The release of new rules in the CIS WAF Managed Ruleset resulted in blocking data transmission for business operations.
Since the WAF Managed Ruleset follows Cloudflare’s releases, if operators do not override the rules, they will automatically switch from “Action: Log” to “Action: Default.”
Given that new rules are released approximately every week, this creates a high operational burden and leaves insufficient time for thorough testing, increasing the likelihood of similar incidents.
We request a feature that allows users to change rules released by CIS and Cloudflare with “Action: Log” to “Action: Default” at their preferred timing.
| Idea priority | Medium |
By clicking the "Post Comment" or "Submit Idea" button, you are agreeing to the IBM Ideas Portal Terms of Use.
Do not place IBM confidential, company confidential, or personal information into any field.