Method to protect your Zero Trust Tunnel Endpoints

Is there a way to protect your Zero Trust Tunnel Endpoints in your home network with a pre-auth like basic-auth which comes from Cloudflare?

So the connection should be established like this: User www > example dot com (which is a Tunnel Endpoint in CF ZT) > CF ZT Auth > success > redirect to tunnel endpoint

A example can be checked out from nginxproxymanager.


You could use Cloudflare Access… it’s not basic auth, though. Alternatively just use a Worker, if it’s HTTP(S), which check for credentials.

Thanks for your reply. What do you mean with CF Access? CF ZT > Access, in there I can’t configure a pre auth with password or something else like these.

