Hi chitra manju
Greetings!
Welcome to the Microsoft Q&A Platform. Thank you for reaching out & I hope you are doing well.
- Yes, you can enable Azure Firewall but the term "enable firewall" is incorrect; instead, you can create or delete a firewall.
- Charges apply for the Azure Firewall instance itself. This means that costs will be incurred as long as the firewall is deployed, regardless of whether any traffic is processed.
- No, azure firewall costed for number policies or number of rules, but data processing will be cost on hourly basis.
- If your firewall processes traffic between different Azure regions or between Azure and on-premises, data transfer costs will apply.
- Network Security Groups (NSGs): NSGs are free to use and provide basic network-layer security by allowing or denying inbound and outbound traffic to Azure resources based on rules. They are a good choice for simpler scenarios or demo environments where advanced features are not required.
- Azure Firewall: Azure Firewall offers advanced features such as application filtering, threat intelligence, and logging, but it incurs costs for provisioning and data processing. It is more suitable for production environments requiring enhanced security and monitoring.
NOTE: There is no cost for Azure Firewall Manager. You are only charged for the policies and deployments created through Azure Firewall Manager.
Hope this clarifies,
Thanks
Ganesh
Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.