Create WAF rule to block access to files with predefined extensions

I have the Enterprise plan.
Is it possible to create a WAF rule to block access when someone tries to access files with certain extensions?
Even if that file does not exist.


Or any other folder within the domain.

It is possible to edit Cloudflare’s firewall, see
Business and Enterprise customers additionally have the option to use regular expressions in their firewall rules, so you could add one to your Cloudflare firewall that checks if the URI path ends with .sql.
You can check the documentation I linked above for more info on how to do that.

