Forum Discussion
53CU1t
May 13, 2022Copper Contributor
Azure Firewall Threat Intelligence
Hi,
i enabled Azure Firewall Threat Intelligence Service "Deny and Alert" in my Policy and tested via testmaliciousdomain.eastus.cloudapp.azure.com like in microsoft docs https://docs.microsoft.com/de-de/azure/firewall/threat-intel but curl don't work and it should by handele via build default rule of threat intel in firewall ruleset. Does anyone have experince if the service works and how to get a valid test?
Regards Sebastian
1 Reply
- fernandoloureiroCopper ContributorHi,
I also have the Threat Intelligence Service "Deny and Alert" in my Policy. Tried to access the testmaliciousdomain.eastus.cloudapp.azure.com both http and https but in fact i ended up with not having access because this url timed out. No logs have been generated on the az firewall. I think that curl is not the best approach to make this test. I will create a dummy vm and with a browser try to access some services of test like wicar to see if the behaviour is the same. Will share the test output later.