DockFlare

DockFlare

Cloudflare Tunnel ingress controller automated with Docker labels

1.9kstars
70forks
Last commit: 10d ago
Repo age: 1y old
DockFlare screenshot

DockFlare is a self-hosted ingress controller for Cloudflare that automates Cloudflare Tunnel configuration from Docker container labels. It centralizes DNS and Cloudflare Zero Trust Access management, and includes a web UI for manual definitions and policy overrides.

Key Features

  • Automatic Cloudflare Tunnel and DNS record management driven by Docker labels
  • Web UI for creating services, applying overrides, and managing reusable Access Groups/Policies
  • Built-in Identity Provider management for OAuth/OIDC (including generic OIDC)
  • Public vs authenticated access modes mapped to Cloudflare Access decisions
  • Multi-server “master/agent” architecture for managing workloads across multiple hosts
  • Redis-backed coordination for caching and cross-process signaling
  • Backup and restore of DockFlare instance data (including encrypted credentials)

Use Cases

  • Publish internal services securely without manually configuring Cloudflare dashboards
  • Standardize Cloudflare Access policies across many apps using reusable groups
  • Orchestrate tunnels and access controls across a homelab or multi-host environment

Limitations and Considerations

  • Requires a Cloudflare account and API token permissions to manage tunnels, DNS, and Access resources
  • Primarily designed around Docker event/label workflows; non-Docker services may require manual definitions

DockFlare is well-suited for operators who want Cloudflare Tunnel-based ingress with centralized, repeatable policy management. It reduces configuration drift by syncing desired state from labels and UI-managed rules while supporting multi-host environments through agents.

Categories:

Tags:

Tech Stack:

Share:

Similar Services

Caddy

Caddy

Extensible web server and reverse proxy with automatic HTTPS

70.4k
4.7k
Last commit: 14h ago

Caddy is a fast, extensible Go web server and reverse proxy with automatic HTTPS (ACME), HTTP/1.1, HTTP/2, and HTTP/3 support, and a JSON config API.

Alternative to:
Caddy Cloud
Caddy Cloud
+8
Traefik Proxy

Traefik Proxy

Cloud-native reverse proxy, load balancer, and ingress controller

61.9k
5.8k
Last commit: 10h ago

Traefik Proxy is a dynamic reverse proxy and load balancer that auto-discovers services from Docker, Kubernetes, and other providers, with HTTPS, routing, and observabili...

Alternative to:
Traefik Cloud
Traefik Cloud
+7
Kong Gateway

Kong Gateway

Cloud-native API and LLM gateway with extensible plugins

42.8k
5.1k
Last commit: 1mo ago

Kong Gateway is a high-performance, cloud-native API gateway for routing, securing, and observing API traffic, with an extensible plugin system and Kubernetes support.

Alternative to:
Amazon API Gateway
Amazon API Gateway
+7
Nginx Proxy Manager

Nginx Proxy Manager

Web UI to manage Nginx reverse proxy hosts and SSL certificates

31.8k
3.6k
Last commit: 1d ago

Nginx Proxy Manager is a web-based admin panel for managing Nginx reverse proxy hosts, redirects, streams, and Let’s Encrypt SSL certificates via Docker.

Alternative to:
NGINX Management Suite
NGINX Management Suite
+6
NGINX

NGINX

High-performance web server, reverse proxy, and load balancer

29.5k
7.8k
Last commit: 2d ago

NGINX is a high-performance HTTP server and reverse proxy with caching, load balancing, TLS termination, and TCP/UDP proxying via a modular architecture.

Alternative to:
NGINX Management Suite
NGINX Management Suite
+2
Pangolin

Pangolin

Identity-aware VPN and reverse proxy for secure remote access

19.2k
578
Last commit: 18h ago

Open-source identity-based remote access platform combining WireGuard VPN and tunneled reverse proxy access with granular zero-trust controls.

Alternative to:
Cloudflare Access
Cloudflare Access
+16