i use “remoteip” to see the original ips on my host. It turns out that if my internal IDS blocks an ip on the internal firewall, if this ip accesses my host through Cloudflare it can access it. How do I make Cloudflare ignore ips access blocked by my host?

There are two ways.

  1. block IPs via the IP Access rules

You can automate this:

  1. Use the HTTP header Cf-Connecting-Ip to get the visitor’s real IP address and block based off of that.
