#Cloudflare WAF blocks Netskope ChatGPT Users

1 messages · Page 1 of 1 (latest)

whole widget
#

Hello,

I am trying to reach someone on your security team that manages your Cloudflare WAF for ChatGPT. My company currently uses Cloudflare as well and opened a support ticket with them to ask them for advice on being blocked by managed challenge. This is occurring because we are using a Corporate Proxy, Netskope. The bot score is scoring pretty low which is probably triggering some bot mitigation WAF rules. We're asking you all to implement the suggested fix from Cloudflare support which is to add a field check to the rules. They were able to review where in your environment this is popping up and the link below should take one of your admins to the dashboard finding.

https://dash.cloudflare.com/5574435b22d1ce4b99e50f19d77e1914/chat.openai.com/security/events?action=managed_challenge&path=*2F&user-agent=Mozilla*2F5.0*20(Macintosh*3B*20Intel*20Mac*20OS*20X*2010_15_7)*20AppleWebKit*2F537.36*20(KHTML*2C*20like*20Gecko)*20Chrome*2F116.0.0.0*20Safari*2F537.36&asn=55256&time-window=4320__;JSUlJSUlJSUlJSUlJSUlJSUlJQ!!PcWDXxKrMqE!aFmvNnWTEysAJM1Cfu6eDmkAk9aleKiizxKacZddYOUxhnG75dsbzklizAoAXkXZQbDES-xrmM2L29FbnQ$

However, we have a field that cf.bot_management.corporate_proxy that you can use to not challenge corporate proxies such as NetSkope.

For example editing the Custom rule Bot Score / Threat Score and adding this to the expression:

not cf.bot_management.corporate_proxy