Cloudflare Access (Authentication)¶
Purpose: Zero-trust access control for internal tools and docs.liflode.com — ensures only authorised users can reach protected endpoints.
URL/Endpoint: https://one.dash.cloudflare.com (Access section)
Auth: Cloudflare dashboard — request access from Rachel. Users are admitted by email allowlist.
Key Operations¶
- Add users to email allowlists for protected applications
- Review access logs and blocked requests
- Configure application policies (email OTP is the default auth method)
- Request access: email
hello@liflode.comwith the resource you need
Dependencies¶
- Cloudflare tunnel (
~/.cloudflared/config.yml) — tunnels internal services to the internet before Access policies apply - Cloudflare DNS
Related ADRs¶
None specific.
Runbook¶
If a contractor cannot reach a protected URL, Rachel needs to add their email to the Access policy for that application via the Cloudflare dashboard.