We're getting a handful of malicious requests to the weird server trying to get sensitive files from the server ( which won't work ), and it'd be good to have a WAF that will block those things so our main application server isn't having to waste processing trying to respond to it.