Roadmap questions: APIM self-hosted gateway on Workspaces, self-hosted gateway on V2 SKUs, and DRS 2.2/OWASP support for AGC WAF

Mouad MIKOU 25 Reputation points
2026-07-10T17:32:02.4766667+00:00

Hi Team,

I'd like to ask about the roadmap for a few gaps I've run into across API Management and Application Gateway for Containers. Posting all three together since they're related to gateway/networking capability parity across tiers.

1. Self-hosted gateway support for Workspaces Current docs state that a workspace can't be associated with a self-hosted gateway — only the default managed gateway or a dedicated workspace gateway (Premium tier). Is there a roadmap item to let workspaces route through a self-hosted gateway, for hybrid/on-prem scenarios where teams want workspace-level delegation and an on-prem data plane?

2. Self-hosted gateway on V2 SKUs Per the V2 tiers documentation and confirmed in other Q&A threads, self-hosted gateways are currently only available on Developer and Premium (classic) tiers — not on Basic v2/Standard v2/Premium v2. Is there a plan to bring self-hosted gateway support to the V2 SKUs? This would help customers who want V2's simplified networking/scaling but still need a hybrid/on-prem gateway option.

3. DDoS Protection and DRS 2.2/OWASP support on Application Gateway for Containers WAF AGC's WAF currently only supports DRS 2.1 (not the newer DRS 2.2, which is already GA on Application Gateway and Front Door), and the HTTP DDoS ruleset is explicitly listed as not currently supported on AGC. Are there plans to bring AGC WAF up to parity with DRS 2.2 and add DDoS protection support?

Any insight into timelines, preview status, or whether these are tracked feature requests would be appreciated. Happy to file these individually as separate threads if that's preferred.

Thanks!

Azure API Management
Azure API Management

An Azure service that provides a hybrid, multi-cloud management platform for APIs.


Answer accepted by question author
Alex Burlachenko 25,285 Reputation points MVP Volunteer Moderator
2026-07-13T09:50:34.5266667+00:00

hi Mouad MIKOU & thx for sharing urs issue here at Q&A portal,

those are all reasonable requests, but I don't think anyone outside the product teams can give a reliable roadmap or ETA.

As of today, the documentation still reflects the current limitations

Workspaces support the managed gateway or a workspace gateway, but not a self-hosted gateway.

Self-hosted gateways are supported on the classic Developer and Premium tiers, not the v2 SKUs.

Application Gateway for Containers WAF doesn't yet have feature parity with Application Gateway WAF in areas such as DRS 2.2 and the HTTP DDoS ruleset.

I really haven't seen any public announcements or preview programs that change those statements, so I wouldn't plan around those capabilities being available until Microsoft announces them. I'd recommend splitting these into separate feature requests if you're looking for product team feedback, as they're owned by different engineering teams (APIM vs. Application Gateway for Containers). That also makes it easier for Microsoft to track customer demand for each feature individually. Hopefully someone from the APIM and AGC product teams can comment if any of these are actively on the roadmap but Microsoft generally doesn't publish timelines for unreleased features.

rgds,

Alex

&

If my answer was helpful pls mark it and additional thx if u follow me at Q&A portal

and at my blog https://ctrlaltdel.blog/

 

Was this answer helpful?

1 person found this answer helpful.

1 additional answer

Sort by: Newest
  1. Christos Panagiotidis 3,551 Reputation points
    2026-07-13T11:48:43.1+00:00

    Hi! Based on the currently documented capabilities, workspaces cannot use the APIM self-hosted gateway, and the v2 SKUs do not provide self-hosted gateway parity with the classic Developer/Premium tiers. AGC WAF capability also remains dependent on its documented supported rulesets. Microsoft generally does not confirm roadmap dates through Q&A. I would submit these as three separate feedback requests and design against currently available features until a public preview is announced.

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.