Skip to content

Commit b92d393

Browse files
authored
[CF1] IA revamp: misc individual pages (#26128)
* move mtls * update links * move tanium * gateway block page * split out app launcher customization * fix links * fix links * cleanup chart
1 parent c29273c commit b92d393

File tree

49 files changed

+120
-107
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

49 files changed

+120
-107
lines changed

public/__redirects

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2389,6 +2389,7 @@
23892389
/cloudflare-one/identity/users/scim/ /cloudflare-one/team-and-resources/users/scim/ 301
23902390
/cloudflare-one/applications/login-page/ /cloudflare-one/reusable-components/custom-pages/access-login-page/ 301
23912391
/cloudflare-one/applications/block-page/ /cloudflare-one/reusable-components/custom-pages/access-block-page/ 301
2392+
/cloudflare-one/policies/gateway/block-page/ /cloudflare-one/reusable-components/custom-pages/gateway-block-page/ 301
23922393
/cloudflare-one/applications/app-library/ /cloudflare-one/team-and-resources/app-library/ 301
23932394
/cloudflare-one/applications/bookmarks/ /cloudflare-one/access-controls/applications/bookmarks/ 301
23942395
/cloudflare-one/applications/app-launcher/ /cloudflare-one/access-controls/access-settings/app-launcher/ 301
@@ -2399,9 +2400,11 @@
23992400
/cloudflare-one/identity/authorization-cookie/application-token/ /cloudflare-one/access-controls/applications/http-apps/authorization-cookie/application-token/ 301
24002401
/cloudflare-one/identity/authorization-cookie/cors/ /cloudflare-one/access-controls/applications/http-apps/authorization-cookie/cors/ 301
24012402
/cloudflare-one/identity/service-tokens/ /cloudflare-one/access-controls/service-credentials/service-tokens/ 301
2403+
/cloudflare-one/identity/mutual-tls-authentication/ /cloudflare-one/access-controls/service-credentials/mutual-tls-authentication/ 301
24022404
/cloudflare-one/applications/configure-apps/mcp-servers/mcp-portals/ /cloudflare-one/access-controls/ai-controls/mcp-portals/ 301
24032405
/cloudflare-one/applications/configure-apps/mcp-servers/saas-mcp/ /cloudflare-one/access-controls/ai-controls/saas-mcp/ 031
24042406
/cloudflare-one/applications/configure-apps/mcp-servers/linked-apps/ /cloudflare-one/access-controls/ai-controls/linked-apps/ 301
2407+
/cloudflare-one/identity/devices/access-integrations/tanium/ /cloudflare-one/reusable-components/posture-checks/warp-client-checks/tanium/ 301
24052408
/cloudflare-one/connections/connect-devices/* /cloudflare-one/team-and-resources/devices/:splat 301
24062409
/cloudflare-one/connections/connect-networks/* /cloudflare-one/networks/connectors/cloudflare-tunnel/:splat 301
24072410
/cloudflare-one/policies/gateway/* /cloudflare-one/traffic-policies/:splat 301

src/content/changelog/gateway/2025-04-11-http-redirect-custom-block-page-redirect.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,4 +12,4 @@ You can now use more flexible redirect capabilities in Cloudflare One with Gatew
1212
- A new **Redirect** action is available in the HTTP policy builder, allowing admins to redirect users to any URL when their request matches a policy. You can choose to preserve the original URL and query string, and optionally include policy context via query parameters.
1313
- For **Block** actions, admins can now configure a custom URL to display when access is denied. This block page redirect is set at the account level and can be overridden in DNS or HTTP policies. Policy context can also be passed along in the URL.
1414

15-
Learn more in our documentation for [HTTP Redirect](/cloudflare-one/traffic-policies/http-policies/#redirect) and [Block page redirect](/cloudflare-one/traffic-policies/block-page/#redirect-to-a-block-page).
15+
Learn more in our documentation for [HTTP Redirect](/cloudflare-one/traffic-policies/http-policies/#redirect) and [Block page redirect](/cloudflare-one/reusable-components/custom-pages/gateway-block-page/#redirect-to-a-block-page).

src/content/docs/cloudflare-for-platforms/cloudflare-for-saas/security/certificate-management/enforce-mtls.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ However, if you want to update the Minimum TLS settings for all wildcard hostnam
2424

2525
## Enable mTLS
2626

27-
Once you have [added a custom hostname](/cloudflare-for-platforms/cloudflare-for-saas/start/getting-started/), you can enable mTLS by using Cloudflare Access. Go to [Cloudflare Zero Trust](https://one.dash.cloudflare.com/) and [add mTLS authentication](/cloudflare-one/reusable-components/posture-checks/access-integrations/mutual-tls-authentication/) with a few clicks.
27+
Once you have [added a custom hostname](/cloudflare-for-platforms/cloudflare-for-saas/start/getting-started/), you can enable mTLS by using Cloudflare Access. Go to [Cloudflare Zero Trust](https://one.dash.cloudflare.com/) and [add mTLS authentication](/cloudflare-one/access-controls/service-credentials/mutual-tls-authentication/) with a few clicks.
2828

2929
:::note
3030
Currently, you cannot add mTLS policies for custom hostnames using [API Shield](/api-shield/security/mtls/).
Lines changed: 44 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,44 @@
1+
---
2+
pcx_content_type: how-to
3+
title: App Launcher customization
4+
sidebar:
5+
order: 2
6+
---
7+
8+
import { Render } from "~/components";
9+
10+
:::note
11+
12+
Only available on Pay-as-you-go and Enterprise plans.
13+
:::
14+
15+
You can display your own branding, messages, and links to users when they open the [Access App Launcher](/cloudflare-one/access-controls/access-settings/app-launcher/).
16+
17+
To customize the App Launcher appearance:
18+
19+
1. In [Zero Trust](https://one.dash.cloudflare.com/), go to **Settings** > **Custom Pages**.
20+
2. Find the **Customize App Launcher** setting and select **Customize**.
21+
3. Give the App Launcher the look and feel of your organization by adding:
22+
- Your organization's name
23+
- A logo
24+
- A preferred background color for the header
25+
- A preferred background color for the page
26+
- A custom footer with links to your organization's help desk or other internal resources.
27+
28+
:::note
29+
30+
We recommend lighter background colors because the font defaults to black.
31+
:::
32+
33+
4. Next, customize the landing page that users will see when they login to the App Launcher. Available properties include:
34+
- A custom title
35+
- A custom subtitle
36+
- An image
37+
- A preferred color for the **Log in** button
38+
- A preferred color for the **Log in** button text
39+
40+
All of the properties configured in Step 3 will also apply to the landing page.
41+
42+
5. Once you are satisfied with your customization, select **Save**.
43+
44+
The App Launcher screens are now updated. To view your changes, select **Preview**.

src/content/docs/cloudflare-one/traffic-policies/block-page.mdx renamed to src/content/docs/cloudflare-one/reusable-components/custom-pages/gateway-block-page.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
pcx_content_type: how-to
33
title: Block page
44
sidebar:
5-
order: 14
5+
order: 1
66
---
77

88
import { Render, Tabs, TabItem } from "~/components";
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
---
2+
pcx_content_type: navigation
3+
title: Access integrations
4+
sidebar:
5+
order: 4
6+
---
7+
8+
The following device posture checks do not require the WARP client and can only be used in [Cloudflare Access policies](/cloudflare-one/access-controls/policies/). They cannot be used in Gateway network policies.
9+
10+
## Supported operating systems
11+
12+
| Device posture check | macOS | Windows | Linux | iOS | Android/ChromeOS |
13+
| ----------------------------------------------------------------------------------------------- | ----- | ------- | ----- | --- |---------------------------------------------------------------------------------------- |
14+
| [Microsoft Entra ID Conditional Access](/cloudflare-one/tutorials/entra-id-conditional-access/) ||||||
15+
| [Mutual TLS](/cloudflare-one/access-controls/service-credentials/mutual-tls-authentication/) ||||||

src/content/docs/cloudflare-one/reusable-components/posture-checks/access-integrations/index.mdx

Lines changed: 0 additions & 14 deletions
This file was deleted.

src/content/docs/cloudflare-one/reusable-components/posture-checks/index.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ You can now use your device posture check in an [Access policy](/cloudflare-one/
3232

3333
:::caution[Gateway policy limitation]
3434

35-
Gateway does not support device posture checks for the [Tanium Access integration](/cloudflare-one/reusable-components/posture-checks/access-integrations/tanium/).
35+
Gateway does not support device posture checks for the [Tanium Access integration](/cloudflare-one/reusable-components/posture-checks/warp-client-checks/tanium/).
3636
:::
3737

3838
## 4. Ensure traffic is going through WARP

src/content/docs/cloudflare-one/reusable-components/posture-checks/warp-client-checks/client-certificate.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,7 @@ The Client Certificate device posture attribute checks if the device has a valid
4444

4545
:::note
4646

47-
To generate a sample root CA for testing, refer to [Generate mTLS certificates](/cloudflare-one/reusable-components/posture-checks/access-integrations/mutual-tls-authentication/#generate-mtls-certificates).
47+
To generate a sample root CA for testing, refer to [Generate mTLS certificates](/cloudflare-one/access-controls/service-credentials/mutual-tls-authentication/#generate-mtls-certificates).
4848
:::
4949

5050
## Configure the client certificate check

0 commit comments

Comments
 (0)