WAF behavior hands every request to one rule set, from Azion Console, the Azion CLI, or the API.
You can create the Rules Engine for Firewall rule that applies a rule set to every request from Azion Console, the Azion CLI, or the API. A rule set scores nothing until a rule names it, and the criterion below skips no request.
Prerequisites
- A firewall bound to your workload, with WAF turned on in its main settings.
- A rule set to apply, such as
storefront-waf. To create one, refer to Create a rule set at medium sensitivity. - The Azion CLI installed and a configured personal token, for the CLI procedure.
- A personal token, for the API request.
Create the rule
To create the rule from Azion Console:
Access Azion Console > Firewalls, then select that firewall.
Enter Apply storefront-waf as the name.
In the Criteria section, select the Request Uri variable, the starts with operator, and / as the argument.
In the Behaviors section, select Set WAF, then storefront-waf as the rule set and Blocking as the mode.
The rule hands every request the firewall receives to storefront-waf in blocking mode.
For the same rule with the threat families and the mode left open, refer to Create and apply a WAF rule set.