Skip to content

← All integrations

Cloud service

Uploads and renews custom certificates on a Cloudflare zone.

The appliance runs the package and connects to Cloudflare through Cloudflare API over HTTPS on port 443. No agent is installed on Cloudflare.

What happens

  1. The appliance connects to Cloudflare through Cloudflare API on port 443.
  2. The first time, the certificate is uploaded. On renewal, the existing custom certificate is updated in its slot. If it fails: Rollback puts the previous certificate back, or deletes a first upload.
  3. Verification: the package waits until the certificate is active, and checks its fingerprint when the API returns the certificate.

Technical details

Connection
The package runs on the appliance, which connects over HTTPS to Cloudflare API, port 443. No agent is installed.
You need
API token with read and write access to Custom Certificates on the zone. A renewal uses the id of the custom certificate it renews, and the previous certificate and key, which the appliance holds.
Platform
Business or Enterprise zone
Actions
Discovery, Installation, Verification, Rollback, Removal
Packages
cloudflare-api

Get started