# Hide Origin IP in discourse

**URL:** https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921
**Category:** Support
**Created:** [December 14, 2019, 6:54am UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921 "2019-12-14T06:54:35Z")
**Posts on this page:** 7
**Page:** 1

<div class="post-metadata">

### Author: ![Jay91](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/jay91/32/135181_2.png) [@Jay91](https://meta.discourse.org/u/Jay91)
#### Post date: [December 14, 2019, 6:54am UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/1 "2019-12-14T06:54:35Z")

</div>

We use cloudflare for managing the DNS and we can`t turn on the orange cloud to proxy the forum because this will break it.  
is there any way ti turn around this and proxy thy IP to hide the origin ?

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [December 14, 2019, 7:53am UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/2 "2019-12-14T07:53:28Z")

</div>

A rule to “disable performance” will turn off the damaging features.

It will degrade performance though and Let’s Encrpyt cannot issue certificates with it enabled.

---

<div class="post-metadata">

### Author: ![Jay91](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/jay91/32/135181_2.png) [@Jay91](https://meta.discourse.org/u/Jay91)
#### Post date: [December 14, 2019, 2:08pm UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/3 "2019-12-14T14:08:44Z")

</div>

Let me as a question please, so every time the certificate needs to be renewed i have to drop the forum for cloudflare ?

> [@Stephen](#):
>
> It will degrade performance

Do you mean will not provide the extra performance or will make the site slower than the current status ? Please clarify.

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [December 14, 2019, 2:10pm UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/4 "2019-12-14T14:10:42Z")

</div>

If you’re sandwiching Cloudflare between client and server you are adding extra network hops for every update. Cloudflare can’t cache application server responses, so the extra network time slows responses down.

---

<div class="post-metadata">

### Author: ![Jay91](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/jay91/32/135181_2.png) [@Jay91](https://meta.discourse.org/u/Jay91)
#### Post date: [December 14, 2019, 2:43pm UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/6 "2019-12-14T14:43:20Z")

</div>

I did added the rule but this what happened !!

 ![image](https://global.discourse-cdn.com/meta/original/3X/9/5/95f0389172c29755af21a4569172ddd0524261ac.png)

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [December 14, 2019, 2:44pm UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/7 "2019-12-14T14:44:37Z")

</div>

That’s not related to the rule, your SSL mode on Cloudflare isn’t configured correctly. Do you have it set to SSL(Flexible)? It should be configured as strict.

---

<div class="post-metadata">

### Author: ![system](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/system/32/443519_2.png) [@system](https://meta.discourse.org/u/system)
#### Post date: [January 13, 2020, 2:47pm UTC](https://meta.discourse.org/t/hide-origin-ip-in-discourse/135921/8 "2020-01-13T14:47:14Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
