Block definitely automated traffic but allow our own web-application vulnerability scanner

Would it be possible to configure Configure “Super Bot Fight Mode/Definitely automated/Block” without blocking our weekly scheduled web-application scanner by creating for example a white listed IP in the WAF? Or any other solution for this issue. Our company has a Business plan.

Yes, there is a workaround.

The easiest way would be to add the IP to the Security → Tools → IP Access Rules with the action “allow”.

Helpful article:

