cloudflare / cloudflare/cloudflared

💡 mTLS connection between cloudflared and the origin HTTP services

Open
#860 1 comment 5 reactions 0 assignees View on GitHub
Priority: Normal Type: Feature Request
Dominant language
Go
Stars
15.6k
Forks
1.4k
PR merge metrics
No merged PRs in 30d

Description

**Describe the feature you'd like**
Hi cloudflared experts. First of all, thank you for creating this amazing product! I have a question regarding the communication between cloudflared and an origin HTTP service:

We have a few micro-services and they talk to each other through mTLS. Now we would like to expose one of the micro-services to our end users through Cloudflare Zero Trust. We don't plan to let end users to provide client cert. Instead, we would like cloudflared to provide a client cert when connecting the origin micro-service. The workflow is roughly demonstrated in the following chart -- we would like to expose service A:

![Untitled Diagram drawio](https://user-images.githubusercontent.com/4757835/209649948-0b44359e-1988-440b-b942-4460bdeffb4c.png)

Is it possible to add an option in the origin-specific properties to specify key pairs locations so that cloudflared can load and use the client certs when making HTTP transport to the specific origin? Thanks!

Happy holidays!
Junfeng

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.