Cloudflare
Integrate Cloudflare with Cloudaware to inventory Cloudflare accounts and zones for centralized reporting and operational visibility in CMDB.
- Audience: Cloudaware administrators, network teams, security operations teams, and platform teams
- Outcome: Cloudflare accounts and zones are available in CMDB for reporting, ownership review, and operational analysis
Capabilities
The integration supports:
- Read-only discovery of Cloudflare accounts and zones
- Relationship mappings between Cloudflare accounts and zones in the CMDB
- Search and reporting for Cloudflare objects using CMDB Navigator, CMDB list views, and reports
Prerequisites
Before you begin, make sure you have:
- Access to a Cloudaware account.
- A user with access to the Admin Console and permissions to manage cloud accounts, organizations, and integrations (Cloudaware Administrator).
- Access to the Cloudflare account that will be connected.
- Permission to create Cloudflare API tokens at the account level.
- A Cloudflare API token with read access to account and zone metadata.
Create a Cloudflare API Token
- In Cloudflare, create an API token for the account Cloudaware will inventory.
- Grant the token read access to Cloudflare account and zone metadata.
- Restrict the token scope to the Cloudflare account and zones that Cloudaware should access.
- Store the token in an approved credential store until it is added to Cloudaware.
Use a dedicated Cloudflare API token for Cloudaware so it can be rotated or revoked without affecting other integrations.
Add a Cloudflare Account to Cloudaware
- In Cloudaware, go to Admin.
- Find Cloudflare, then click + ADD.
- Provide the Cloudflare account details (Name, ID) and API token.
- Click Check. Once the validation passed, click Save.
- Confirm that the integration status indicator is green.
Allow the initial discovery cycle to complete after enabling the integration.
View Cloudflare Data in CMDB
- In Cloudaware, open CMDB Navigator.
- In the left pane, select CLOUDFLARE.
- Open an object list, e.g., Cloudflare Accounts, to view records.
Supported Objects
Cloudaware ingests the following Cloudflare objects:
| Cloudflare Object | CMDB Object API Name |
|---|---|
| Cloudflare Account | CA10CF__CaCloudflareAccount__c |
| Cloudflare Zone | CA10CF__CaCloudflareZone__c |
Troubleshooting
Initial data collection may take time to complete.
Authentication Fails or Integration Shows Red Status
- Verify that the Cloudflare API token is active.
- Confirm that the token has read access to Cloudflare account and zone metadata.
- Check that the token scope includes the Cloudflare account connected to Cloudaware.
- Re-enter the token by editing the Cloudflare integration in Cloudaware.
Cloudflare Objects Are Missing
- Allow the initial collection cycle to complete.
- Confirm that the Cloudflare account contains zones available to the API token.
- Review the Cloudflare API token scope for the affected accounts or zones.
- In CMDB Navigator, verify that you are viewing the CLOUDFLARE section and related resources.
- Review the Cloudflare integration status and any error messages in Cloudaware Admin.
Still stuck? Contact Cloudaware Support at support@cloudaware.com with the integration name, Cloudflare account name or ID, and a brief description of the issue.
Reconfigure or Remove the Integration
To rotate the Cloudflare API token, edit the existing integration instead of deleting and re-creating it.
Update the Integration Details
- Go to Admin.
- Select Cloudflare.
- Select the specific integration.
- Open the three-dot menu (⋮), then click Edit.
- Update the Cloudflare account details or API token.
- Click Save.
Remove the Integration from Cloudaware
- Go to Admin.
- Select Cloudflare.
- Select the specific integration.
- Open the three-dot menu (⋮), then click Delete.
- Confirm the deletion if prompted.
Security Notes
- Use a dedicated Cloudflare API token with the minimum permissions required for discovery.
- Grant only the read permissions required to collect Cloudflare account and zone metadata.
- Avoid using a personal administrator token for long-running integrations.
- Store Cloudflare API tokens only in approved credential stores and avoid sharing them through tickets, chat, or documentation.
- Rotate the Cloudflare API token according to your organization's credential-rotation policy and immediately after suspected exposure.
- Revoke unused Cloudflare tokens when the integration is retired.