How to solve the problem of source IP leakage and DD attacks even when using Cloudflare CDN?

You will want to use the firewall that your VPS provider provides for you. Using a host based firewall will be far less effective in fighting a DDoS since the traffic does get to your network stack.