Hey! I'm using cloudflare dns to route traffic to my server ip. I have nginx and one listener that checks for server_name <DOMAIN>server_name <DOMAIN>. The other ports are disabled via ufw. Can I trust the header cf-connecting-ipcf-connecting-ip to be the IP of the user that connected?
So yeah, if you want to use Docker then almost any of the solutions out there can have Cloudfront put in front of them to provide SSL and DDoS protection. That said, it depends on whether you want to use Docker or not.