Logo Ricky
  • Home
  • About
  • More
    Skills Experiences Education Projects
  • Posts
  • Notes
  • Activities
  • Transform
  • English
    English Chinese
  • Dark Theme
    Light Theme Dark Theme System Theme
Logo Inverted Logo
  • Tags
  • ACME
  • AI
  • Ansible
  • APP
  • Arceus
  • ASCII
  • Authentication
  • Authorization
  • BASH
  • Bayonet
  • Browser
  • Byte
  • Channel
  • Chart
  • Checklist
  • Chrome OS
  • CI
  • Cloudflare
  • Command Line
  • Config
  • Container
  • CPU
  • CURL
  • Data
  • Debug
  • Design
  • Dmg
  • DNS
  • Docker
  • EFF
  • ElasticSearch
  • ELK
  • Emoji
  • EMQX
  • Extension
  • Game
  • GIN
  • Git
  • Github
  • Gitlab
  • Gluetun
  • Go
  • Golang
  • Google
  • GraphQL
  • HA
  • HTTP
  • Infra
  • Infrastructure
  • Introduction
  • Iso
  • ITerm2
  • Jsoniter
  • Kibana
  • Kubernetes
  • Leetcode
  • Lightweight
  • Linux
  • Llm
  • Lua
  • Lullaby
  • LVM
  • Machinelearning
  • MacOS
  • Markdown
  • Module
  • MQTT
  • MSS
  • MTU
  • Music
  • NAS
  • Network
  • Nftables
  • NGINX
  • OAuth
  • OIDC
  • Ollama
  • Parquet
  • Pinyin
  • Pokemon
  • Pprof
  • Principle
  • Prometheus
  • Protobuf
  • Proxy
  • Push
  • Python
  • QRCode
  • R
  • RAID
  • Redis
  • Regex
  • Rust
  • Security
  • Selenium
  • SFTP
  • SHELL
  • Slides
  • Snow
  • Software
  • Ssh
  • String
  • Switch
  • Sync
  • Synology
  • System
  • Terminal
  • Terraform
  • Test
  • Testing
  • Time
  • Timeout
  • Tor
  • Trace
  • Travel
  • Tunnel
  • URL
  • Video
  • Vim
  • Visualization
  • VPN
  • VScode
  • Web
  • Windows
  • YAML
  • Youtube
  • Zero Trust
  • ZSH
  • 台語
Hero Image
Cloudflare Zero Trust

Connect private networks Configure Local Domain Fallback Configure Split Tunnels Traffic routing with WARP 1. Set up the client Create device enrollment rules Create device enrollment rules to determine which devices can enroll to Zero Trust organization. Set device enrollment permissions In Zero Trust, go to Settings > WARP Client > Device enrollment > Device enrollment permissions > Manage. Rules > Policies > Add a rule > Include > Selector > Emails ending in > Value > @ruru910.com. 2. Route private network IPs through WARP In Zero Trust, go to Settings > WARP Client > Device settings > Profile settings > Profile name > Default > Configure. Configure settings: Enabled: Captive portal detection, Mode switch, Allow device to leave organization, Allow updates. Service mode: Gateway with WARP. Local Domain Fallback > Manage > Domain > nas.ruru910.com. Split Tunnels: Exclude IPs and domains > Manage. Delete the IP range of nas.ruru910.com. 3. Filter network traffic with Gateway 1. Enable the Gateway proxy In Zero Trust, go to Settings > Network. Gateway Logging: Capture all. Firewall: Proxy(TCP, UDP, ICMP), WARP to WARP, AV inspection. 2. Create Zero Trust policies Go to Access > Applications > Add an application > Private Network > Application Type > Destination IP. For Value, enter the IP address for your application (for example, 10.128.0.7). Modify policy > identify > Selector > User Email > in > @ruru910.com.

Tuesday, September 26, 2023 Read
Navigation
  • About
  • Skills
  • Experiences
  • Education
  • Projects
Contact me:
  • zeyanlin@outlook.com
  • linzeyan
  • Ricky
  • Ricky