WAF block my request to my worker

What is the name of the domain?

tel.m157.net

What is the error number?

403

What is the error message?

Sorry, you have been blocked

What is the issue you’re encountering

I can’t activate any links on my subdomain and all links are restricted and blocked.

Was the site working with SSL prior to adding it to Cloudflare?

Yes

What is the current SSL/TLS setting?

Full

What are the steps to reproduce the issue?

I have created a Worker and it was working fine until recently, but now the Worker is showing the following error:
Sorry, you have been blocked
You are unable to access m157.net
I can access my service via the following link:
telegram.mohsen-shariati1988.workers.dev
But when I try to use the Worker via the DNS routed link, it shows an access and block error.
tel.m157.net

Greetings,

Thank you for writing.
First of all, wishing you all the best in :two::zero::two::five: :champagne: :partying_face:

Looks like you’re not having the A type DNS records pointed to your web hosting server, or a temporary IP, proxied :orange: at the DNS tab of Cloudflare dashboard.

Could you please navigate to the DNS tab of Cloudflare dashboard for your zone and cross-check? Please add the missing DNS record.

  1. Click on the button “Add record”.
  2. Type @ for the name field
  3. For IPv4 address enter 192.0.2.1
  4. Make sure it’s proxied :orange: .
  5. Click on “Save” button to apply and save changes.

In picture:

Wait for few minutes so you’d get the Universal SSL certificate issued for your proxied :orange: hostname and then double-check if the configured Redirect rule is active (green checkmark) and working as expected.

In case if needed, here are the step-by-step instructions:

In the meantime, you might have to try with a different Web browser, clear your cache & data, or use Incognito Mode (Private Window) since your local machine (device) DNS cache might still not resolve despite you’ve added the missing DNS record.

Can confirm I got the “Access denied” page.

I’d suggest you to double-check the Security → Events at Cloudflare dashboard under your Cloudflare account for your zone, or via direct link https://dash.cloudflare.com/?to=/:account/:zone/security/events.

You should be able to see the challenged or blocked event under the Security tab → Events at Cloudflare dashboard for your zone and know exactly which security option was triggered. Could be Managed Rules my best guess, otherwise Bot Fight Mode or Browser Integrity Check.

Once you find them, click on a particular one to find more details about it (user-agent, IP, HTTP version …). If yes, could you share some details which service was triggered that blocked you?

May I ask if it is L7 DDoS HTTP Spam, or rather some other? :thinking:

If above, kindly, if you have received an email related to your zone having potentially abusive behaviour, please reply to the email that you’ve received from Cloudflare team.
Otherwise, please reach out directly to [email protected].
This issue has to be checked and solved by the Trust&Safety team.
Thank you for patience.

Please, do acknowledge below if it’s related to your case as well:

Hello

Yes, I was using Cloudflare for the V2Ray service and I probably got restricted and my domain was blocked
But unfortunately I was not aware of this update and no email was sent to me
And my use of this service was completely personal and there was no commercial use or the like, due to changes in the server network, I had to create a proxy and considering that I was restricted in using socks5, I had to use this
To remove the restriction, should I send an email to [email protected]?

Yes, please.

Thank You so much

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.