<div dir="ltr">For Cloudflare we had to set a Page Rule on the cert page / site : Browser Integrity Check: Off</div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Sat, Jul 15, 2023 at 6:54 PM Jared Geiger via VoiceOps <<a href="mailto:voiceops@voiceops.org">voiceops@voiceops.org</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div dir="ltr">We were notified that some validators were unable to pull our cert which is hosted behind Cloudflare. <div><br></div><div>I believe the fix is to create a WAF rule to match when the User Agent contains "Java/1.8.0" and then choose the Skip action. </div><div><br></div><div>Please share if anyone has any better tips for WAF rules for this scenario.</div><div><br></div><div>I was seeing Bandwidth, TransUnion, and Level3 getting blocked.</div><div><br></div><div>TransUnion gave me the heads up and mentioned they saw it with other carriers lately also.</div></div>
_______________________________________________<br>
VoiceOps mailing list<br>
<a href="mailto:VoiceOps@voiceops.org" target="_blank">VoiceOps@voiceops.org</a><br>
<a href="https://puck.nether.net/mailman/listinfo/voiceops" rel="noreferrer" target="_blank">https://puck.nether.net/mailman/listinfo/voiceops</a><br>
</blockquote></div>