WAF skip rule for employees connecting through WARP gateway

There are some managed rulesets that are causing issues for our employees editing content in our CMS.
Currently, I have set up IP and URI skip rules but this requires regular maintenance and is a kludgy way around the problem.

I would like to set up a WAF rule to skip the remaining rules only for our employees who have connected using the zero trust WARP client and have passed the device posture check.

Any way to do this?

There is no current WAF setting that looks at current WARP users.

You can view previous discussions on this:

