Skip to content

Cloudflare

If your domain is on Cloudflare, PSM calls the Cloudflare API directly, so you do not need the web dashboard. Everything is in main menu 13 (Cloudflare DDNS):

Cloudflare menu

First choose Set API credentials and enter a Cloudflare API token (or the global API key); then the features below work.

DNS records

List / add / delete DNS records: point names at your nodes, subscriptions and camouflage sites without opening the Cloudflare dashboard.

DDNS

When the server's public IP changes (home broadband, or a VPS that changes IPs):

  • DDNS: update now points the name at the current IP.
  • DDNS: install the scheduled job checks every 5 minutes and updates the record when the IP changes.

Wildcard certificates

Issue a certificate automatically (DNS-01 wildcard): issues a *.example.com wildcard certificate through Cloudflare DNS validation, with no port 80 needed. How to use certificates: SSL certificates.

Tunnel and Access

  • Cloudflare Tunnel publishes a service on this server (a web panel, say) at a domain through Cloudflare, without opening any port.
  • Cloudflare Access puts a Cloudflare sign-in in front of such panels, so only the people you allow can open them.

Proxy nodes do not belong on a Tunnel

Tunnel suits HTTP services such as web panels. Connect proxy nodes to the server directly, or use a CDN-friendly transport such as XHTTP.

Released under the AGPL-3.0 license · For lawful use only; follow the laws where you live