# Handling the "chain of trust" of the end user's real IP

**URL:** https://meta.discourse.org/t/handling-the-chain-of-trust-of-the-end-users-real-ip/406372
**Category:** Self-Hosting
**Tags:** docker, how-to
**Created:** [June 29, 2026, 4:57pm UTC](https://meta.discourse.org/t/handling-the-chain-of-trust-of-the-end-users-real-ip/406372 "2026-06-29T16:57:59Z")
**Posts on this page:** 1
**Showing post:** 8

<div class="post-metadata">

### Author: ![supermathie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/supermathie/32/507518_2.png) [@supermathie](https://meta.discourse.org/u/supermathie)
#### Post date: [July 2, 2026, 2:03pm UTC](https://meta.discourse.org/t/handling-the-chain-of-trust-of-the-end-users-real-ip/406372/8 "2026-07-02T14:03:37Z")

</div>

> [@technopastor77](#):
>
> Out of curiosity, when Discourse sits behind Cloudflare, is the guidance to rely on CF-Connecting-IP

Yes, this is what our [Cloudflare template](https://github.com/discourse/discourse_docker/blob/main/templates/cloudflare.template.yml) does.

---

_[View the full topic](https://meta.discourse.org/t/handling-the-chain-of-trust-of-the-end-users-real-ip/406372)._
