Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Young_Wook_Choi
Contributor

Request for Azure Architecture Reference Meeting the Following Conditions

Dear all,

I would like to request a detailed Azure-based architecture reference that meets all of the following conditions. Please use Azure-native terminology where applicable:

1. Source IP visibility must be ensured for both HTTP and Non-HTTP traffic.

2. IPv6 address support must be available.

3. Web traffic must pass through a WAF.

If it is not possible to meet all the above conditions in a single architecture, I would appreciate alternative references where the requirements are met through separate architectures.

Additionally, if there are any real-world deployments based on the proposed architecture(s), I would appreciate reference cases or documentation.

Additional Questions:

1. Is it possible to use both Azure Application Gateway (AppGW) and Gateway Load Balancer (GWLB) in a single VMSS deployment?

2. How is web traffic handled in a GWLB-based architecture?

3. Is web traffic excluded, or is it redirected through another path?

4. What is the process when the number of deployed instances exceeds the licensed limit?

Please let me know if any further clarification is needed.

Best regards,

0 Kudos
1 Reply
Duane_Toler
Advisor

Does sk109360 meet your needs?

https://support.checkpoint.com/results/sk/sk109360

 

sk176726 covers private endpoints for PaaS instances:

sk176726

 

For WAF, I would recommend Check Point's CloudGuard WAF, either as SaaS or Azure native deployment.

https://waf-doc.inext.checkpoint.com/troubleshooting/waf-gateway-virtual-machine/azure

 

--
Ansible for Check Point APIs series: https://www.youtube.com/@EdgeCaseScenario and Substack
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.