Ready
state.CNAME
record.
Name
field, enter the desired target subdomain.Target
field, enter the Canonical Endpoint
URL from the Workload’s Info page.Proxied
switch.Full (strict)
radio box.Origin Server
submenu link.
Generate private key and CSR with Cloudflare
.RSA (2048)
.*.DOMAIN
and DOMAIN
hostnames.Create
. The next page will display the certificate and private key. You may save these as separate text files or leave the page open and copy/paste the values when creating the TLS Secret at Control Plane in the next step.Secrets
from the left side menu.New
button at the top.Name
for the secret and select the secret type TLS
.Create
. This secret will be used when configuring your domain in the next step.Domains
from the left side menu.New
button at the top.Fully Qualified Domain Name (FQDN)
of your Domain.Next (Spec)
.CNAME
for the DNS Mode
.Routing Mode
.Advanced Button
button and Toggle on the Configure TLS
switch.Use Custom Server Certificate
and select the TLS Secret created in the step above.Next (DNS)
.Create
.Ready
state.N. Virginia
region using the setting below.
subdomain.mydomain.com
or *.mydomain.com
DNS Validation
RSA 2048
Create Distribution
Origin Domain
to the public endpoint of your workload. Use one of the following methods, depending on whether you are using a BYOK location or a managed locations (standard):
Canonical Endpoint
URL from the Workload’s Info page as Origin Domain
, formatted as follows: cloudfront-httpbin-0ac6x9wrgpj00.cpln.app
.
Origin Domain
value in CloudFront, formatted as follows: nginx3-7mhf5d3qcsrqt.eksctl-byok-aws-west2.controlplane.us
.
Alternate domain name
for your domain. In the format: subdomain.mydomain.com
.Custom SSL certificate
created in Step one from the list.
Cache policy
and complete the rest of the configuration as needed.
Create distribution
and wait for a few minutes to changes to apply.
Inbound or outbound rules per security group
under Amazon Virtual Private Cloud (Amazon VPC)
values for at least 530 rules. Visit Service Quotas in the AWS console for your region to request a quota increase if necessary.