HTTP Attacks - TE.CL lab

Did anyone found the TE.CL section lab from HTTP Attacks module a bit contradictory? First TE smuggle is shown, then you force WAF to fall back to CL, not sure how the second GET request to admin (GET /admin HTTP/1.1) is not blocked by WAF since CL (Content-Length: 4) from first request stops at body block after 27\r\n (from the example) and the next one (to /admin) is processed, which should be stopped by WAF according to section (‘admin’ keyword).