I read this blog but I can not find the options to “Mutual TLS Root Certificates”, If this function is removed
Sam Rhea should add a tips on this blog article.
I plan to generate a Certificates for each mobile client, and revoke it when client unregistered. The SSL Client Certificates page provide no method to implement this.
Please reach out. Today, the mTLS feature in Access is only available to Enterprise plans. Are you on a self-serve plan and working on a project where you want to use mTLS? IoT, service-to-service, corporate security included. If so, please reach out to me at [email protected] and let’s chat.
The original post is a bit confusing because the first half of the post refers to the mTLS feature in Cloudflare Access, and the another half refers to the API Shield - Mutual TLS feature in Firewall Rules.
Both have different ways to configure so please don’t get confused.
What @domjh said is true: mTLS feature in Cloudflare Access is an Enterprise feature. But what you mentioned is also true: the Mutual TLS feature in Firewall Rules (API Shield) is available in all plans.
The current issue is you are trying to implement API Shield - Mutual TLS feature by following the blog post which actually describes how to implement mTLS feature in Cloudflare Access.
So, if you want to use API Shield, please just ignore the steps described in the blog post as it does not apply to API Shield - Mutual TLS. Instead, just follow the steps in the API Shield documentation: