A quick tip on hardening your SQL database in combination with an Azure Webapp. Browse to the properties of your webapp. Copy the “outbound ip addresses” to your text editor.
Now browse to the “SQL Server” you have provisioned in Azure. Click on “Show firewall settings” and enter the IP addresses you just noted down.
A small pointer ; You have to enter this an address at the time and save after each entry… Annoying as hell, though this is how the UI works.
Anyhow, let’s see how our webapp behaves…
As you probably do not believe my right off the bat. So let’s clear up the firewall rules…
and test again!
Now we notice that the access to the database was denied. The address listed there is the one that was present in the outbound ip addresses listing from earlier on.
Have fun hardening!