I have an azure app service that runs through cloudflare. As the site was previously running without cloudflare you can find my sites IP address via DNS history here https://securitytrails.com/
Knowing this it means an attacker could bypass my cloudflare DDOS protection.
How can I change the IP address of my azure app service without deleting it?
I'm guessing I could add a public IP and route all traffic from this IP to my existing IP, then I could firewall my existing IP to only accept traffic from the new one. This seems a little convoluted when I could just change the IP, update DNS during nighttime and accept the possibility of a few hours of downtime for users who like to work at 4am (none). Is it possible to force the IP to change?