Bot Rate Limits
Akamai + AAM Bot Rate Limiting
Akamai and AAM work as complementary layers to mitigate sophisticated bot attacks. Akamai enforces rate limits at the edge and forwards intelligence downstream via headers (bot score, TLS fingerprint, client reputation). AAM ingests that signal to apply context-aware policies — rate limiting by any request attribute, with limits that vary based on overall ingress rate.
Rules configured for this demo
Load Tester
Simulate bot traffic with configurable bot scores, IP pools, and TLS fingerprint pools. In this hypothetical scenario, the endpoint might see ~30 req/second overall so anything over 50 RPS would be anomalous. Obviously the IP and TLS fingerprint pools are not realistic / are artificially low but you can see how different distribution levels influences the block rate at each layer.
Throughput
Block Rates
Request Log
Ready to deploy layered bot protection?
Talk to the AAM team about configuring bot rate limiting with Akamai for your APIs.