Only allow traffing from cloudflare proxy

Hi, I know I’ve seen other posts about this around this subject, but I’m finding it difficult to determine what is the up-to-date and relevant information for my use case.
In cloudflare, we have CNAME records pointing to our-app.fly.dev with the proxy enabled. We have certs on fly for the domains on cloudflare and everything is working well enough. However, our fly.dev address is still accessible to the public internet and we want to prevent any ingress traffic that is not being proxied from cloudflare. What is the recommended way to do this currently?
Thanks in advance!

I ended up using forwarding rules to add auth headers between cloudflare and my server. Still unideal and would rather use a tunnel, so would love to hear if anyone’s had success setting up cloudflared with private apps in fly

This topic was automatically closed 7 days after the last reply. New replies are no longer allowed.