Generally Available: Azure Firewall Updates - IP Group limit increased to 600 per Firewall Policy
Share
Services
Azure Firewall Policy now supports up to 600 IP Groups per policy, up from the previous limit of 200\. This enhancement enables users to:
* Reduce rule complexity by replacing long lists of IPs with more well-organized IP Groups, making rule sets easier to manage and audit.
* Supports large-scale architectures and microsegmentation: Enterprises often manage hundreds of app tiers, networks, and subnets.
* Improves troubleshooting: Named groups make it easier to understand rule intent (e.g., HR-Network, IT-Network, etc.) in logging during debugging or reviews.
**Learn more:**
* about [IP Groups in Azure Firewall Policy](https://learn.microsoft.com/azure/firewall-manager/ip-groups).
* about [Public IP address limits](https://learn.microsoft.com/en-us/azure/azure-resource-manager/management/azure-subscription-service-limits#azure-firewall-limits).