Skip to main content

Welcome to Cloudflare WAF Custom rules library 👋

Previously known as Cloudflare Firewall Rules

Website  Donate  Contributions  Tested on Python 3.12  License  Size 

A Cloudflare wrapper to bulk add / edit your WAF custom rules using Cloudflare's API.

This library is a wrapper that aims to easily create, modify, delete rules. It also provides a way to import & export new rules in your domain's firewall.

If you have several rules that you want to duplicate among your domains, this module is made for you!

A complete documentation can be found at: https://quentiumyt.github.io/Cloudflare-Firewall-Rules/

📥 Installation

pip install cf_rules

# OR

git clone https://github.com/QuentiumYT/Cloudflare-Firewall-Rules.git
cd Cloudflare-Firewall-Rules/
pip install .

🚀 Usage

You have 2 auth methods available:

A Global API Key or a specific API Token generated from here: https://dash.cloudflare.com/profile/api-tokens

Cloudflare Global API Key

Cloudflare Key

Using a Global API Key, you will have access to everything allowed by a Cloudflare account. It can access all domains from every account you have, this might be overpowered...

Cloudflare API Token

An API token is recommended to keep control of specific domains only. You will need to give the correct permissions for Cloudflare's WAF Custom rules to work.

The required permissions are "Zone.Zone, Zone.Firewall Services"

Cloudflare Token

Here is a token creation example:

Cloudflare Token

💨 Quickstart

You can use any example scripts in the examples folder, just create a .env file

I might add more examples in the future, but everything is in the docs :)


Create any Python file in the cloned directory and paste these lines

from cf_rules import Cloudflare

cf = Cloudflare()
cf.auth_key("<your-address@email.com>", "<your-global-api-key>")
# OR
cf.auth_token("<your-specific-bearer-token>")

domains = cf.domains[0].name

print(domains)
# >>> ['example.com']

cf.export_rules("example.com")
# Creates a text file for every rule you have on your domain

cf.create_rule("example.com", "My Bad Bots FW rule", "Bad Bots", "challenge")
# Create a new rule with the content of the "Bad bots.txt" file with the challenge action

cf.update_rule("example.com", "My Bad Bots FW rule", "Bad Bots lib")
# Change the rule's expression to the content of the "Bad bots lib.txt" file

🤝 Contributing

Pull requests are welcome. For major changes, please open an issue first to discuss what you would like to change and join your fork with the modifications.
Please make sure to test your suggestions before committing.

If you don't feel comfortable coding, you can submit your idea about what you would like to see implemented.

Any PR with small code examples or better documentation changes is appreciated :)

👤 Author

Quentin L.

Please ✰ this repository if this project helped you!

📖 License

Apache 2.0


Made withby QuentiumYT

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

cf_rules-2.1.0.tar.gz (24.4 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

cf_rules-2.1.0-py3-none-any.whl (20.6 kB view details)

Uploaded Python 3

File details

Details for the file cf_rules-2.1.0.tar.gz.

File metadata

  • Download URL: cf_rules-2.1.0.tar.gz
  • Upload date:
  • Size: 24.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.6.10

File hashes

Hashes for cf_rules-2.1.0.tar.gz
Algorithm Hash digest
SHA256 ba14faada70425c8175ba2141e24d75295c4a5fd8bae329f3571e5488bb4b41a
MD5 5ba3ac89ebe771edd4fa2311fc88bd02
BLAKE2b-256 e111b1276d6b9a07ad43af1167362207cfe4c3496588ec398c05f0a71b25503d

See more details on using hashes here.

File details

Details for the file cf_rules-2.1.0-py3-none-any.whl.

File metadata

  • Download URL: cf_rules-2.1.0-py3-none-any.whl
  • Upload date:
  • Size: 20.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.6.10

File hashes

Hashes for cf_rules-2.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 1265ce3ce011f6e2066dff9674853d71942b4fa0df0fd57ab043aecd9ef54e05
MD5 6de0bb8b99ace621aa918874527bd38a
BLAKE2b-256 9a560f530d98bd251f3f5b728cf4175b4beec8d1f7c26a9cbb96955cc07f1ed6

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page