azure-firewall-manager

Configure and optimize Azure Firewall Manager deployments across virtual hubs and VNets.

Updated Mar 18, 2026
One-click install
npx skills add https://github.com/mfcollins3/standup --skill azure-firewall-manager-mfcollins3
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: azure-firewall-manager
Source: https://github.com/mfcollins3/standup/tree/main/.github/skills/azure-firewall-manager
Command: npx skills add https://github.com/mfcollins3/standup --skill azure-firewall-manager-mfcollins3

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Azure Firewall Manager deployments often require specialized guidance for configuring rule processing, policy management, and centralized security controls; this skill consolidates expert recommendations and remote documentation to streamline decisions.

Core Features & Use Cases

  • Best practices for Azure Firewall Manager rule processing, policy inheritance, and centralized management.
  • Decision guidance on choosing between secured virtual hubs and hub VNets, and how this impacts security and routing.
  • Security-focused configurations: DDoS planning, centralized WAF policy management, and threat intelligence filtering.
  • Configuration guidance for DNS/DNS proxy, FQDN filtering, IP Groups, and private endpoint security across Virtual WAN.

Quick Start

Use this skill to fetch the latest Azure Firewall Manager guidance and apply recommended configurations to your deployment.

Frequently Asked Questions about azure-firewall-manager

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I configure Azure Firewall Manager policy inheritance and rule processing?

Azure Firewall Manager policy inheritance allows parent policies to cascade rules to child policies, prioritizing rule processing across centralized deployments. This skill provides expert guidance on configuring rule collections and hierarchical policy management for virtual hubs.

What is the difference between secured virtual hubs and hub VNets in Azure Firewall Manager?

Secured virtual hubs integrate with Virtual WAN for simplified routing, while hub VNets offer more granular control over custom routing and peering. This skill provides decision guidance to choose the best architecture for your security requirements.

How do I set up DNS proxy and FQDN filtering with Azure Firewall Manager?

DNS proxy enables Azure Firewall to inspect DNS queries and apply FQDN filtering rules. This skill provides configuration guidance for DNS settings and FQDN-based filtering across virtual hubs and VNets.

Can I use Azure Firewall Manager to centrally manage WAF and DDoS protection policies?

Yes, Azure Firewall Manager supports centralized WAF policy management and DDoS planning. This skill consolidates expert recommendations for configuring threat intelligence filtering and security-focused policies across Virtual WAN.

What are the limitations of using Azure Firewall Manager for private endpoint security?

Azure Firewall Manager requires integration with Virtual WAN for private endpoint security, which may complicate routing configurations in existing networks. This skill helps navigate IP Groups and private endpoint constraints.

Does Azure Firewall Manager work with Microsoft Docs content for deployment guidance?

Yes, Azure Firewall Manager integrates with Microsoft Docs content via mcp_microsoftdocs tools to fetch the latest deployment guidance. This skill consolidates remote documentation for architecture design and policy management decisions.