Azure App Service Security

Guidance for securing Azure App Service web apps and APIs — managed identity, Easy Auth with Microsoft Entra ID, network isolation via private endpoints + VNet integration, HTTPS / TLS hardening, Key Vault references for secrets, and front-end WAF (Front Door / App Gateway). WHEN: App Service security, secure web app on Azure, Easy Auth, App Service managed identity, private endpoint web app, VNet integration, App Service TLS, Key Vault references, harden App Service, FTP disable, WAF in front of App Service, access restrictions. DO NOT USE for Azure Functions specifics only (similar but separate), AKS workloads (different platform), or VM-hosted web apps.

vinayaklatthe Updated

File contents

vinayaklatthe/microsoft-security-skills/tree/main/skills/azure-app-service-security commit 0354b8d48f

Frequently asked questions

npx skillmds@latest add vinayaklatthe/azure-app-service-security