6 ms·
Cloudflare won't protect your IP being hit directly. If your IP can be accessed publicly, it will get hit. period. You could use nginx etc to do a 444 status co
by codegeek 3y ago
Cloudflare won't protect your IP being hit directly. If your IP can be accessed publicly, it will get hit. period. You could use nginx etc to do a 444 status code but can't stop these scripts/bots from hitting ur IP completely.
- solardev 3y agoNormally you'd just configure the firewall to drop all packets not from Cloudflare. Maybe also get a new static IP first.
- dizhn 3y agoIs there a different set of IPs for Warp? That would have to be denied too.
- lormayna 3y agoYes and no. If you have an iptables rule that drop anything not coming from CF IPs, the attacking packets are not passed to the application and dropped in kernel mode. Otherwise the packet will be passed to user mode application that consume more resources to analyse and drop the connection.
- deleted 3y ago[deleted]
- kkielhofner 3y agoCloudflare tunnels: https://www.cloudflare.com/products/tunnel/ https://www.cloudflare.com/products/tunnel/ I haven’t had anything exposed to the Internet in a long while.