Be awesome to be able to use the IP lists (Account > Configurations > Lists) instead of having to type in every possible IP address, when configuring Zone Lockdown entries.
This would reduce user error and generally simplify configuration.
Be awesome to be able to use the IP lists (Account > Configurations > Lists) instead of having to type in every possible IP address, when configuring Zone Lockdown entries.
This would reduce user error and generally simplify configuration.
Could creating a Firewall Rule for sepcific hostname like:
sub.mydomain.com
āOr vice-versa, if hostname contains and IP source address āis not in listā ā block everyone else except the ones you allow.
Could this help you in this case? Have you tried?
Otherwise, I would suggest you to try out and use Cloudflare Access / Zero Trust
Thanks for the reply, Fritix.
Weāre currently using Firewall rules, and we can certainly build up a complex rule to do it ā but Zone Lockdown has a certain āeleganceā to it ā allowing you to specify a list of domains, URL-paths, etc easily ⦠which is more suited to our web developers wanting to push out something pre-release to production, and temporarily restrict it.
But getting the right list of ~20 IP CIDRs into the rule is cumbersome ⦠versus being able to specify values like $internal_ip_ranges and $monitoring_servers (correlating to defined Lists). I expect Cloudflare could make this easy in the UI, with the lists being selectable, so you donāt have to find the codes.
Iād speculate that Zone Lockdown would be largely used to restrict access to āyour own IP rangesā ⦠so would be handy if that was easy to effect.
Ultimately, Iām looking for a way to make a feature-request to Cloudflare ā and assumed this forum was the best approach. If thereās a better place to do it, please point me in the right direction.
This topic was automatically closed 15 days after the last reply. New replies are no longer allowed.