Security WAF Rule to block requests that doesnt match full uri
I have the following rule on cloudflare Security WAF:
I also tried:
Checking the logs at
Security > Events
it doesnt show the full uri, just Host "tunnel.xxx.com" Path "/"
It should block any request that is not any of these uri
Im testing the rule with the following example request:
The rule is blocking the request, why?
I only have that rule active nothing else, turning it off the request succeeds, maybe at the WAF side the full uri is different?
How i could debug this issue?1 Reply
You probably want to have the URI be
https://tunnel.xxx.com/