When you configure a zone, the settings apply to all hostnames within the zone, regardless of where the hostname was configured (instance or realm).
Zone settings are organized into four categories:
Category | Description |
---|---|
Crypto | Contains settings related to security and cryptography, such as SSL/TLS and certificates. |
Firewall | Contains settings related to trusted IP list. |
Speed | Contains settings related to the speed of your ecommerce site, such as minification and polish (reducing the size of images). |
Customize | Contains settings related to the creation of custom HTML pages used for errors from the embedded CDN. |
To configure a zone:
If there's no embedded CDN enabled for your instance, the following message appears:
The embedded CDN has not been enabled
.
For example, the Verification Value is
cloudflare-verify.redcliff.de INTXT
'123456789-87654321'
.
The verification value enables communication with the provider after a forced verification, regardless of whether the zones have already been verified. The value also enables you to replace the record if you deleted it.
Security Level | Description |
---|---|
Low | Threat scores greater than 24 are challenged. |
Medium | Threat scores greater than 14 are challenged. |
High | Threat scores greater than 0 are challenged. |
Under Attack | All visitors are challenged. |
The Security Level uses the IP reputation of a visitor to decide whether to present a challenge. When challenged, a visitor solves a CAPTCHA before logging in. An internal algorithm calculates the IP reputation.
The Add Group window opens.
The Add Group button enables you to define an trusted IP list group. An trusted IP list group specifies a set of IP addresses that the eCDN never blocks.
Configuring trusted IP list groups is useful when you have an external CDN deployed in front of the eCDN. Addin IP addresses of your external CDN to the trusted IP list ensures against misinterpreting numerous requests from small sets of IP addresses as a Denial of Service (DoS) attack.
Scope Value | Description |
---|---|
Global | The eCDN applies the trusted IP list to all zones in your organization. |
Zone | The eCDN applies the trusted IP list only to the current zone. |
Minification controls whether the eCDN removes unnecessary characters (for example, extra space or comments) from selected response types. Removing unnecessary characters can reduce the amount of transferred data and improve page load time.
When using minification, keep the following in mind:
Polish Level Option | Action |
---|---|
Polish Level Off | No images modification occurs. |
Polish Level Basic | Image file size is reduced without impacting visual quality. This option removes metadata for PNG, GIF, and JPEG files. It also results in lossless compression of PNG and GIF files. |
Polish Level Basic+JPEG | In addition to the actions for the basic level, file size of JPEG images is reduced using lossy compression, which can reduce visual quality. Large JPEG images are converted to progressive images (site visitors see an increasingly detailed image as the file is downloaded). This functionality is applied only to images served through the eCDN (that is, images served by the Commerce Cloud instance and Dynamic Imaging Service [DIS}). Images retrieved from third-party sites are not modified. |
The polish level applies to all images served from hostnames within the zone. It isn't possible to use different polish levels for different images or a device type-specific polish level. We recommend that you test a new Polish Level with a zone without production traffic before you enable it for a zone with production traffic.
WebP
image format, which can be used with
supported clients for added performance benefits.<p>::CLOUDFLARE_ERROR_500S_BOX::</p>
).<p>::CLOUDFLARE_ERROR_1000S_BOX::</p>
).© Copyright 2000-2023, Salesforce, Inc. All rights reserved. Various trademarks held by their respective owners. |
Show URL | Submit Feedback | Privacy Policy |