
12/10/2021 · Sam Rhea
What this post added
This post details the immediate response to the Log4j vulnerability (CVE-2021-44228) by updating Cloudflare's WAF to block malicious strings. It also introduces and elaborates on the use of Cloudflare Gateway for protective DNS filtering and logging, and Cloudflare One's network firewall for securing outbound network traffic (Layers 3-5) via GRE, IPsec, direct connections, or device clients. Additionally, it describes the Secure Web Gateway for HTTP inspection, virus scanning, and logging of outbound HTTP requests, emphasizing a defense-in-depth strategy with positive security models (allow-listing).