Microsoft Azure Security Engineer Associate AZ-500 Practice Question

An Azure Application Gateway v2 is running WAF in Prevention mode with the default OWASP CRS 3.2 rule set. Legitimate requests to /api/orders are blocked by managed rule 942100. You must allow requests whose URI path starts with /api/ while keeping rule 942100 active for the rest of the site. What should you configure?

  • Change the WAF policy to Detection mode and leave the rules unchanged.

  • Create a path-based routing rule that sends /api/* traffic to a backend pool outside the WAF.

  • Add a high-priority custom rule with the Allow action that matches RequestUriPath that starts with /api/*.

  • Disable managed rule 942100 in the policy.

Microsoft Azure Security Engineer Associate AZ-500
Secure networking
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot