A Cloudflare Proxy and TLS Demonstration
I mentioned in a previous post that using Cloudflare’s reverse proxy services (such as “tunnels” or “proxied domains”) comes with certain security and privacy implications. Essentially, to function as a reverse proxy, CF must be able to intercept and decrypt your traffic. This Man-In-The-Middle position gives CF the ability to hypothetically capture or alter your traffic without any obvious indication.
In this post, I’d like to demonstrate how that would work.