
DockFlare
Cloudflare Tunnel ingress controller automated with Docker labels

DockFlare is a self-hosted ingress controller for Cloudflare that automates Cloudflare Tunnel configuration from Docker container labels. It centralizes DNS and Cloudflare Zero Trust Access management, and includes a web UI for manual definitions and policy overrides.
Key Features
- Automatic Cloudflare Tunnel and DNS record management driven by Docker labels
- Web UI for creating services, applying overrides, and managing reusable Access Groups/Policies
- Built-in Identity Provider management for OAuth/OIDC (including generic OIDC)
- Public vs authenticated access modes mapped to Cloudflare Access decisions
- Multi-server “master/agent” architecture for managing workloads across multiple hosts
- Redis-backed coordination for caching and cross-process signaling
- Backup and restore of DockFlare instance data (including encrypted credentials)
Use Cases
- Publish internal services securely without manually configuring Cloudflare dashboards
- Standardize Cloudflare Access policies across many apps using reusable groups
- Orchestrate tunnels and access controls across a homelab or multi-host environment
Limitations and Considerations
- Requires a Cloudflare account and API token permissions to manage tunnels, DNS, and Access resources
- Primarily designed around Docker event/label workflows; non-Docker services may require manual definitions
DockFlare is well-suited for operators who want Cloudflare Tunnel-based ingress with centralized, repeatable policy management. It reduces configuration drift by syncing desired state from labels and UI-managed rules while supporting multi-host environments through agents.
Categories:
Tags:
Tech Stack:
Similar Services

Caddy
Extensible web server and reverse proxy with automatic HTTPS
Caddy is a fast, extensible Go web server and reverse proxy with automatic HTTPS (ACME), HTTP/1.1, HTTP/2, and HTTP/3 support, and a JSON config API.

Traefik Proxy
Cloud-native reverse proxy, load balancer, and ingress controller
Traefik Proxy is a dynamic reverse proxy and load balancer that auto-discovers services from Docker, Kubernetes, and other providers, with HTTPS, routing, and observabili...

Kong Gateway
Cloud-native API and LLM gateway with extensible plugins
Kong Gateway is a high-performance, cloud-native API gateway for routing, securing, and observing API traffic, with an extensible plugin system and Kubernetes support.

Nginx Proxy Manager
Web UI to manage Nginx reverse proxy hosts and SSL certificates
Nginx Proxy Manager is a web-based admin panel for managing Nginx reverse proxy hosts, redirects, streams, and Let’s Encrypt SSL certificates via Docker.

NGINX
High-performance web server, reverse proxy, and load balancer
NGINX is a high-performance HTTP server and reverse proxy with caching, load balancing, TLS termination, and TCP/UDP proxying via a modular architecture.

Pangolin
Identity-aware VPN and reverse proxy for secure remote access
Open-source identity-based remote access platform combining WireGuard VPN and tunneled reverse proxy access with granular zero-trust controls.
JavaScript
Redis
HTML
Docker
Python