Skip to content

Commit 4c7b244

Browse files
Merge pull request #305149 from Miskatonic-Electronic/patch-67
Update waf-front-door-exclusion.md
2 parents 090f2b9 + 5a4d9bd commit 4c7b244

1 file changed

Lines changed: 3 additions & 0 deletions

File tree

articles/web-application-firewall/afds/waf-front-door-exclusion.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,9 @@ You can create exclusions at the following scopes:
2323
- **Rule group**: These exclusions apply to all the rules of a particular category within a rule set. For example, you can configure an exclusion that applies to all the SQL injection rules.
2424
- **Rule**: These exclusions apply to a single rule.
2525

26+
> [!TIP]
27+
> It's a good practice to make exclusions as narrow and specific as possible, to avoid accidentally leaving room for attackers to exploit your system. When you need to add an exclusion rule, use per-rule exclusions wherever possible.
28+
2629
## Exclusion selectors
2730

2831
Exclusion selectors identify the parts of requests to which the exclusion applies. The WAF ignores any detections that it finds in the specified parts of the request. You can specify multiple exclusion selectors in a single exclusion.

0 commit comments

Comments
 (0)