Azure Application Gateway

AzureNetworking

Layer 7 load balancer with integrated web application firewall, SSL termination, URL-based routing, cookie-based session affinity, and autoscaling based on traffic

Jurisdictional exposure

Provider HQ
USRedmond, USA

Subject to CLOUD Act, FISA-702, DPF

Region locations
APACCNEEAEUUKUSOther73 regions across 7 jurisdictions
Sovereign option
Yes — 13 sovereign-flagged regions available

Attributes

SLA Uptime
99.95%
SSL Termination
Yes
URL Based Routing
Yes

Sub-services (3)

Web Application Firewall

OWASP rule-based protection for web apps

Ingress Controller for AKS

Kubernetes-native L7 ingress with App Gateway

Autoscaling

Automatic scale based on traffic load

Compliance & Certifications

This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.

Where this runs

73 regions
36 countries
13sovereign
Sovereign regions (13)
  • Australia Central · CanberraAzure Australia Government
  • Australia Central 2 · CanberraAzure Australia Government
  • US Gov Virginia · VirginiaAzure Government (US)
  • US Gov Arizona · ArizonaAzure Government (US)
  • US Gov Texas · TexasAzure Government (US)
  • US DoD East · VirginiaAzure Government Secret (US)
  • US DoD Central · IowaAzure Government Secret (US)
  • China North (Beijing) · BeijingMicrosoft Azure China (21Vianet)
  • China East (Shanghai) · ShanghaiMicrosoft Azure China (21Vianet)
  • China North 2 · BeijingMicrosoft Azure China (21Vianet)
  • China East 2 · ShanghaiMicrosoft Azure China (21Vianet)
  • China North 3 · HebeiMicrosoft Azure China (21Vianet)
  • China East 3 · ShanghaiMicrosoft Azure China (21Vianet)
Commercial regions (60)

Europe (21)

  • Austria East
  • Belgium Central
  • Denmark East
  • Finland Central
  • France South
  • France Central
  • Germany North
  • Germany West Central
  • Greece Central
  • North Europe
  • Italy North
  • West Europe
  • Norway East
  • Norway West
  • Poland Central
  • Spain Central
  • Sweden Central
  • Switzerland West
  • Switzerland North
  • UK West
  • UK South

North America (13)

  • Canada East
  • Canada Central
  • Mexico Central
  • West US
  • East US 3
  • North Central US
  • Central US
  • West US 3
  • South Central US
  • East US
  • East US 2
  • West US 2
  • West Central US

South America (3)

  • Brazil Southeast
  • Brazil South
  • Chile Central

Asia (13)

  • East Asia
  • South India
  • Jio India West
  • West India
  • Jio India Central
  • Central India
  • Indonesia Central
  • Japan West
  • Japan East
  • Malaysia West
  • Southeast Asia
  • Korea South
  • Korea Central

Oceania (3)

  • Australia East
  • Australia Southeast
  • New Zealand North

Middle East (5)

  • Israel Central
  • Qatar Central
  • Saudi Arabia Central
  • UAE Central
  • UAE North

Africa (2)

  • South Africa West
  • South Africa North

Tags

Equivalent services on other platforms

Alibaba Server Load BalancerAlibaba

Managed L4 (NLB) and L7 (ALB) load balancers with HTTP/3 and QUIC support, health checks, TLS termination, weighted forwarding, geo-aware routing, and integration with Alibaba's Anti-DDoS and WAF

Alibaba Web Application FirewallAlibaba

Managed WAF protecting web apps from OWASP Top 10 attacks, bot traffic, API abuse, and data scraping, with global and China regional deployment, custom rule engine, and unified consoles across Anti-DDoS and Security Center

Elastic Load BalancingAWS

Distribute incoming traffic across multiple targets with four load balancer types: Application (L7), Network (L4), Gateway (inline appliances), and Classic (legacy)

AWS Global AcceleratorAWS

Anycast network layer that routes client traffic to the nearest AWS edge and across the AWS global backbone to healthy endpoints in multiple regions, with two static anycast IPs, automatic failover, TCP and UDP support, and DDoS protection via Shield Standard

AWS WAFAWS

Web application firewall that protects against common exploits with managed rule groups, custom rules, rate-based rules, Bot Control, and CAPTCHA challenges

Brightbox Load BalancersBrightbox

Managed HTTP/HTTPS/TCP load balancers with SSL termination, health checks, and zero-downtime backend rotation

Civo Load BalancerCivo

Managed L4/L7 load balancers fronting Civo Compute and Kubernetes workloads with health checks, sticky sessions, and TLS termination

Cloudflare Load BalancingCloudflare

Global DNS and anycast-based traffic load balancing across pools of origins with weighted, geo-steering, random, proximity, and least-outstanding-requests policies plus active health checks and automatic failover

Cloudflare WAFCloudflare

L7 web application firewall protecting against OWASP Top 10 risks with Cloudflare-managed rule sets, custom expression-based rules, exposed-credentials detection, rate-limiting integration, and machine-learning attack-score signals tuned across the global traffic graph

Gcore Load BalancerGcore

Managed L4 and L7 load balancing with TLS termination, health checks, sticky sessions, and integration with Gcore's compute and managed Kubernetes

Gcore WAAPGcore

Web application and API protection with OWASP rule sets, bot management, API schema enforcement, and rate limiting — delivered at the CDN edge with a single configuration surface

Cloud Load BalancingGCP

Global software-defined L4 and L7 load balancing with a single anycast IP, cross-region failover, CDN integration, and Cloud Armor DDoS protection

Cloud ArmorGCP

Edge DDoS protection and web application firewall with managed rule sets for OWASP Top 10, adaptive bot protection, and reCAPTCHA Enterprise integration

Hetzner Load BalancerHetzner

Managed L4/L7 load balancers with health checks, sticky sessions, and managed certificate provisioning

Huawei Web Application FirewallHuawei

Managed web application firewall with OWASP Top 10 rule sets, bot management, anti-crawler, CC (challenge-collapsar) attack mitigation, custom rule engine, and regional deployment with integrated DDoS protection

Huawei Elastic Load BalanceHuawei

Managed L4 and L7 load balancing with shared and dedicated instance types, HTTP/HTTPS/TCP/UDP listeners, cross-zone forwarding, health checks, TLS termination, and integration with WAF and Anti-DDoS

IBM Cloud Internet ServicesIBM

Edge delivery and security bundle powered by Cloudflare, offering DNS, global load balancing, WAF, DDoS protection, CDN, rate limiting, and Page Rules through a single IBM Cloud-native control plane

Network Load BalancerIONOS

Layer 4 network load balancer for high-throughput applications in EU datacentres

IONOS Application Load BalancerIONOS

Layer-7 load balancer with HTTP/HTTPS path-based routing, SSL termination, sticky sessions, and integration with Compute Engine and Managed Kubernetes target pools

Load BalancerKakao

Layer 4 (network) and Layer 7 (application) load balancers with health checks, SSL termination, and integration with WAF

OpenStack OctaviaOpenStack

Load Balancer as a Service powered by HAProxy (or a vendor backend), with TLS termination, L4/L7 routing, autoscaling pools, and amphora-based active/standby high availability — the OpenStack equivalent of ELB / Azure Load Balancer / Cloud Load Balancing

OCI Load BalancerOracle

Managed load balancing with both L7 HTTP/HTTPS flavour (Flexible Load Balancer with SSL offload, WAF integration, path-based routing) and L4 Network Load Balancer (UDP, TCP, ultra-low-latency) across OCI regions with auto-scaling bandwidth

Elastic Load BalancingT Cloud

Managed L4 and L7 load balancers — TCP/UDP passthrough, HTTP/HTTPS with path-based routing, TLS termination with managed certificates, sticky sessions, and cross-AZ health checks

Web Application FirewallT Cloud

L7 web application firewall protecting against OWASP Top 10 risks — SQL injection, XSS, command injection — with managed rule sets, custom rules, IP allow/block lists, and bot-detection heuristics tuned for OTC-hosted apps

Outscale Load Balancer (LBU)Outscale

Load-Balancing Unit — L4/L7 load balancer with health checks, sticky sessions, TLS termination, and AWS ELB-compatible API. Internet-facing or internal-only modes; HTTP/HTTPS/TCP/UDP protocols.

OVHcloud Public Cloud Load BalancerOVHcloud

Layer-4 and Layer-7 managed load balancer for Public Cloud Instances and Managed Kubernetes, with HTTP/HTTPS path routing, SSL termination, and cross-zone health checks

Scaleway Load BalancerScaleway

Managed L4 and L7 load balancer with health checks, SSL termination, sticky sessions, and integration with Instances and Kubernetes Kapsule target pools

STACKIT Load BalancerSTACKIT

Managed L4/L7 load balancers with TLS termination, health checks, and integration with STACKIT compute and SKE — fully GDPR-resident in Germany

STACKIT Application Load BalancerSTACKIT

Layer-7 load balancer with HTTP/HTTPS path-based routing, SSL termination, and integration with Compute Engine and Kubernetes Engine target pools — distinct from the L4 STACKIT Load Balancer

Tencent Cloud Load BalancerTencent

Managed L4 and L7 load balancing with internet-facing and internal variants, HTTP/HTTPS/TCP/UDP/QUIC listeners, WebSocket support, session persistence, configurable health checks, and automatic integration with TCR and CKafka origins

UpCloud Managed Load BalancerUpCloud

Layer 4 / Layer 7 managed load balancer with automated failover across UpCloud zones and managed certificate provisioning

Pricing

Pricing model:pay-as-you-go