Cloudflare
239 incident problems in Cloudflare environments.
먼저 읽을 가이드
추천 문제
All problems (239)
SECURITY-1593A WAF exception cleanup is correct and one hostname still skips inspectionOne hostname still skips inspection after WAF exception cleanup.SecurityAdvanced9 minProSECURITY-1603A WAF rule action is fixed and one path still blocks good trafficOne path still blocks good traffic after a WAF rule fix.SecurityAdvanced9 minProSECURITY-1565A browser isolation profile updates and one document type still downloads directOne document type still downloads direct after isolation profile updates.SecurityAdvanced10 minProSECURITY-1563A managed WAF exception is removed and one hostname still skips inspectionOne hostname still skips WAF inspection after managed rules cleanup.SecurityAdvanced10 minProSECURITY-1573A WAF allowlist is cleaned up and one path still trusts the old CIDROne path still trusts the old CIDR after WAF allowlist cleanup.SecurityAdvanced10 minProSECURITY-1583A WAF exception is removed and one host still bypasses inspectionOne hostname still bypasses inspection after WAF exception cleanup.SecurityAdvanced10 minProSECURITY-1555A browser isolation connector updates and one download still exits unsandboxedArchive downloads bypass browser isolation after connector updates.SecurityAdvanced11 minProSECURITY-1463A Cloudflare Access mTLS rule works in staging and fails in prodService auth works in staging cert profiles and breaks in production profiles that preserve SPIFFE casing.SecurityAdvanced11 minProSECURITY-1553A WAF managed rule exception is removed and one API still passes malicious payloadsMalicious payloads pass only on one hostname after managed rule cleanup.SecurityAdvanced11 minProSECURITY-1499A browser isolation policy is enabled and downloads still bypass scanningBrowser isolation works, but downloads bypass malware scanning after a connector topology change.SecurityAdvanced12 minProSECURITY-1509A browser isolation policy is enabled and downloads still bypass scanningBrowser isolation works, but downloads bypass malware scanning after a connector topology change.SecurityAdvanced12 minProSECURITY-1529A browser isolation policy is enabled and downloads still bypass scanningBrowser isolation works, but downloads bypass scanning after connector topology change.SecurityAdvanced12 minProSECURITY-1558A certificate pin set is refreshed and one mobile API still breaksOnly resumed mobile sessions fail certificate pinning after a chain refresh.SecurityAdvanced12 minProSECURITY-1381A Cloudflare mTLS policy protects the main API and one versioned path stays...A Cloudflare mTLS policy protects the main API and one versioned path stays... focuses on Identity And Access and asks the reader to isolate the key signal in Cloudflare. Edge auth failures often come from precedence between broad exceptions a...SecurityAdvanced14 minProSECURITY-1376A fail2ban-style parser sees every request as the CDN edgeA proxy trust configuration is updated and later automated bans begin hitting CDN edges or harmless intermediaries instead of abusive clients.SecurityAdvanced14 minProSECURITY-1411An access proxy protects `/api/users` and one service endpoint still bypasses...An access proxy protects `/api/users` and one service endpoint still... focuses on Identity And Access and asks the reader to isolate the key signal in Cloudflare. Access regressions often come from route precedence and norm...SecurityAdvanced14 minProSECURITY-1421An access proxy protects the user API and one service endpoint still bypasses...An access proxy protects the user API and one service endpoint still... focuses on Identity And Access and asks the reader to isolate the key signal in Cloudflare. Access regressions often come from route precedence and no...SecurityAdvanced14 minProSECURITY-1431An access proxy protects the user API and one service path still bypasses MFAAn access proxy protects the user API and one service path still bypasses MFA focuses on Identity And Access and asks the reader to isolate the key signal in Cloudflare. Access regressions often come from route pr...SecurityAdvanced14 minProSECURITY-1441An access proxy protects the user API and one service path still bypasses...An access proxy protects the user API and one service path still bypasses... focuses on Identity And Access and asks the reader to isolate the key signal in Cloudflare. Access regressions often come from route pre...SecurityAdvanced14 minProSECURITY-1345A Cloudflare Access protected app still exposes a management portA Cloudflare Access protected app still exposes a management port focuses on firewall-policy-basics and asks the reader to isolate the key signal in Cloudflare. Zero Trust at the front door does not automatically secure alternate p...SecurityAdvanced15 minPro