/plushcap/analysis/cloudflare/cloudflare-tunnel-for-postgres

Using Cloudflare Tunnel and Access with Postgres

What's this blog post about?

The text discusses how Cloudflare transitioned from using traditional SSH access to internal database clusters via a bastion host, to utilizing Cloudflare Tunnels and Access for improved user experience and onboarding times related to database access. This change was prompted by the overhead and limitations of maintaining SSH configurations. The new solution involves deploying Cloudflare Tunnel on an internal Kubernetes cluster and implementing Cloudflare Access with identity-driven Zero Trust policies, ensuring only authorized users can connect to the databases. This approach also allows for better delineation of access between staging and production environments. The text concludes by highlighting the benefits of this solution, including enhanced security posture, improved user experience, and valuable feedback provided to the Access and Tunnel teams within Cloudflare.

Company
Cloudflare

Date published
June 23, 2022

Author(s)
Robert McNeil, Vignesh Ravichandran

Word count
924

Hacker News points
4

Language
English


By Matt Makai. 2021-2024.