If you use WP Cerber with Cloudflare, version 2.5 of the Cloudflare Add-On is now available.
This release improves how WP Cerber keeps Cloudflare IP Access Rules in sync with your Access Lists and lockouts. Lockout rules and IP Access List rules are now tracked separately, supported subnet lockouts and IPv6 addresses are handled correctly, and Cloudflare API failures are easier to spot from the WordPress admin area.
A few highlights:
-
Existing Cloudflare rules managed by older add-on versions are rebuilt automatically from the current WP Cerber state.
-
Lockout rules and Allowed and Blocked IP Access List rules no longer interfere with each other.
-
Wildcard networks such as
192.168.*.*are now converted to the format Cloudflare accepts. -
Subnet-wide lockouts are created and removed consistently at Cloudflare.
-
Single IPv6 addresses are synchronized with the correct Cloudflare rule type.
-
Failed Cloudflare operations can now appear as admin notices, including the Cloudflare error code when available.
The update does not normally require you to recreate existing Cloudflare rules manually. The one-time rebuild starts automatically with the next relevant WP Cerber IP event. On a quiet website, that may not happen immediately, which is expected.
Before updating, make sure your website runs WP Cerber 9.8.3 or newer and PHP 7.4 or newer. Your Cloudflare email address and Global API Key should also be saved in the add-on settings.
If you use diagnostic logging and want a detailed record of the rebuild, enable it before updating.
For the full release details and installation instructions, see the post on our blog.