Mar 27, 2026 - For details about updated CVE-2025-53521 (BIG-IP APM vulnerability), refer to K000156741.

Forum Discussion

Stan_Marsh's avatar
Stan_Marsh
Icon for Nimbostratus rankNimbostratus
Mar 30, 2026

Cloud Apps Protection

Hello Everyone,

 

I hope you're well,

 

I realize a  deploy A F5 Big-IP.

I have two doubts:

 

  1. Can the Big-IP on-premise solution protect external web applications hosted on AWS and Azure?
  2. Can the WAF module in Big-IP on-premise protect mobile applications (APP Mobile)?

Would it be possible in scenarios On-Premise , or I need to opt for a Distributed Cloud or Hybrid solution?

1 Reply

  • Hi Stan_Marsh​ 

     

    The better approach & architecture is to leverage F5 Distributed Cloud WAAP solution for AWS/Azure applications (Cloud/Edge apps).   

     

    1. Can the Big-IP on-premise solution protect external web applications hosted on AWS and Azure?  ===> This is possible but you would have to accept implementing a sub-optimal design and be able to route traffic through the BIG-IP On-Premise WAF and then as pool members route to the AWS/Azure hosted internal apps.  This likely involves a internal backbone out to AWS Direct Connect etc.   Ideally you would want the BIG-IP in a security VPC front ending this.. Having customer traffic traverse on-prem BIG-IP and then back out to cloud externally or internally adds un-needed complexity.

     

    2. Can the WAF module in Big-IP on-premise protect mobile applications (APP Mobile)?  ===> Yes!   - Distributed Cloud might have some more advanced features to consider.