Tutorial Tutorial Tutorial Cloudflare One Cloudflare One Cloudflare One ~10 phút ~10 min ~10 នាទី Đồng bộ 2026-06-10 Synced 2026-06-10 ធ្វើសមកាល 2026-06-10

Access một ứng dụng web thông qua tên máy chủ riêng của nó mà không có Cloudflare One Client Access a web application via its private hostname without the Cloudflare One Client Access កម្មវិធីបណ្តាញតាមរយៈឈ្មោះម៉ាស៊ីនឯកជនរបស់វាដោយគ្មាន Cloudflare One Client

Hướng dẫn chi tiết đồng bộ từ docs Cloudflare — mỗi section có backlink tới đúng vị trí trên trang gốc. Detailed guide synced from Cloudflare docs — each section links to the matching anchor on the official page. មគ្គុទ្ទេសក៍លម្អិតធ្វើសមកាលពី docs Cloudflare — ផ្នែកនីមួយៗមានតំណទៅទីតាំងត្រូវគ្នានៅទំព័រផ្លូវការ។

← Danh mục ← Catalog ← បញ្ជី

Giải thích nhanh Quick context បរិបទរហ័ស

Thuộc Cloudflare One — Zero Trust, truy cập an toàn và kiểm soát traffic người dùng/thiết bị. Tutorial «Access web ứng dụng via its private hostname without Cloudflare One Client» giúp bạn làm quen luồng triển khai thật — phù hợp đọc trước khi mở tài liệu gốc tiếng Anh. Đọc phần tóm tắt và lưu ý trước — sau đó mở docs gốc để copy lệnh và cấu hình chi tiết.

With Cloudflare Browser Isolation and resolver policies, users can connect to private web-based applications via their private hostnames.

ជាមួយនឹង Cloudflare គោលការណ៍ញែកកម្មវិធីរុករក និងដំណោះស្រាយ អ្នកប្រើប្រាស់អាចភ្ជាប់ទៅកម្មវិធីដែលមានមូលដ្ឋានលើបណ្តាញឯកជនតាមរយៈឈ្មោះម៉ាស៊ីនឯកជនរបស់ពួកគេ។

Lưu ý Note ចំណាំ

Lưu ý trước khi làm Notes before you start ចំណាំមុនពេលចាប់ផ្តើម

  • Đây là bản tóm tắt trên Orange Cloud Learning Hub — không thay thế tài liệu chính thức.
  • Luôn mở liên kết «Tài liệu gốc» bên dưới khi cần lệnh CLI, snippet code và ảnh minh họa đầy đủ.
  • Zero Trust thường cần quyền admin trên tenant Cloudflare One và IdP đã kết nối.
  • Docs Cloudflare cập nhật thường xuyên — đối chiếu ngày «Rà soát lần cuối» trên trang gốc khi triển khai production.
  • This is a summary on Orange Cloud Learning Hub — it does not replace the official documentation.
  • Open the Official docs link below for CLI commands, code snippets, and full screenshots.
  • Zero Trust typically requires Cloudflare One tenant admin access and a connected IdP.
  • Cloudflare docs change frequently — verify the Last reviewed date on the official page before production use.
  • នេះគឺជាការសង្ខេបនៅលើ Orange Cloud Learning Hub — វាមិនជំនួសឯកសារផ្លូវការទេ។
  • បើកតំណឯកសារផ្លូវការខាងក្រោមសម្រាប់ពាក្យបញ្ជា CLI កូដ snippets និងរូបថតអេក្រង់ពេញ។
  • Zero Trust ជាធម្មតាទាមទារ Cloudflare One អ្នកគ្រប់គ្រងភតិកៈ access និង IdP ដែលបានតភ្ជាប់។
  • Cloudflare ឯកសារផ្លាស់ប្តូរជាញឹកញាប់ — ផ្ទៀងផ្ទាត់កាលបរិច្ឆេទដែលបានពិនិត្យចុងក្រោយនៅលើទំព័រផ្លូវការមុនពេលប្រើប្រាស់ផលិតកម្ម។

Tài liệu gốc — rà soát lần cuối: over 2 years ago Official docs — last reviewed: over 2 years ago ឯកសារផ្លូវការ — ពិនិត្យចុងក្រោយ: over 2 years ago

Overview Overview ទិដ្ឋភាពទូទៅ

Phần «Tổng quan» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Overview" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ទិដ្ឋភាពទូទៅ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Với Cloudflare Browser Isolation và giải quyết chính sách, người dùng có thể kết nối với các ứng dụng dựa trên web riêng tư thông qua tên máy chủ riêng của họ mà không cần phải cài đặt Cloudflare One Client. Vào cuối hướng dẫn này, người dùng vượt qua Gateway DNS và chính sách mạng sẽ có thể access ứng dụng cá nhân của bạn tại https://<your-team-name>.cloudflareaccess.com/browser/https://internalrecord.com.
With Cloudflare Browser Isolation and resolver policies, users can connect to private web-based applications via their private hostnames without needing to install the Cloudflare One Client. By the end of this tutorial, users who pass your Gateway DNS and network policies will be able to access your private application at https://<your-team-name>.cloudflareaccess.com/browser/https://internalrecord.com.
ជាមួយនឹង Cloudflare គោលការណ៍ញែកកម្មវិធីរុករក និងដំណោះស្រាយ អ្នកប្រើប្រាស់អាចភ្ជាប់ទៅកម្មវិធីដែលមានមូលដ្ឋានលើបណ្តាញឯកជនតាមរយៈឈ្មោះម៉ាស៊ីនឯកជនរបស់ពួកគេដោយមិនចាំបាច់ដំឡើង Cloudflare One Client ទេ។ នៅចុងបញ្ចប់នៃការបង្រៀននេះ អ្នកប្រើប្រាស់ដែលឆ្លងកាត់ Gateway DNS របស់អ្នក និងគោលការណ៍បណ្តាញនឹងអាច access កម្មវិធីឯកជនរបស់អ្នកនៅ https://<your-team-name>.cloudflareaccess.com/browser/https://internalrecord.com ។

Trước khi bạn bắt đầu Before you begin មុនពេលអ្នកចាប់ផ្តើម

Phần «Before you begin» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Before you begin" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «មុនពេលអ្នកចាប់ផ្តើម» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Hãy chắc chắn rằng bạn có:
Make sure you have:
ត្រូវប្រាកដថាអ្នកមាន៖
  • Cloudflare Browser Isolation được kích hoạt trên tài khoản của bạn
  • Resolver policies được kích hoạt trên tài khoản của bạn
  • Một ứng dụng HTTP hoặc HTTPS mà người dùng access thông qua một trình duyệt

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Tạo một Cloudflare Tunnel Create a Cloudflare Tunnel បង្កើត Cloudflare Tunnel

Phần «Tạo Cloudflare Tunnel» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Create a Cloudflare Tunnel" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «បង្កើត Cloudflare Tunnel» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Đầu tiên, cài đặt cloudflared trên máy chủ trong mạng riêng của bạn:
First, install cloudflared on a server in your private network:
ដំបូង ដំឡើង cloudflared នៅលើម៉ាស៊ីនមេក្នុងបណ្តាញឯកជនរបស់អ្នក៖
  1. Đăng nhập vào Cloudflare dashboard ↗ và đi đến Zero Trust &> Networks > Connectors > Cloudflare Tunnels.
  2. Chọn Create a tunnel
  3. Chọn Cloudflared cho loại kết nối và chọn Next.
  4. Nhập tên cho tunnel của bạn. Chúng tôi khuyên bạn nên chọn một tên phản ánh loại tài nguyên mà bạn muốn kết nối thông qua tunnel (ví dụ, enterprise-VPC-01).
  5. Chọn Save tunnel
  6. Tiếp theo, bạn sẽ cần cài đặt cloudflared và chạy nó. Để làm điều này, hãy kiểm tra rằng môi trường dưới Choose an environment phản ánh hệ điều hành trên máy của bạn, sau đó sao chép lệnh trong hộp bên dưới và dán nó vào cửa sổ đầu cuối. Chạy lệnh
  7. Khi lệnh đã hoàn thành, kết nối của bạn sẽ xuất hiện trong Cloudflare One.
  1. Log in to the Cloudflare dashboard ↗ and go to Zero Trust \> Networks \> Connectors \> Cloudflare Tunnels.
  2. Select Create a tunnel.
  3. Choose Cloudflared for the connector type and select Next.
  4. Enter a name for your tunnel. We suggest choosing a name that reflects the type of resources you want to connect through this tunnel (for example, enterprise-VPC-01).
  5. Select Save tunnel.
  6. Next, you will need to install cloudflared and run it. To do so, check that the environment under Choose an environment reflects the operating system on your machine, then copy the command in the box below and paste it into a terminal window. Run the command.
  7. Once the command has finished running, your connector will appear in Cloudflare One.
  1. ចូលទៅ Cloudflare dashboard ↗ ហើយចូលទៅកាន់ Zero Trust \work> Networks \> Connectors ។
  2. ជ្រើសរើស Create a tunnel។
  3. ជ្រើសរើស Cloudflared សម្រាប់ប្រភេទឧបករណ៍ភ្ជាប់ ហើយជ្រើសរើស Next។
  4. បញ្ចូលឈ្មោះសម្រាប់ tunnel របស់អ្នក។ យើងស្នើឱ្យជ្រើសរើសឈ្មោះដែលឆ្លុះបញ្ចាំងពីប្រភេទនៃធនធានដែលអ្នកចង់ភ្ជាប់តាមរយៈ tunnel នេះ (ឧទាហរណ៍ enterprise-VPC-01)។
  5. ជ្រើសរើស Save tunnel។
  6. បន្ទាប់មក អ្នកនឹងត្រូវដំឡើង cloudflared ហើយដំណើរការវា។ ដើម្បីធ្វើដូច្នេះ សូមពិនិត្យមើលថាបរិស្ថាននៅក្រោម Choose an environment ឆ្លុះបញ្ចាំងពីប្រព័ន្ធប្រតិបត្តិការនៅលើម៉ាស៊ីនរបស់អ្នក បន្ទាប់មកចម្លងពាក្យបញ្ជាក្នុងប្រអប់ខាងក្រោម ហើយបិទភ្ជាប់វាទៅក្នុងបង្អួចស្ថានីយ។ ដំណើរការពាក្យបញ្ជា។
  7. នៅពេលដែលពាក្យបញ្ជាបានបញ្ចប់ដំណើរការ ឧបករណ៍ភ្ជាប់របស់អ្នកនឹងបង្ហាញនៅក្នុង Cloudflare One។
  1. Chọn Next
  1. Select Next.
  1. ជ្រើសរើស Next។

Thêm các tuyến đường mạng riêng Add private network routes បន្ថែមផ្លូវបណ្តាញឯកជន

Phần «Thêm private network routes» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Add private network routes" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «បន្ថែមផ្លូវបណ្តាញឯកជន» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
  1. Trong tab CIDR, hãy thêm các địa chỉ IP sau:
  1. In the CIDR tab, add the following IP addresses:
  1. នៅក្នុងផ្ទាំង CIDR បន្ថែមអាសយដ្ឋាន IP ខាងក្រោម៖
Private IP/CIDR của máy chủ ứng dụng của bạn (ví dụ, 10.128.0.175/32) Private IP/CIDR của máy chủ DNS của bạn
Private IP/CIDR of your application server (for example, 10.128.0.175/32) Private IP/CIDR of your DNS server
ឯកជន IP/CIDR នៃម៉ាស៊ីនមេកម្មវិធីរបស់អ្នក (ឧទាហរណ៍ 10.128.0.175/32) Private IP/CIDR នៃម៉ាស៊ីនមេ DNS របស់អ្នក
  1. Chọn Save tunnel
  1. Select Save tunnel.
  1. ជ្រើសរើស Save tunnel។
Ứng dụng và máy chủ DNS bây giờ được kết nối với Cloudflare.
The application and DNS server are now connected to Cloudflare.
កម្មវិធី និងម៉ាស៊ីនមេ DNS ឥឡូវនេះត្រូវបានភ្ជាប់ទៅ Cloudflare ។

Cho phép cách ly web không khách hàng Enable Clientless Web Isolation បើកដំណើរការ Cli ភាពឯកោបណ្តាញគ្មានទីបញ្ចប់

Phần «Enable Clientless Web Isolation» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Enable Clientless Web Isolation" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «បើកដំណើរការ Cli ភាពឯកោបណ្តាញគ្មានទីបញ្ចប់» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
  1. Trong Cloudflare One ↗, đi đến Browser isolation \> Browser isolation settings.
  2. Nhấp vào Allow users to open a remote browser without the device client
  3. Đối với Permissions, hãy chọn Manage.
  4. Chọn Add a rule
  5. Tạo một biểu thức xác định ai có thể mở trình duyệt Clientless Web Isolation. Ví dụ,
  1. In Cloudflare One ↗, go to Browser isolation \> Browser isolation settings.
  2. Turn on Allow users to open a remote browser without the device client.
  3. For Permissions, select Manage.
  4. Select Add a rule.
  5. Create an expression that defines who can open the Clientless Web Isolation browser. For example,
  1. នៅក្នុង Cloudflare One ↗ សូមចូលទៅកាន់ Browser isolation \> Browser settings.
  2. បើក អនុញ្ញាតឱ្យអ្នកប្រើប្រាស់បើកកម្មវិធីរុករកតាមអ៊ីនធឺណិតពីចម្ងាយដោយគ្មានឧបករណ៍ client។
  3. សម្រាប់ Permissions សូមជ្រើសរើស Manage។
  4. ជ្រើសរើស Add a rule។
  5. បង្កើតកន្សោមដែលកំណត់ថាអ្នកណាអាចបើកកម្មវិធីរុករក Clientless Web Isolation ។ ឧ.
| Rule action | Rule type | Selector | Value | Action | | ----------- | --------- | ---------------- | ------------ | ---------------- | | Allow | Include | Emails ending in | @example.com | Select Save. |
| Rule action | Rule type | Selector | Value | Action | | ----------- | --------- | ---------------- | ------------ | ---------------- | | Allow | Include | Emails ending in | @example.com | Select Save. |
| ក្បួនសកម្មភាព | ប្រភេទច្បាប់ | ជ្រើសរើស | តម្លៃ | សកម្មភាព | | ----------- | --------- | ---------------- | ------------ | ---------------- | | អនុញ្ញាត | រួមបញ្ចូល | អ៊ីមែលបញ្ចប់ដោយ | @example.com | ជ្រើសរើស Save។ |
Để kiểm tra, mở một trình duyệt và đi đến https://<team-name>.cloudflareaccess.com/browser/https://<private-IP-of-application>.
To test, open a browser and go to https://<team-name>.cloudflareaccess.com/browser/https://<private-IP-of-application>.
ដើម្បីសាកល្បង សូមបើកកម្មវិធីរុករកតាមអ៊ីនធឺណិត ហើយចូលទៅកាន់ https://<team-name>.cloudflareaccess.com/browser/https://<private-IP-of-application>

Tạo chính sách giải quyết Gateway Create a Gateway resolver policy បង្កើតគោលការណ៍អ្នកដោះស្រាយ Gateway

Phần «Tạo Gateway resolver policy» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Create a Gateway resolver policy" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «បង្កើតគោលការណ៍អ្នកដោះស្រាយ Gateway» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
  1. Đi đến Traffic policies \> Resolver policies.
  2. Chọn Add a policy
  3. Tạo một biểu thức để khớp với domain hoặc hostname riêng của ứng dụng:
  1. Go to Traffic policies \> Resolver policies.
  2. Select Add a policy.
  3. Create an expression to match against the private domain or hostname of the application:
  1. ចូលទៅកាន់ Traffic policies \> Resolver policies។
  2. ជ្រើសរើស Add a policy។
  3. បង្កើត​កន្សោម​ដើម្បី​ផ្គូផ្គង​នឹង​ឯកជន adomain href="https://developers.cloudflare.com/cloudflare-one/traffic-policies/resolver-policies/#host" class="link" target="_blank" rel="noopener noreferrer">ឈ្មោះម៉ាស៊ីន នៃកម្មវិធី៖
Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tùy chọn Tù
| Selector | Operator | Value | | -------- | -------- | ------------------ | | Domain | in | internalrecord.com |
| ជ្រើសរើស | ប្រតិបត្តិករ | តម្លៃ | | -------- | -------- | ------------------ | | ដែន | ក្នុង | internalrecord.com |
  1. Trong Select DNS resolver, chọn Configure custom DNS resolvers.
  2. Nhập địa chỉ riêng IP của máy chủ DNS của bạn.
  3. Trong menu thả xuống, chọn <IP-address> - Private.
  4. (Tùy chọn) Enter a custom port.
  5. Chọn Create policy
  1. In Select DNS resolver, select Configure custom DNS resolvers.
  2. Enter the private IP address of your DNS server.
  3. In the dropdown menu, select <IP-address> - Private.
  4. (Optional) Enter a custom port.
  5. Select Create policy.
  1. នៅក្នុង Select DNS resolver ជ្រើសរើស កំណត់រចនាសម្ព័ន្ធ DNS ផ្ទាល់ខ្លួន។
  2. បញ្ចូលអាសយដ្ឋាន IP ឯកជននៃម៉ាស៊ីនមេ DNS របស់អ្នក។
  3. នៅក្នុងម៉ឺនុយទម្លាក់ចុះ សូមជ្រើសរើស <IP-address> - Private។
  4. (ស្រេចចិត្ត) បញ្ចូលច្រកផ្ទាល់ខ្លួន។
  5. ជ្រើសរើស Create policy។
Để kiểm tra, mở một trình duyệt và đi đến https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com.
To test, open a browser and go to https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com.
ដើម្បីសាកល្បង សូមបើកកម្មវិធីរុករកតាមអ៊ីនធឺណិត ហើយចូលទៅកាន់ https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Kết nối với User Connect as a user ភ្ជាប់ជាអ្នកប្រើប្រាស់

Phần «Kết nối as user» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Connect as a user" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «ភ្ជាប់ជាអ្នកប្រើប្រាស់» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Người dùng bây giờ có thể access ứng dụng tại URL sau:
Users can now access the application at the following URL:
ឥឡូវនេះអ្នកប្រើប្រាស់អាច access កម្មវិធីនៅ URL ខាងក្រោម៖
https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com
https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com
https://<team-name>.cloudflareaccess.com/browser/https://internalrecord.com
Ứng dụng sẽ tải trong một trình duyệt cô lập. Bạn có thể tùy chọn configure remote browser controls chẳng hạn như vô hiệu hóa sao chép / dán, in, hoặc bàn phím input.
The application will load in an isolated browser. You can optionally configure remote browser controls such as disabling copy/paste, printing, or keyboard input.
json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"item":{"@id":"/directory/","name":"Directory"}},{"@type":"ListItem","position":2,"item":{"@id":"/cloudflare-one/","name":"Cloudflare One"}},{"@type":"ListItem","position":3,"item":{"@id":"/cloudflare-one/tutorials/","name":"Tutorials"}},{"@type":"ListItem","position":4,"item":{"@id":"/cloudflare-one/tutorials/clientless-access-private-dns/","name":"Access a web application via its private hostname without the Cloudflare One Client"}}]}

Xem bản đầy đủ trên developers.cloudflare.com (ảnh, tab cấu hình). View the full guide on developers.cloudflare.com (images, config tabs). មើលមគ្គុទ្ទេសក៍ពេញលើ developers.cloudflare.com (រូបភាព, tab កំណត់)។

Tài liệu gốc ↗ Official docs ↗ ឯកសារផ្លូវការ ↗