I think you could change the NGINX config so that it would accept connections only from cloudflare.
You could also change it so that it would not redirect the bare IP, but I’m not sure that would increase security by much.
I think you could change the NGINX config so that it would accept connections only from cloudflare.
You could also change it so that it would not redirect the bare IP, but I’m not sure that would increase security by much.