Cloudflare Tunnel-Based Network Infrastructure for Application Deployment
Main Article Content
Abstract
This study designs a secure and efficient network infrastructure using Cloudflare Tunnel to solve the challenge of exposing on-premise K3s services. By applying Zero Trust Network Access (ZTNA) principles and deploying a cloudflared connector inside the cluster, the solution provides stable and secure public endpoints without opening inbound ports. As a result, service management, security, and development/testing workflows become faster
Article Details
How to Cite
Maulana, R., & Tri Nur Arifin. (2026). Cloudflare Tunnel-Based Network Infrastructure for Application Deployment . JITSI : Jurnal Ilmiah Teknologi Sistem Informasi, 7(3), 224 - 235. https://doi.org/10.62527/jitsi.7.3.625
Issue
Section
Articles

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.
References
B. Burns, B. Grant, D. Oppenheimer, E. Brewer, and J. Wilkes, “Borg, Omega, and Kubernetes: Lessons learned from three container-management systems over a decade,” Queue, vol. 14, no. 1, pp. 70–93, 2016, doi: 10.1145/2898442.2898444.
[2] K3s Project, “K3s—Lightweight Kubernetes,” K3s Documentation, 2026, accessed Jul. 13, 2026.
[3] Kubernetes Authors, “kubectl port-forward,” Kubernetes Documentation, 2026, accessed Jul. 13, 2026.
[4] ngrok, “Free Plan Limits,” ngrok Documentation, 2026, accessed Jul. 13, 2026.
[5] A. Alanda, H. A. Mooduto, H. Amnur and M. Fadhel, "Scaling Kubernetes Architectures for High Availability in Cloud," 2025 International Conference on Computer Sciences, Engineering, and Technology Innovation (ICoCSETI), Jakarta, Indonesia, 2025, pp. 818-823, doi: 10.1109/ICoCSETI63724.2025.11020084.
[6] S. Rose, O. Borchert, S. Mitchell, and S. Connelly, Zero Trust Architecture, NIST Special Publication 800-207. Gaithersburg, MD, USA: National Institute of Standards and Technology, 2020, doi: 10.6028/NIST.SP.800-207.
[7] Cloudflare, “Cloudflare Tunnel,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[8] Kubernetes Authors, “DNS for Services and Pods,” Kubernetes Documentation, 2026, accessed Jul. 13, 2026.
[9] Cloudflare, “Kubernetes Deployment Guide for Cloudflare Tunnel,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[10] Cloudflare, “Access Policies,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[11] J. E. Goldman and P. T. Rawles, Applied Data Communications: A Business-Oriented Approach, 4th ed. Hoboken, NJ, USA: John Wiley & Sons, 2004.
[12] I. Čilić, P. Krivić, I. Podnar Žarko, and M. Kušek, “Performance evaluation of container orchestration tools in edge computing environments,” Sensors, vol. 23, no. 8, Art. no. 4008, 2023, doi: 10.3390/s23084008.
[13] V. Kjorveziroski and S. Filiposka, “Kubernetes distributions for the edge: Serverless performance evaluation,” The Journal of Supercomputing, vol. 78, no. 11, pp. 13728–13755, 2022, doi: 10.1007/s11227-022-04430-6.
[14] D. Rahman, H. Amnur, and I. Rahmayuni, “Monitoring Server dengan Prometheus dan Grafana serta Notifikasi Telegram”, jitsi, vol. 1, no. 4, pp. 133 - 138, Dec. 2020.
[15] D. Yakubov and D. Hästbacka, “Comparative analysis of lightweight Kubernetes distributions for edge computing: Performance and resource efficiency,” arXiv preprint arXiv:2504.03656, 2025.
[16] A. Valantasis, N. Makris, and T. Korakis, “Orchestration software for resource constrained datacenters: An experimental evaluation,” in Proc. 2022 IEEE 8th International Conference on Network Softwarization (NetSoft), Milan, Italy, 2022, pp. 121–126, doi: 10.1109/NetSoft54395.2022.9844043
[2] K3s Project, “K3s—Lightweight Kubernetes,” K3s Documentation, 2026, accessed Jul. 13, 2026.
[3] Kubernetes Authors, “kubectl port-forward,” Kubernetes Documentation, 2026, accessed Jul. 13, 2026.
[4] ngrok, “Free Plan Limits,” ngrok Documentation, 2026, accessed Jul. 13, 2026.
[5] A. Alanda, H. A. Mooduto, H. Amnur and M. Fadhel, "Scaling Kubernetes Architectures for High Availability in Cloud," 2025 International Conference on Computer Sciences, Engineering, and Technology Innovation (ICoCSETI), Jakarta, Indonesia, 2025, pp. 818-823, doi: 10.1109/ICoCSETI63724.2025.11020084.
[6] S. Rose, O. Borchert, S. Mitchell, and S. Connelly, Zero Trust Architecture, NIST Special Publication 800-207. Gaithersburg, MD, USA: National Institute of Standards and Technology, 2020, doi: 10.6028/NIST.SP.800-207.
[7] Cloudflare, “Cloudflare Tunnel,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[8] Kubernetes Authors, “DNS for Services and Pods,” Kubernetes Documentation, 2026, accessed Jul. 13, 2026.
[9] Cloudflare, “Kubernetes Deployment Guide for Cloudflare Tunnel,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[10] Cloudflare, “Access Policies,” Cloudflare One Documentation, 2026, accessed Jul. 13, 2026.
[11] J. E. Goldman and P. T. Rawles, Applied Data Communications: A Business-Oriented Approach, 4th ed. Hoboken, NJ, USA: John Wiley & Sons, 2004.
[12] I. Čilić, P. Krivić, I. Podnar Žarko, and M. Kušek, “Performance evaluation of container orchestration tools in edge computing environments,” Sensors, vol. 23, no. 8, Art. no. 4008, 2023, doi: 10.3390/s23084008.
[13] V. Kjorveziroski and S. Filiposka, “Kubernetes distributions for the edge: Serverless performance evaluation,” The Journal of Supercomputing, vol. 78, no. 11, pp. 13728–13755, 2022, doi: 10.1007/s11227-022-04430-6.
[14] D. Rahman, H. Amnur, and I. Rahmayuni, “Monitoring Server dengan Prometheus dan Grafana serta Notifikasi Telegram”, jitsi, vol. 1, no. 4, pp. 133 - 138, Dec. 2020.
[15] D. Yakubov and D. Hästbacka, “Comparative analysis of lightweight Kubernetes distributions for edge computing: Performance and resource efficiency,” arXiv preprint arXiv:2504.03656, 2025.
[16] A. Valantasis, N. Makris, and T. Korakis, “Orchestration software for resource constrained datacenters: An experimental evaluation,” in Proc. 2022 IEEE 8th International Conference on Network Softwarization (NetSoft), Milan, Italy, 2022, pp. 121–126, doi: 10.1109/NetSoft54395.2022.9844043