Cloudflare Security Services protect and secure Internet properties against denial-of-service attacks, customer data breaches, and abusive bots.

Anycast Network

With 285 cities across 100 countries and 192 Tbps of capacity, Cloudflare's Anycast network absorbs distributed attack traffic by dispersing it geographically, while keeping Internet properties available and performant.


DNSSEC is the Internet's non-spoofable caller ID. It guarantees a web application's traffic is safely routed to the correct servers so that a site's visitors are not intercepted by a hidden "man-in-the-middle" attacker.

Web Application Firewall (WAF)

Cloudflare's enterprise-grade web application firewall (WAF) detects and block common application layer vulnerabilities at the network edge, utilising the OWASP Top 10, application-specific and custom rulesets.

Rate Limiting

Rate Limiting protects critical resources by providing fine-grained control to block or qualify visitors with suspicious request rates.


Transport Security Layer (TLS) encryption enables HTTPS connections between visitors and origin server(s), preventing man-in-the-middle attacks, packet sniffing, the display of web browser trust warnings, and more.

Secure Registrar

Cloudflare is an ICANN accredited registrar, protecting organizations from domain hijacking with high-touch, online and offline verification for any changes to a registrar account.


Cloudflare Orbit solves security-related issues for Internet of Things devices at the network level.

Argo Tunnel

Cloudflare creates an encrypted tunnel between its nearest data center and an application's origin server without opening a public inbound port.


Secure, authenticate, and monitor user access to any domain, application, or path on Cloudflare.


Spectrum protects TCP applications and ports from volumetric DDoS attacks and data theft by proxying non-web traffic through Cloudflare's Anycast network.

