Azure WAF bot protection ruleset. Meaning of log ID 300700

eenchev 0 Reputation points
2025-03-12T14:29:21.1666667+00:00

I have enabled bot protection ruleset for a waf policy. The DRS ruleset normally has a detailed message in the logs but for the bot protection I am finding it hard to identify the reason for a match for 300700 id Other bots (group Unknownbots).

User's image

We have thousands of such logs. I know default action is log and using allow is not recommended which will stop further ruleset checks.

In general I want to finetune the ruleid so I decrease the noise from these log messages and add 1-2 exclusions. Details_data field is not very helpful. What does it see in REQUEST_HEADERS:

Azure Web Application Firewall
0 comments No comments
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.