Zum Inhalt springen

Cloudflare One Updates & Release Notes

319 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Folge Cloudflare One, um die Release Notes in deinen Feed zu holen.

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Gateway: 273 neue Anwendungen für DNS-Filterung

Für DNS-Richtlinien in Gateway stehen jetzt 273 zusätzliche Anwendungen zur Verfügung, um ausgehenden Datenverkehr gezielter zu steuern.

You can now create DNS policies to manage outbound traffic for an expanded list of applications. This update adds support for 273 new applications, giving you more control over your organization's outbound traffic.

With this update, you can:

  • Create DNS policies for a wider range of applications
  • Manage outbound traffic more effectively
  • Improve your organization's security and compliance posture

For more information on creating DNS policies, see our DNS policy documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

DLP: Groß-/Kleinschreibung bei benutzerdefinierten Wortlisten

Benutzerdefinierte Wortlisten in Data Loss Prevention lassen sich nun so konfigurieren, dass sie zwischen Groß- und Kleinschreibung unterscheiden, um Fehlalarme zu verringern.

You can now configure custom word lists to enforce case sensitivity. This setting supports flexibility where needed and aims to reduce false positives where letter casing is critical.

dlp

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Email security: Links per Browser Isolation öffnen

In der Investigation-Ansicht lassen sich identifizierte Links in E-Mails jetzt über ein Symbol sicher in einem isolierten Browser ohne Client öffnen, wofür eine Einstellung in Zero Trust und zugewiesene RBI-Seats nötig sind.

You can now safely open links in emails to view and investigate them.

Open links with Browser Isolation

From Investigation, go to View details, and look for the Links identified section. Next to each link, the Cloudflare dashboard will display an Open in Browser Isolation icon which allows your team to safely open the link in a clientless, isolated browser with no risk to the analyst or your environment. Refer to Open links to learn more about this feature.

To use this feature, you must:

  • Turn on Allow users to open a remote browser without the device client in your Zero Trust settings.
  • Have Browser Isolation (RBI) seats assigned.

For more details, refer to our setup guide.

This feature is available across these Email security packages:

  • Advantage
  • Enterprise
  • Enterprise + PhishGuard

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

DLP: Forensic Copies ohne DLP-Profil senden

DLP Forensic Copies können nun für jede HTTP-Richtlinie mit der Aktion Allow oder Block an Drittanbieter-Speicher gesendet werden, ohne dass ein DLP-Profil enthalten sein muss.

You can now send DLP forensic copies to third-party storage for any HTTP policy with an Allow or Block action, without needing to include a DLP profile. This change increases flexibility for data handling and forensic investigation use cases.

By default, Gateway will send all matched HTTP requests to your configured DLP Forensic Copy jobs.

DLP

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Neue Browser-Isolation-Übersichtsseite im Zero-Trust-Dashboard

Im Zero-Trust-Dashboard gibt es eine neue Browser Isolation Overview, die Onboarding, Tests, Konfiguration isolierter Access-Anwendungen und Überwachung der Nutzung an einem Ort bündelt.

A new Browser Isolation Overview page is now available in the Cloudflare Zero Trust dashboard. This centralized view simplifies the management of Remote Browser Isolation (RBI) deployments, providing:

This update consolidates previously disparate settings, accelerating deployment, improving visibility into isolation activity, and making it easier to ensure your protections are working effectively.

Browser Isolation Overview

To access the new overview, log in to your Cloudflare Zero Trust dashboard ↗︎ and find Browser Isolation in the side navigation bar.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Dark Mode für das Zero-Trust-Dashboard

Das Zero-Trust-Dashboard unterstützt jetzt den nativen Dark Mode von Cloudflare für alle Konten und Pläne und übernimmt die Darstellungseinstellung des Nutzers.

The Cloudflare Zero Trust dashboard ↗︎ now supports Cloudflare's native dark mode for all accounts and plan types.

Zero Trust Dashboard will automatically accept your user-level preferences for system settings, so if your Dashboard appearance is set to 'system' or 'dark', the Zero Trust dashboard will enter dark mode whenever the rest of your Cloudflare account does.

Zero Trust dashboard supports dark mode

To update your view preference in the Zero Trust dashboard:

  1. Log into the Zero Trust dashboard ↗︎.
  2. Select your user icon.
  3. Select Dark Mode.

To update your view preference in the Core dashboard:

  1. Log into the Cloudflare dashboard ↗︎.
  2. Go to My Profile
  3. For Appearance, choose Dark.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Appliance: Mehrere DNS-Server-IPs im DHCP-Pool

In den DHCP-Servereinstellungen der Cloudflare One Appliance können pro Pool jetzt mehrere DNS-Server-IP-Adressen angegeben werden, um Clients an Standorten Redundanz zu bieten.

Cloudflare One Appliance DHCP server settings now support specifying multiple DNS server IP addresses in the DHCP pool.

Previously, customers could only configure a single DNS server per DHCP pool. With this update, you can specify multiple DNS servers to provide redundancy for clients at branch locations.

For configuration details, refer to DHCP server.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Gateway: FQDN-Filterung für Egress-Richtlinien (Beta)

Im Gateway-Egress-Policy-Builder stehen in der Beta die Selektoren Host, Domain, Content Categories und Application zur Verfügung, mit denen sich die Egress-IP anhand des Ziel-FQDN festlegen lässt.

Cloudflare One administrators can now control which egress IP is used based on a destination's fully qualified domain name (FDQN) within Gateway Egress policies.

  • Host, Domain, Content Categories, and Application selectors are now available in the Gateway Egress policy builder in beta.
  • During the beta period, you can use these selectors with traffic on-ramped to Gateway with the WARP client, proxy endpoints (commonly deployed with PAC files), or Cloudflare Browser Isolation.

Egress by FQDN and Hostname

This will help apply egress IPs to your users' traffic when an upstream application or network requires it, while the rest of their traffic can take the most performant egress path.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Access: Bulk Policy Tester

Im Zero-Trust-Dashboard steht der Access Bulk Policy Tester bereit, der Access-Richtlinien vor und nach Änderungen anhand der zuletzt gesehenen Identität und Geräteposture aller Nutzer simuliert.

The Access bulk policy tester is now available in the Cloudflare Zero Trust dashboard. The bulk policy tester allows you to simulate Access policies against your entire user base before and after deploying any changes. The policy tester will simulate the configured policy against each user's last seen identity and device posture (if applicable).

Example policy tester

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

DLP: Neuer vordefinierter Eintrag für ICD-11

Die WHO-Ausgabe 2025 der ICD-11 steht als vordefinierter Erkennungseintrag im Profil Health Information bereit, während der ICD-10-Datensatz weiterhin verfügbar bleibt.

You now have access to the World Health Organization (WHO) 2025 edition of the International Classification of Diseases 11th Revision (ICD-11) ↗︎ as a predefined detection entry. The new dataset can be found in the Health Information predefined profile.

ICD-10 dataset remains available for use.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Gateway: HTTP-Redirect und Block-Page-Weiterleitung

Gateway bietet im HTTP-Policy-Builder eine neue Redirect-Aktion und erlaubt für Block-Aktionen eine benutzerdefinierte Weiterleitungs-URL auf Kontoebene, die in DNS- oder HTTP-Richtlinien überschrieben werden kann.

You can now use more flexible redirect capabilities in Cloudflare One with Gateway.

  • A new Redirect action is available in the HTTP policy builder, allowing admins to redirect users to any URL when their request matches a policy. You can choose to preserve the original URL and query string, and optionally include policy context via query parameters.
  • For Block actions, admins can now configure a custom URL to display when access is denied. This block page redirect is set at the account level and can be overridden in DNS or HTTP policies. Policy context can also be passed along in the URL.

Learn more in our documentation for HTTP Redirect and Block page redirect.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Access: SCIM-Protokolle für Benutzer- und Gruppen-Provisionierung

Cloudflare Zero Trust protokolliert nun alle Create-, Update- und Delete-Ereignisse von SCIM-fähigen IdPs und bietet unter Logs > SCIM provisioning Filter nach IdP, Ereignistyp und Ergebnis.

Cloudflare Zero Trust SCIM provisioning now has a full audit log of all create, update and delete event from any SCIM Enabled IdP. The SCIM logs support filtering by IdP, Event type, Result and many more fields. This will help with debugging user and group update issues and questions.

SCIM logs can be found on the Zero Trust Dashboard under Logs -> SCIM provisioning.

Example SCIM Logs

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Email security: Zwei kostenlose CASB-Integrationen

Mit Email security sind zwei kostenlose CASB-Integrationen enthalten, eine für Email security und eine weitere separate für CASB-Findings eines anderen SaaS-Anbieters, verfügbar in den Paketen Enterprise und Enterprise + PhishGuard.

With Email security, you get two free CASB integrations.

Use one SaaS integration for Email security to sync with your directory of users, take actions on delivered emails, automatically provide EMLs for reclassification requests for clean emails, discover CASB findings and more.

With the other integration, you can have a separate SaaS integration for CASB findings for another SaaS provider.

Refer to Add an integration to learn more about this feature.

CASB-EmailSecurity

This feature is available across these Email security packages:

  • Enterprise
  • Enterprise + PhishGuard

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Gateway: Neue Rolle für Secure DNS Locations

Die neue Rolle Cloudflare Zero Trust Secure DNS Locations Write erlaubt es, externen Partnern die Verwaltung von DNS-Locations zu übertragen, ohne ihnen zu weitreichende Rechte zu geben.

We're excited to introduce the Cloudflare Zero Trust Secure DNS Locations Write role, designed to provide DNS filtering customers with granular control over third-party access when configuring their Protective DNS (PDNS) solutions.

Many DNS filtering customers rely on external service partners to manage their DNS location endpoints. This role allows you to grant access to external parties to administer DNS locations without overprovisioning their permissions.

Secure DNS Location Requirements:

You can assign the new role via Cloudflare Dashboard (Manage Accounts > Members) or via API. For more information, refer to the Secure DNS Locations documentation ↗︎.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Agent für Android 2.4

Die Android-Version 2.4 des Cloudflare One Agent ermöglicht die Übergabe des Team-Namens per URL bei der Registrierung, verbessert Fehlermeldungen und behebt ein Problem mit der Priorität von Admin-Split-Tunnel-Einstellungen.

A new GA release for the Android Cloudflare One Agent is now available in the Google Play Store ↗︎. This release includes a new feature allowing team name insertion by URL during enrollment, as well as fixes and minor improvements.

Changes and improvements

  • Improved in-app error messages.
  • Improved mobile client login with support for team name insertion by URL.
  • Fixed an issue preventing admin split tunnel settings taking priority for traffic from certain applications.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare One Agent für iOS 1.10

Die iOS-Version 1.10 des Cloudflare One Agent ermöglicht die Übergabe des Team-Namens per URL bei der Registrierung, verbessert Fehlermeldungen und bringt Fehlerbehebungen sowie Leistungsverbesserungen.

A new GA release for the iOS Cloudflare One Agent is now available in the iOS App Store ↗︎. This release includes a new feature allowing team name insertion by URL during enrollment, as well as fixes and minor improvements.

Changes and improvements

  • Improved in-app error messages.
  • Improved mobile client login with support for team name insertion by URL.
  • Bug fixes and performance improvements.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Cloudflare Network Firewall: Liste der Cloudflare-IP-Bereiche

Magic Firewall unterstützt eine neue verwaltete Liste mit Cloudflare-IP-Bereichen, die automatisch aktualisiert wird und bei IP-basierten Richtlinien über „is in list“ bzw. „is not in list“ auswählbar ist, sofern ein Advanced-Network-Firewall-Abonnement besteht.

Magic Firewall now supports a new managed list of Cloudflare IP ranges. This list is available as an option when creating a Magic Firewall policy based on IP source/destination addresses. When selecting "is in list" or "is not in list", the option "Cloudflare IP Ranges" will appear in the dropdown menu.

This list is based on the IPs listed in the Cloudflare IP ranges ↗︎. Updates to this managed list are applied automatically.

Cloudflare IPs Managed List

Note: IP Lists require a Cloudflare Advanced Network Firewall subscription. For more details about Cloudflare Network Firewall plans, refer to Plans.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

DEX: Endpoint Monitoring im Cloudflare One Agent

Der Cloudflare One Agent (v2025.1.861) erfasst nun automatisch Gerätegesundheitsdaten wie zuletzt verbundenes Netzwerk, CPU- und RAM-Auslastung sowie ressourcenintensive Prozesse, die im Dashboard auswertbar sind.

Digital Experience Monitoring (DEX) provides visibility into device, network, and application performance across your Cloudflare SASE deployment. The latest release of the Cloudflare One agent (v2025.1.861) now includes device endpoint monitoring capabilities to provide deeper visibility into end-user device performance which can be analyzed directly from the dashboard.

Device health metrics are now automatically collected, allowing administrators to:

  • View the last network a user was connected to
  • Monitor CPU and RAM utilization on devices
  • Identify resource-intensive processes running on endpoints

Device endpoint monitoring dashboard

This feature complements existing DEX features like synthetic application monitoring and network path visualization, creating a comprehensive troubleshooting workflow that connects application performance with device state.

For more details refer to our DEX documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Browser Isolation: Neue Logpush-Logs für Nutzeraktionen (Beta)

Für Remote Browser Isolation gibt es per Logpush neue Logs in der Beta, mit denen Administratoren Nutzeraktionen wie Copy & Paste, Downloads & Uploads und Drucken sowie blockierte Datenextraktionsversuche nachverfolgen können.

We're excited to announce that new logging capabilities for Remote Browser Isolation (RBI) through Logpush are available in Beta starting today!

With these enhanced logs, administrators can gain visibility into end user behavior in the remote browser and track blocked data extraction attempts, along with the websites that triggered them, in an isolated session.

{
	"AccountID": "$ACCOUNT_ID",
	"Decision": "block",
	"DomainName": "www.example.com",
	"Timestamp": "2025-02-27T23:15:06Z",
	"Type": "copy",
	"UserID": "$USER_ID"
}

User Actions available:

  • Copy & Paste
  • Downloads & Uploads
  • Printing

Learn more about how to get started with Logpush in our documentation.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Cloudflare One von Cloudflare

Access for SaaS: Neue SAML- und OIDC-Felder sowie SAML-Transformationen

Access for SaaS bietet für OIDC-Apps nun Gruppenfilterung per RegEx, Claim-Mapping, Token-Lebensdauer und erweiterte Auth-Flows, für SAML-Apps verbessertes Attribut-Mapping und per JSONata frei anpassbare SAML-Identitäten.

Access for SaaS applications now include more configuration options to support a wider array of SaaS applications.

SAML and OIDC Field Additions

OIDC apps now include:

  • Group Filtering via RegEx
  • OIDC Claim mapping from an IdP
  • OIDC token lifetime control
  • Advanced OIDC auth flows including hybrid and implicit flows

OIDC field additions

SAML apps now include improved SAML attribute mapping from an IdP.

SAML field additions

SAML transformations

SAML identities sent to Access applications can be fully customized using JSONata expressions. This allows admins to configure the precise identity SAML statement sent to a SaaS application.

Configured SAML statement sent to application

Originalquelle(öffnet in neuem Tab)Problem melden