Tutorial Tutorial Tutorial Cloudflare One Cloudflare One Cloudflare One ~32 phút ~32 min ~32 នាទី Đồng bộ 2026-06-10 Synced 2026-06-10 ធ្វើសមកាល 2026-06-10

Phát triển Cloudflare One Client trên máy Linux không đầu Deploy the Cloudflare One Client on headless Linux machines ការផ្លាស់ប្តូរអតិថិជន Cloudflare One នៅលើម៉ាស៊ីន Linux មិនមែនជា headless

Hướng dẫn chi tiết đồng bộ từ docs Cloudflare — mỗi section có backlink tới đúng vị trí trên trang gốc. Detailed guide synced from Cloudflare docs — each section links to the matching anchor on the official page. មគ្គុទ្ទេសក៍លម្អិតធ្វើសមកាលពី docs Cloudflare — ផ្នែកនីមួយៗមានតំណទៅទីតាំងត្រូវគ្នានៅទំព័រផ្លូវការ។

← Danh mục ← Catalog ← បញ្ជី

Giải thích nhanh Quick context បរិបទរហ័ស

Thuộc Cloudflare One — Zero Trust, truy cập an toàn và kiểm soát traffic người dùng/thiết bị. Tutorial «Triển khai Cloudflare One Client on Linux headless machines» giúp bạn làm quen luồng triển khai thật — phù hợp đọc trước khi mở tài liệu gốc tiếng Anh. Docs gốc chia khoảng 4 bước chính; bản tóm tắt dưới đây giúp bạn nắm khung trước khi làm theo từng lệnh.

This tutorial explains how to deploy the Cloudflare One Client on headless Linux devices using a service token and an installation script.

វគ្គបណ្តុះបណ្តាលនេះបង្ហាញពីរបៀបដំឡើងអតិថិជន Cloudflare One នៅលើឧបករណ៍ Linux ដែលមិនមានក្បាលដោយប្រើគណនីសេវាកម្មនិងគណនីដំឡើង។

Lưu ý Note ចំណាំ

Lưu ý trước khi làm Notes before you start ចំណាំមុនពេលចាប់ផ្តើម

  • Đây là bản tóm tắt trên Orange Cloud Learning Hub — không thay thế tài liệu chính thức.
  • Luôn mở liên kết «Tài liệu gốc» bên dưới khi cần lệnh CLI, snippet code và ảnh minh họa đầy đủ.
  • Zero Trust thường cần quyền admin trên tenant Cloudflare One và IdP đã kết nối.
  • Docs Cloudflare cập nhật thường xuyên — đối chiếu ngày «Rà soát lần cuối» trên trang gốc khi triển khai production.
  • This is a summary on Orange Cloud Learning Hub — it does not replace the official documentation.
  • Open the Official docs link below for CLI commands, code snippets, and full screenshots.
  • Zero Trust typically requires Cloudflare One tenant admin access and a connected IdP.
  • Cloudflare docs change frequently — verify the Last reviewed date on the official page before production use.
  • នេះគឺជាការបញ្ជាក់អំពី Orange Cloud Learning Hub — វាគឺជាការផ្លាស់ប្តូរនៃឯកសារផ្លូវការ។
  • ចុចតំណភ្ជាប់ Docs Official នៅខាងក្រោមសម្រាប់ការបញ្ជា CLI, សៀវភៅកូដនិងរូបថតពេញលេញ។
  • Zero Trust ជាទូទៅតម្រូវការ Cloudflare One អ្នកគ្រប់គ្រងហិរញ្ញវត្ថុ access និង IdP ។
  • Cloudflare បានផ្លាស់ប្តូរជាធម្មតានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅពេលវេលានៅ។

Tài liệu gốc — rà soát lần cuối: 9 months ago Official docs — last reviewed: 9 months ago ឯកសារផ្លូវការ — ពិនិត្យចុងក្រោយ: 9 months ago

Overview Overview Overview

Tutorial này hướng dẫn cách deploy the Cloudflare One Client on Linux devices using a service token and an installation script. This deployment workflow is designed for headless servers - that is, servers which do not have access to a browser for identity provider logins - and…

Read the "Overview" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «Overview» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Hướng dẫn này giải thích cách triển khai Cloudflare One Client trên các thiết bị Linux bằng cách sử dụng token dịch vụ và kịch bản cài đặt. Dòng công việc triển khai này được thiết kế cho các máy chủ không có đầu - đó là, các máy chủ không có access cho trình duyệt để đăng nhập nhà cung cấp danh tính - và cho các tình huống mà bạn muốn tự động hóa hoàn toàn quá trình đăng nhập. Bởi vì các thiết bị sẽ không đăng ký thông qua nhà cung cấp danh tính, identity-based policies và đăng nhập sẽ không sẵn dùng.
This tutorial explains how to deploy the Cloudflare One Client on Linux devices using a service token and an installation script. This deployment workflow is designed for headless servers - that is, servers which do not have access to a browser for identity provider logins - and for situations where you want to fully automate the onboarding process. Because devices will not register through an identity provider, identity-based policies and logging will be unavailable.
វគ្គបណ្តុះបណ្តាលនេះបង្ហាញពីរបៀបធ្វើការដំឡើង Cloudflare One Client នៅលើឧបករណ៍ Linux ដោយប្រើ token សេវាកម្មនិងសៀវភៅដំឡើង។ ការដំណើរការដំណើរការដំឡើងនេះត្រូវបានរចនាឡើងសម្រាប់សេវាកម្មដែលមិនមានកម្រិតខ្ពស់ - ដូច្នេះជាសេវាកម្មដែលមិនមាន access ទៅលើបណ្តាញសម្រាប់ការចុះឈ្មោះក្រុមហ៊ុនផ្គត់ផ្គង់អ៊ីនធឺណិត - និងសម្រាប់ស្ថានភាពដែលអ្នកចង់ដោយស្វ័យប្រវត្តិគ្រប់គ្រាន់ដំណើរការចូល។ ដោយសារតែឧបករណ៍នេះនឹងមិនបានចុះឈ្មោះតាមរយៈអ្នកផ្គត់ផ្គង់អ៊ីនធឺណិត, identity-based policies និងការចុះឈ្មោះនឹងមិនអាចរកបាន។
Hướng dẫn này tập trung vào việc triển khai Cloudflare One Client như một đại lý thiết bị điểm cuối. Nếu bạn đang tìm cách triển khai Cloudflare One Client dưới dạng gateway vào một mạng riêng, hãy tham khảo Cloudflare Mesh documentation.
This tutorial focuses on deploying the Cloudflare One Client as an endpoint device agent. If you are looking to deploy the Cloudflare One Client as a gateway to a private network, refer to the Cloudflare Mesh documentation.
វគ្គបណ្តុះបណ្តាលនេះផ្តោតលើការផ្លាស់ប្តូរ Cloudflare One Client ជាមធ្យមឧបករណ៍ endpoint ។ ប្រសិនបើអ្នកកំពុងស្វែងរកការដំឡើងអតិថិជន Cloudflare One ដូចជា gateway ទៅលើបណ្តាញឯកជន, សូមមើល Cloudflare Mesh documentation ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Điều kiện Prerequisites គោលបំណង

Phần «Yêu cầu trước» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "Prerequisites" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «គោលបំណង» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

1.Điều Tạo token dịch vụ 1. Create a service token 1 ។ ការបង្កើតសេវាកម្ម Token

Phần «Tạo service token» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "1. Create a service token" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «1 ។ ការបង្កើតសេវាកម្ម Token» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Việc triển khai hoàn toàn tự động dựa vào một token dịch vụ để đăng ký khách hàng Cloudflare One trong tổ chức Zero Trust của bạn. Bạn có thể sử dụng cùng một token để đăng ký nhiều thiết bị, hoặc tạo một token duy nhất cho mỗi thiết bị nếu họ yêu cầu device profile settings khác nhau.
Fully automated deployments rely on a service token to enroll the Cloudflare One Client in your Zero Trust organization. You can use the same token to enroll multiple devices, or generate a unique token per device if they require different device profile settings.
ការផ្លាស់ប្តូរដោយស្វ័យប្រវត្តិដោយឥតគិតថ្លៃដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃផ្លាស់ប្តូរដោយឥតគិតថ្លៃ អ្នកអាចប្រើ token មួយដើម្បីចុះឈ្មោះឧបករណ៍ជាច្រើនឬបង្កើត token មួយសម្រាប់ឧបករណ៍មួយដែលត្រូវការ device profile settings ផ្សេងៗ។
Để tạo token dịch vụ:
To create a service token:
ដើម្បីបង្កើត token សេវាកម្ម:
  1. Trong Cloudflare dashboard ↗, đi đến Zero Trust & > Access controls > Service credentials > Service Tokens.
  2. Chọn Create Service Token
  3. Tên của token dịch vụ Tên cho phép bạn dễ dàng xác định các sự kiện liên quan đến token trong nhật ký và thu hồi token riêng lẻ.
  4. Chọn Service Token Duration Điều này đặt ngày hết hạn cho token.
  5. Chọn Generate token Bạn sẽ thấy Client ID và Client Secret được tạo cho token dịch vụ, cũng như tiêu đề yêu cầu tương ứng của họ.
  6. Sao chép khách hàng bí mật.
  1. In the Cloudflare dashboard ↗, go to Zero Trust \> Access controls \> Service credentials \> Service Tokens.
  2. Select Create Service Token.
  3. Name the service token. The name allows you to easily identify events related to the token in the logs and to revoke the token individually.
  4. Choose a Service Token Duration. This sets the expiration date for the token.
  5. Select Generate token. You will see the generated Client ID and Client Secret for the service token, as well as their respective request headers.
  6. Copy the Client Secret.
  1. ក្នុង Cloudflare dashboard ↗ សូមចូលទៅទៅ Zero Trust \> Access controls \> Service credentials \> Service Tokens ។
  2. សូមជ្រើស Create Service Token ។
  3. ប្រព័ន្ធ ប្រតិបត្តិការ Token ឈ្មោះនេះអនុញ្ញាតឱ្យអ្នករកឃើញយ៉ាងងាយស្រួលប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនបើប្រសិនប
  4. សូមជ្រើស Service Token Duration ។ នេះបានកំណត់ពេលវេលានៃការបញ្ចប់នៃ token នេះ។
  5. សូមជ្រើស Generate token ។ អ្នកនឹងមើល ID Client និង Client Secret ដែលត្រូវបានបង្កើតឡើងសម្រាប់គណនីសេវាកម្មដូចជាគណនីកំណត់តម្រូវការរបស់ពួកគេ។
  6. ចម្លងទិន្នន័យរបស់អតិថិជន។
Cảnh báo Đây là lần duy nhất Cloudflare Access sẽ hiển thị Client Secret. Nếu bạn mất Client Secret, bạn phải tạo token dịch vụ mới.
Warning This is the only time Cloudflare Access will display the Client Secret. If you lose the Client Secret, you must generate a new service token.
នេះគឺជាពេលតែមួយ Cloudflare Access ដែលនឹងបង្ហាញគំនិតអាសយដ្ឋានអតិថិជន។ ប្រសិនបើអ្នកបាត់បង់គោលបំណងអតិថិជនអ្នកត្រូវបង្កើតគោលបំណងសេវាកម្មថ្មី។
  1. Thực hiện yêu cầu POST đến điểm cuối Access Service Tokens:
  1. Make a POST request to the Access Service Tokens endpoint:
  1. សូមធ្វើតេស្ត POST ទៅ Access Service Tokens ។
Yêu cầu quyền token API Ít nhất một trong các token permissions sau đây là cần thiết: * Access: Service Tokens Write Tạo token dịch vụ
Required API token permissions At least one of the following token permissionsis required: * Access: Service Tokens Write Create a service token
Required API token permissions At least one of the following token permissionsis required: * Access: Service Tokens Write Create a service token
text
curl "https://api.cloudflare.com/client/v4/accounts/$ACCOUNT_ID/access/service_tokens" \  
  --request POST \  
  --header "Authorization: Bearer $CLOUDFLARE_API_TOKEN" \  
  --json '{  
    "name": "CI/CD token",  
    "duration": "8760h"  
  }'
  1. Sao chép các giá trị client<em>id và client</em>secret trả về trong câu trả lời.
  1. Copy the client<em>id and client</em>secret values returned in the response.
  1. ចម្លងតម្លៃ client<em>id និង client</em>secret ដែលបានបង្ហាញនៅក្នុងការឆ្លើយតប។
Response
Response
Response
text
"result": {  
  "client_id": "88bf3b6d86161464f6509f7219099e57.access",  
  "client_secret": "bdd31cbc4dec990953e39163fbbb194c93313ca9f0a6e420346af9d326b1d2a5",  
  "created_at": "2025-09-25T22:26:26Z",  
  "expires_at": "2026-09-25T22:26:26Z",  
  "id": "3537a672-e4d8-4d89-aab9-26cb622918a1",  
  "name": "CI/CD token",  
  "updated_at": "2025-09-25T22:26:26Z",  
  "duration": "8760h",  
  "client_secret_version": 1  
}
Cảnh báo Đây là lần duy nhất Cloudflare Access sẽ hiển thị Client Secret. Nếu bạn mất Client Secret, bạn phải tạo token dịch vụ mới.
Warning This is the only time Cloudflare Access will display the Client Secret. If you lose the Client Secret, you must generate a new service token.
នេះគឺជាពេលតែមួយ Cloudflare Access ដែលនឹងបង្ហាញគំនិតអាសយដ្ឋានអតិថិជន។ ប្រសិនបើអ្នកបាត់បង់គោលបំណងអតិថិជនអ្នកត្រូវបង្កើតគោលបំណងសេវាកម្មថ្មី។
  1. Thêm quyền sau vào cloudflare\api\token ↗ của bạn:
  1. Add the following permission to your cloudflare\api\token ↗:
  1. បន្ថែមអនុញ្ញាតដូចខាងក្រោមទៅ cloudflare\api\token ↗ របស់អ្នក:
Lời bài hát: Access: Service Tokens Write
* Access: Service Tokens Write
* Access: Service Tokens Write
  1. Cấu hình tài nguyên cloudflare\zero\trust\access\service\_token ↗:
  1. Configure the cloudflare\zero\trust\access\service\_token ↗ resource:
  1. សូមបញ្ជាក់អំពី cloudflare\zero\trust\access\service\_token ↗:
text
resource "cloudflare_zero_trust_access_service_token" "example_service_token" {  
  account_id = var.cloudflare_account_id  
  name       = "Example service token"  
  duration  = "8760h"  
  lifecycle {  
    create_before_destroy = true  
  }  
}
  1. Nhận Client ID và Client Secret của token dịch vụ:
  1. Get the Client ID and Client Secret of the service token:
  1. ទាញយក ID កុំព្យូទ័រ និង Client Secret នៃ token សេវាកម្ម:
Ví dụ: Đầu ra đến CLI 1. Nhập ID Client và Client Secret vào tệp trạng thái Terraform: `` output "example<em>service</em>token<em>client</em>id" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>id } output "example<em>service</em>token<em>client</em>secret" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>secret sensitive = true } ` 2. Apply the configuration: Terminal window ` terraform apply ` 3. Read the Client ID and Client Secret: Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>id ` Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>secret `` Ví dụ: Lưu trữ trong Khay HashiCorp
Example: Output to CLI 1. Output the Client ID and Client Secret to the Terraform state file: `` output "example<em>service</em>token<em>client</em>id" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>id } output "example<em>service</em>token<em>client</em>secret" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>secret sensitive = true } ` 2. Apply the configuration: Terminal window ` terraform apply ` 3. Read the Client ID and Client Secret: Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>id ` Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>secret `` Example: Store in HashiCorp Vault
Example: Output to CLI 1. Output the Client ID and Client Secret to the Terraform state file: `` output "example<em>service</em>token<em>client</em>id" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>id } output "example<em>service</em>token<em>client</em>secret" { value = cloudflare<em>zero</em>trust<em>access</em>service<em>token.example</em>service<em>token.client</em>secret sensitive = true } ` 2. Apply the configuration: Terminal window ` terraform apply ` 3. Read the Client ID and Client Secret: Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>id ` Terminal window ` terraform output -raw example<em>service</em>token<em>client</em>secret `` Example: Store in HashiCorp Vault
text
resource "vault_generic_secret" "example_service_token" {  
    path         = "kv/cloudflare/example_service_token"  
    data_json = jsonencode({  
      "CLIENT_ID"     = cloudflare_access_service_token.example_service_token.client_id  
      "CLIENT_SECRET" = cloudflare_access_service_token.example_service_token.client_secret  
    })  
  }

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

2.Đối với Configure device enrollment permissions (Cấu hình thiết bị đăng nhập quyền) 2. Configure device enrollment permissions 2 ។ ការបញ្ជាទិន្នន័យនៃការបញ្ជាទិន្នន័យ

Phần «Cấu hình device enrollment permissions» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "2. Configure device enrollment permissions" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «2 ។ ការបញ្ជាទិន្នន័យនៃការបញ្ជាទិន្នន័យ» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Quyền đăng ký thiết bị xác định những người dùng và thiết bị có thể đăng ký WARP với tổ chức Zero Trust của bạn.
Device enrollment permissions determine the users and devices that can register WARP with your Zero Trust organization.
ការអនុញ្ញាតការចុះឈ្មោះឧបករណ៍អនុញ្ញាតឱ្យអ្នកប្រើប្រាស់និងឧបករណ៍ដែលអាចចុះឈ្មោះ WARP ជាមួយ Zero Trust របស់អ្នក។
Để cho phép các thiết bị đăng ký bằng cách sử dụng token dịch vụ:
To allow devices to enroll using a service token:
ដើម្បីអនុញ្ញាតឱ្យឧបករណ៍បានចុះឈ្មោះដោយប្រើ token សេវា:
  1. Trong Cloudflare dashboard ↗, đi đến Zero Trust \> Team & Resources \> Devices. Chọn tab Management
  2. Trong Device enrollment permissions, hãy chọn Manage.
  3. Trong tab Policies, chọn Create new policy. Một tab mới sẽ mở ra với trang tạo chính sách.
  4. Đối với Action, hãy chọn Service Auth.
  5. Đối với trường Selector, bạn có hai tùy chọn: bạn có thể cho phép tất cả các token dịch vụ (Any Access Service Token) hoặc các token dịch vụ cụ thể (Service Token). Ví dụ:
  1. In the Cloudflare dashboard ↗, go to Zero Trust \> Team & Resources \> Devices. Select the Management tab.
  2. In Device enrollment permissions, select Manage.
  3. In the Policies tab, select Create new policy. A new tab will open with the policy creation page.
  4. For Action, select Service Auth.
  5. For the Selector field, you have two options: you can either allow all service tokens (Any Access Service Token) or specific service tokens (Service Token). For example:
  1. ក្នុង Cloudflare dashboard ↗ សូមចូលទៅទៅ Zero Trust \> Team & Resources \> Devices ។ សូមចុច Management ។
  2. នៅលើ Device enrollment permissions ចុច Manage ។
  3. នៅលើបណ្តាញ Policies ចុច Create new policy ។ ស្លាកថ្មីនឹងបើកជាមួយនឹងទំព័របង្កើតគោលការណ៍។
  4. សម្រាប់ Action ចុច សេវាកម្ម Auth ។
  5. សម្រាប់ឧបករណ៍ Selector អ្នកមានបំណងពីរដង: អ្នកអាចអនុញ្ញាតបច្ចេកទេសសេវាកម្មទាំងអស់ (Any Access Service Token) ឬបច្ចេកទេសសេវាកម្មពិសេស (Service Token) ។ ឧទាហរណ៍ :
Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng Bảng xếp hạng
| Rule Action | Rule type | Selector | Value | | ------------ | --------- | ------------- | ------------ | | Service Auth | Include | Service Token | <TOKEN-NAME> |
សៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅសៀវភៅ
  1. Tiết kiệm chính sách
  2. Quay trở lại Device enrollment permissions và thêm chính sách mới được tạo vào quyền của bạn.
  3. Chọn Save
  1. Save the policy.
  2. Go back to Device enrollment permissions and add the newly created policy to your permissions.
  3. Select Save.
  1. រក្សាទុកគោលនយោបាយ
  2. សូមផ្លាស់ប្តូរទៅ Device enrollment permissions និងបន្ថែមគោលនយោបាយដែលបានបង្កើតថ្មីទៅនឹងការអនុញ្ញាតរបស់អ្នក។
  3. សូមជ្រើស Save ។

3 Cái Tạo script cài đặt 3. Create an installation script 3 ។ ការបង្កើតកម្មវិធីដំឡើង

Phần «Tạo installation script» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "3. Create an installation script" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «3 ។ ការបង្កើតកម្មវិធីដំឡើង» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Bạn có thể sử dụng một kịch bản shell để tự động hóa cài đặt và đăng ký WARP. Ví dụ sau đây cho thấy cách triển khai Cloudflare One Client trên Ubuntu 24.04.
You can use a shell script to automate WARP installation and registration. The following example shows how to deploy the Cloudflare One Client on Ubuntu 24.04.
អ្នកអាចប្រើ scripts shell ដើម្បីស្វ័យប្រវត្តិការដំឡើងនិងការចុះឈ្មោះ WARP ។ ឧទាហរណ៍ខាងក្រោមនេះបង្ហាញពីរបៀបដំឡើងអតិថិជន Cloudflare One នៅលើ Ubuntu 24.04.
  1. Trong một thiết bị đầu cuối, tạo một tập tin .sh mới bằng cách sử dụng một trình soạn thảo văn bản. Ví dụ:
  1. In a terminal, create a new .sh file using a text editor. For example:
  1. ក្នុងកំណត់ដំណោះស្រាយ, បង្កើតឯកសារ .sh ថ្មីដោយប្រើកម្មវិធីកំណត់ដំណោះស្រាយ។ ឧទាហរណ៍ :
Cửa sổ Terminal
Terminal window
បង្វិល Terminal
text
vim install_warp.sh
  1. Nhấn i để nhập chế độ chèn và thêm các dòng sau:
  1. Press i to enter insert mode and add the following lines:
  1. ចុច i ដើម្បីចូលដំណើរការ Insert Mode និងបន្ថែមបន្ទាត់ដូចខាងក្រោម:
text
#!/bin/bash  
set -e  
# Download and install the Cloudflare One Client  
function warp() {  
    curl -fsSL https://pkg.cloudflareclient.com/pubkey.gpg | sudo gpg --yes --dearmor --output /usr/share/keyrings/cloudflare-warp-archive-keyring.gpg  
    echo "deb [signed-by=/usr/share/keyrings/cloudflare-warp-archive-keyring.gpg] https://pkg.cloudflareclient.com/ $(lsb_release -cs) main" | sudo tee /etc/apt/sources.list.d/cloudflare-client.list  
    sudo apt-get update --assume-yes  
    sudo apt-get install --assume-yes cloudflare-warp  
}  
# Create an MDM file with your Cloudflare One Client deployment parameters  
function mdm() {  
  sudo touch /var/lib/cloudflare-warp/mdm.xml  
  cat > /var/lib/cloudflare-warp/mdm.xml << "EOF"  
<dict>  
    <key>auth_client_id</key>  
    <string>88bf3b6d86161464f6509f7219099e57.access</string>  
    <key>auth_client_secret</key>  
    <string>bdd31cbc4dec990953e39163fbbb194c93313ca9f0a6e420346af9d326b1d2a5</string>  
    <key>auto_connect</key>  
    <integer>1</integer>  
    <key>onboarding</key>  
    <false/>  
    <key>organization</key>  
    <string>your-team-name</string>  
    <key>service_mode</key>  
    <string>warp</string>  
</dict>  
EOF  
}  
#main program  
warp  
mdm
  1. Nếu bạn đang sử dụng Debian hoặc RHEL / CentOS, hãy sửa đổi chức năng warp() để nó cài đặt WARP package ↗ chính xác cho hệ điều hành của bạn.
  2. Thay đổi các giá trị trong hàm mdm():
  1. If you are using Debian or RHEL / CentOS, modify the warp() function so that it installs the correct WARP package ↗ for your OS.
  2. Modify the values in the mdm() function:
  1. ប្រសិនបើអ្នកកំពុងប្រើ Debian ឬ RHEL / CentOS, ធ្វើការ warp() ដើម្បីដំឡើង WARP package ↗ សម្រាប់ប្រព័ន្ធប្រតិបត្តិការរបស់អ្នក។
  2. ការផ្លាស់ប្តូរគុណសម្បត្តិនៅក្នុងគោលបំណង mdm():
1.Điều Đối với auth<em>client</em>id và auth<em>client</em>secret, thay thế các giá trị chuỗi bằng Client ID và Client Secret của service token. 2.Đối với Đối với organization, thay thế your-team-name bằng tên nhóm của bạn Zero Trust. 3 Cái (Tùy chọn) Thêm hoặc sửa đổi Cloudflare One Client deployment parameters khác theo sở thích của bạn.
1. For auth<em>client</em>id and auth<em>client</em>secret, replace the string values with the Client ID and Client Secret of your service token. 2. For organization, replace your-team-name with your Zero Trust team name. 3. (Optional) Add or modify other Cloudflare One Client deployment parameters according to your preferences.
1 ។ សម្រាប់ auth<em>client</em>id និង auth<em>client</em>secret, ការផ្លាស់ប្តូរគុណសម្បត្តិ string ដោយ ID Client និង Client Secret នៃ service token របស់អ្នក។ 2 ។ សម្រាប់ organization សូមផ្លាស់ប្តូរ your-team-name ជាមួយ Zero Trust ឈ្មោះក្រុមរបស់អ្នក។ 3 ។ (តម្រូវការ) Add or modify other Cloudflare One Client deployment parameters according to your preferences ។
  1. Nhấn esc, sau đó nhập :x và nhấn Enter để lưu và thoát.
  1. Press esc, then type :x and press Enter to save and exit.
  1. ចុច esc បន្ទាប់មកចុច :x និងចុច Enter ដើម្បីរក្សាទុកនិងចេញ។

Liên kết liên quan (docs Cloudflare) Related links (Cloudflare docs) តំណពាក់ព័ន្ធ (docs Cloudflare)

Bốn Cài đặt WARP 4. Install WARP 4 ។ ទាញយក Warp

Phần «Cài đặt WARP» — đọc hướng dẫn bên dưới, dùng liên kết docs gốc để xem ảnh minh họa và tab cấu hình đầy đủ.

Read the "4. Install WARP" section below — open the official docs link for full screenshots and configuration tabs.

អានផ្នែក «4 ។ ទាញយក Warp» ខាងក្រោម — បើកតំណ docs ផ្លូវការសម្រាប់រូបភាព និង tab កំណត់។

Mở section docs gốc ↗ Open source section ↗ បើកផ្នែក docs ផ្លូវការ ↗
Để cài đặt Cloudflare One Client bằng cách sử dụng ví dụ kịch bản:
To install the Cloudflare One Client using the example script:
ដើម្បីដំឡើងអតិថិជន Cloudflare One ដោយប្រើឧទាហរណ៍សៀវភៅ:
  1. Làm cho kịch bản có thể thực hiện:
  1. Make the script executable:
  1. សូមធ្វើឱ្យប្រព័ន្ធប្រតិបត្តិការនេះអាចអនុវត្តបាន:
Cửa sổ Terminal
Terminal window
បង្វិល Terminal
text
chmod +x install_warp.sh
  1. Chạy kịch bản:
  1. Run the script:
  1. ធ្វើការសៀវភៅនេះ:
Cửa sổ Terminal
Terminal window
បង្វិល Terminal
text
sudo ./install_warp.sh
Khách hàng Cloudflare One bây giờ được triển khai với các thông số cấu hình được lưu trữ trong /var/lib/cloudflare-warp/mdm.xml. Giả sử auto\connect được cấu hình, máy khách Cloudflare One sẽ tự động kết nối với tổ chức Zero Trust của bạn. Sau khi kết nối, thiết bị sẽ xuất hiện trong Cloudflare dashboard ↗ dưới Zero Trust \> Team & Resources \> Devices với email non</em>identity@<team-name>.cloudflareaccess.com.
The Cloudflare One Client is now deployed with the configuration parameters stored in /var/lib/cloudflare-warp/mdm.xml. Assuming auto\connect is configured, the Cloudflare One Client will automatically connect to your Zero Trust organization. Once connected, the device will appear in the Cloudflare dashboard ↗ under Zero Trust \> Team & Resources \> Devices with the email non</em>identity@<team-name>.cloudflareaccess.com.
កុំព្យូទ័រ Cloudflare One ឥឡូវនេះត្រូវបានដំឡើងជាមួយនឹងទំហំកំណត់កំណត់ដែលត្រូវបានរក្សាទុកនៅក្នុង /var/lib/cloudflare-warp/mdm.xml ។ ប្រសិនបើ auto\connect គឺបានកំណត់, កម្មវិធីអតិថិជន Cloudflare One នឹងបណ្តាញដោយស្វ័យប្រវត្តិជាមួយក្រុមហ៊ុនរបស់អ្នក Zero Trust ។ នៅពេលដែលឧបករណ៍នេះត្រូវបានបង្ហាញនៅក្នុង Cloudflare dashboard ↗ នៅក្រោម Zero Trust \> Team & Resources \> Devices ជាមួយនឹងអ៊ីម៉ែល non</em>identity@<team-name>.cloudflareaccess.com ។
json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"item":{"@id":"/directory/","name":"Directory"}},{"@type":"ListItem","position":2,"item":{"@id":"/cloudflare-one/","name":"Cloudflare One"}},{"@type":"ListItem","position":3,"item":{"@id":"/cloudflare-one/tutorials/","name":"Tutorials"}},{"@type":"ListItem","position":4,"item":{"@id":"/cloudflare-one/tutorials/deploy-client-headless-linux/","name":"Deploy the Cloudflare One Client on headless Linux machines"}}]}

Xem bản đầy đủ trên developers.cloudflare.com (ảnh, tab cấu hình). View the full guide on developers.cloudflare.com (images, config tabs). មើលមគ្គុទ្ទេសក៍ពេញលើ developers.cloudflare.com (រូបភាព, tab កំណត់)។

Tài liệu gốc ↗ Official docs ↗ ឯកសារផ្លូវការ ↗