Cloudflare Quick Tunnels

697 points - yesterday at 2:18 PM

Source

Comments

TIPSIO yesterday at 4:49 PM
My wife and I have a mobile group/shared bot system where we can make mini apps and collab.

Anything from baby stuff, groceries, shopping, planning, wine tracker app, simple/fun/useful data things, etc…

We have Tailscale on our phones and can instantly and privately see without deployment or anything crazy via our secure VPN.

Think shared Claude Artifacts that don’t live @ Anthropic.

Tried to first do this with Cloudflare Tunnels (because I love Cloudflare), but between the broken dashboard side of Zero Trust and nightmare of Warp… it was basically impossible to setup. I guess that’s all super enterprise, which seems to be very anti-Cloudflare philosophically to not be able to self do things.

Will check out Quick Tunnels but I think it’s missing the bigger integration offerings Tailscale has/does still.

noname120 yesterday at 10:41 PM
Cloudflare Quick Tunnels have existed for more than 5 years (yes, including the anonymous quick tunnels). I copy-pasted the url of the HN link in archive.org, see for yourself: https://web.archive.org/web/20211202005430/http://try.cloudf...

Is a new vibe-coded landing page for a 5-year old product really worthy of being on the front page nowadays? There should at least be a [2021] in the title.

cbsmith today at 9:04 AM
[delayed]
adamfeldman yesterday at 5:04 PM
Cloudflare doesn't really seem to care about their tunnel product. "cloudflared service install broken on macOS" since 2021: https://github.com/cloudflare/cloudflared/issues/327
rplnt yesterday at 3:55 PM
Are we in an age where no one even bothers to open the product pages they generate? The first subtitle with the font color almost matching the background. Or it's even worse that a human looked at it and said "yep, that's OK"?
skhameneh yesterday at 5:21 PM
There's a number of comments already about how this page looks vibe coded, I'd add that I'm actually shocked at how much this looks like the output of a one-shot prompt. It's not so much that an LLM was used, but a callout on just how generic this page is. How much iteration went into this? At surface it looks like nearly no iteration.

Edit: Well, they just re-vibed it. Went from the most generic Claude 4.6 era to today’s models, quality wise. I wish I had saved a copy of the original, because it would have taken me actual solid effort to make a page that generic out of an LLM.

kincl yesterday at 3:19 PM
Is this their version of https://tailscale.com/tailcat ? I can't tell if you need to auth

edit: yeah, it says no account creation, neat!

israrkhan yesterday at 3:58 PM
For someone looking for an opensource solutions, following is an awesome resource for tunnelling

https://github.com/anderspitman/awesome-tunneling

I have played around with frp, bore and ngrok.

aliasxneo yesterday at 3:21 PM
Tunneling was something that recently fell out of the work I've been doing [1]. I've used Cloudflare Tunnels before but I just have low trust with them recently with how big they are getting. All of these nice things come at the cost of pushing _a lot_ of traffic through their systems.

[1]: https://dntls.substack.com/p/the-new-internet

ghoshbishakh yesterday at 6:22 PM
This is a very good solution for HTTP(S) tunneling - which is the most frequently needed tunnel. However if you want to play a game, or use SSH, then Pinggy tunnels are very simple to use. One command:

ssh -p 443 -R0:localhost:443 tcp@free.pinggy.io

Disclosure: Co-founder of pinggy.io here.

Edit: I meant TCP tunnels, UDP tunnels, or also TLS tunnels for end-to-end encryption.

dangoodmanUT yesterday at 3:16 PM
Historically, we’ve found that their tunnels have really high latency variance. For example something that’s normally 30-50ms to ec2 is now 115ms-750ms
mgw yesterday at 5:49 PM
Can anyone elaborate on what's new? This exact product has existed from Cloudflare for years. Is it just that they added a new marketing site for it?
infogulch yesterday at 5:25 PM
I made my own tunnel system with a $5/mo vps that runs kernel wireguard and accepts my nas' public key. Once connected it DNATs 80/443 traffic down the tunnel to the nas, where its routed to caddy.

The vps runs a custom image that is 2.54 Megabytes. It has a custom kernel with almost everything but networking and wireguard disabled, a fixed-size fs with pre-allocated blocks and inodes to hold the vps wireguard key, and a single pid 1 binary that calls the kernel directly to set up the routing rules, generate a new wireguard key on first boot and save it to the fs, print out the wireguard public key to the console, and loops reap. Updating involves building and uploading a new image, assigning the vps to use it, reboot, wait for the public key in the console then set it on the nas so they can talk.

reddec today at 2:40 AM
I have been developing for my own use something like that but self hosted. There are other solutions, but this one simple, reliable and secure in a way I see it.

Originally didn't want to share but here it is https://github.com/reddec/tunnel-me

UI: fully LLM assisted (not vibe coded, but guided with a lot of iterations). Backend: hand written, but before release polished via LLM. Docs: me - input, LLM - output.

The things I am proud:

- it very reliable

- its single binary with reasonable defaults and low memory usage

- SSO out of the box (cause I am using pocketid in my homelab)

- very simple backend

partloyaldemon yesterday at 6:17 PM
Tailscale is one of the most profoundly useful technologies I’ve ever used as small business person. It’s also one I would have never thought to invent despite feeling its lack daily.
whizzter yesterday at 3:23 PM
Don't all these free proxy services always fall prey to blacklists because scammers,etc abuse them until they're useless?
himata4113 yesterday at 3:42 PM
This has existed for a long time and has been abused by quite a few people. I've seen some cc nodes using a random known cloudflare site and spoofing hostname to a temporary cloudflare site. IMO this should require a login at bare minimum.
cliftonc today at 5:07 AM
I use this a lot, but find it a bit hard to manage if you want a persistent tunnel locally to use for dev (e.g. webhooks etc), so I added a wrapper around it that you can easily use: https://github.com/cliftonc/cfld
inconshreveable yesterday at 8:20 PM
hi y'all, ngrok creator/founder here.

we removed anonymous usage of our product many years ago because it was far and away the largest source of abuse on our entire platform.

i believe at this point that that anonymous, account-less tunneling services like this are net negative for the security of the internet

happy to answer any questions from the community

yuchi yesterday at 6:24 PM
I still remember when ngrok came out. The experience was more or less the same.

It’s interesting that 10 (more?) years later the product has not evolved and, apparently, hasn’t found a way to finance itself without removing the pure free tunneling option.

afisxisto yesterday at 4:53 PM
I quite like pinggy for this. You don't need to install anything, since it uses a plain SSH tunnel.

ssh -p 443 -R0:localhost:9051 free.pinggy.io

(Free for 1h each session)

Narciss yesterday at 3:34 PM
My AI discovered this days ago when I wanted to deploy a new vibe coded website (it was to keep score while playing whist and rentz)

Thought it was very cool

itvision today at 7:09 AM
The RAM pricing crisis is doing wonders to the software industry. Amazing.
rock_artist yesterday at 5:08 PM
What's surprised me, just earlier today I let Codex write a minor PR for simple open-source webapp. I needed HTTPS for testing secured context Web API. (Web Bluetooth)

While testing it locally Codex by itself suggests using CF Tunnels but what's more interesting it actually used the Quick Tunnels.

Coming from days where I get warnings of vibe-coded generated code using deprecated code or older APIs, I must say using something so fresh is quite impressive.

opengrass yesterday at 9:04 PM
This is my docker compose for sharing files with randoms online https://pastebin.com/raw/cYV7ksw9

Don't pass -d, your tunnel URL prints in the console and you can download dirs as tarball.

pocksuppet yesterday at 7:54 PM
This is obviously vibe written, and I can't wait to see how quickly it will be shut down after someone uses it in combination with Mullvad to host child pornography.

Mullvad themselves already turned off port forwarding because people were using it to host child pornography. This is like Mullvad's port forwarding, but free.

girvo yesterday at 9:59 PM
This is super neat! I rely on normal Cloudflare Tunnels for my self-hosted website/web apps, works shockingly well all things considered.

It was pretty easy to setup… but I cheated, and use Dokploy which handled most of it AFAICT

Nevin1901 today at 2:47 AM
Cloudflare tunnels are really useful when dealing with webhooks. Way better than Ngrok and you can set it up on a custom subdomain you own. eg: site.yourdomain.com
JV00 yesterday at 3:24 PM
Does this have a more generous allowance than ngrok? From what I can read no limits are mentioned
everybodyknows yesterday at 5:08 PM
The page is a fine exemplar of marketing deception. Banner says:

> Free, secure tunnel for everything you are building.

> Preview and ship ideas globally in seconds with Quick Tunnels. Deploy your local application to the Internet with a single command.

Clicking through Explore Cloudflare Tunnel leads us to:

> Looking to expose public applications? This documentation covers Cloudflare Tunnel use cases for private networking and Zero Trust, like VPN replacement and private network access. For publishing public web applications, APIs, and services to the Internet through Cloudflare refer to ...

_pdp_ yesterday at 4:43 PM
It will be nice if it had persistent URLs and and SDK for desktop applications. It could solve a lot of small issues for a project I am currently busy with.
mintflow today at 1:18 AM
perhaps this is the most easy to use networking product that ever shipped, but given ngrok did this many years before, maybe they just think for the agentic era? though one must take care for the authentification

I also think it seems cloudflare enter into a stage keep adding products and make the portal looks like a maze to get more advanced features configured

Do you still remember cloudflare mesh and use and stick to it?

sparc24 yesterday at 6:42 PM
Worst marketing ever. ngrok had a similar slogan:

something like - "We help you put localhost on the Internet."

What could possibly go wrong?

smalltorch yesterday at 2:52 PM
It's a nice ability, but I dont like the terms of use.
ggg011012 yesterday at 4:10 PM
Quick Tunnels look great for demos and temporary dev environments. I’d still be hesitant to make them part of a long-lived production setup.
nyxtom today at 1:05 AM
I've used these tunnels all the time when I wasn't at my computer. Insanely helpful when doing agentic work on the go
JeremyJaydan yesterday at 10:10 PM
I used Cloudflared tunnels for a while in production, they worked very well but the config was a bit of a pain sometimes. It's nice to see a simpler version even if it's just for testing.
_user_account yesterday at 6:46 PM
The main use case: cloud harnesses to access your local network; I highly recommend to run the harness in your local network instead, then you own the session, no tunnel needed.

The other use case for webhooks is ok, but is exactly what ngrok already does since forever with a pretty high free quota.

usewik yesterday at 4:41 PM
how long until someone's agent sets up a tunnel for the world to see one's most sensitive, private and embarrassing information or insecure work-in-progress app? granted, for the brew install some massive permissions are needed, so hopefully for those running their agent's in a sandbox, you should be safe.. should be..
dzonga yesterday at 9:23 PM
I have been considering using my other laptop as a place to run my agents in production since 1. my laptop is more powerful than the vps I can rent for cheap.

then just use Cloudflare tunnels to connect to the laptop.

emadabdulrahim yesterday at 7:13 PM
Does this make working with agents in cloud more interesting? Maybe now I can see my changes right away without waiting for the build and deploy? By running the dev server and tunneling from the sandbox giving me a direct url access somehow?

Can someone chime in here?

nickgray yesterday at 6:55 PM
This is cool. I like it! Also Cloudflare design has stepped up so much over the past 2 years.
smalltorch yesterday at 3:36 PM
If your a hobbiest or dev just testing your services, it makes more sense to utilize onion services imho.

It does the exact same thing, except supported by a global network of volunteers around the world.

Sure, you get some latency, but this is actually ideal for testing. You should know how your service operates in non optimal lightning fast conditions.

rinconrex yesterday at 5:10 PM
Oh I use this for testing and demos between my phone and computer. Ngrok is fine, probably better off using Tailscale, but it's very easy to just run a quick tunnel with "cloudflared tunnel --url localhost:XXXX".
cryptolobster yesterday at 9:24 PM
For small-scale personal or family applications serving just a few users, does it make sense to choose Quick Tunnels over Tailscale or Pangolin?
ZeroCool2u yesterday at 3:19 PM
This is handy, but I wonder how much it will cannibalize their services. I have a simple app deployed on cloudflare for a very niche single purpose use, but I wouldn't have bothered if I had this. Serving it from my own machine would have been fine.
kelvinjps10 yesterday at 4:11 PM
What's the difference between this and their previous Cloudflare Tunnels solution?
corvad yesterday at 4:54 PM
This is not anything new they have been around since the tunnels project launched. What is more concerning is the AI slop webpage and just the "AI" centered relaunch of an existing product.
jdthedisciple yesterday at 9:43 PM
Interesting but what a horribly vibe coded website that barely works on mobile
nullbyte yesterday at 4:37 PM
Love this, very cool.

I used to use a service called ngrok for this, but it's nice that Cloudflare is offering one now.

rcarmo yesterday at 6:01 PM
I want this with TOTP or passkeys. Just giving me a hostname doesn't cut it these days.
smetannik yesterday at 4:59 PM
So is this basically a ngrok from CF?
scosman yesterday at 4:54 PM
The number of vibe coded apps accidentally hosted on dev laptops is about to explode.
singpolyma3 yesterday at 4:16 PM
It looks like tunnels can do some non https stuff these days? But it's a bit unclear
frankcostanza yesterday at 4:42 PM
So... Cloudflare built Ngrok?
shmde today at 5:06 AM
I have used this extensively previously when I had to quickly share a UI prototype with my Product manager. There used to be all sorts of cors error when I also had a backend. Then I realised its just better to make a branch and deploy it in amplify and add the cors origin in the backend. But its good for quick UI sharing
greyhound1 yesterday at 11:19 PM
i find it hard to read any text when the site has many animations that can't be stopped
spprashant yesterday at 5:15 PM
Off-topic: That web page looks exactly like my vibe-coded utilities.
narmiouh yesterday at 10:21 PM
I'm not sure how safe this is...

vibe coded app with may be no security and now available from the internet for anyone to RCE into my laptop?

tombert yesterday at 3:55 PM
I like Cloudflare Tunnels a lot, but something that annoys me is that officially you're not allowed to use them for streaming video, meaning I can't put it in front of my Jellyfin without breaking TOS.

I think that rule is more of a "we reserve the right to..." rule, but it makes me sad because I'd rather not open up ports on my router to expose my Jellyfin to my parents.

blocke yesterday at 7:26 PM
Ah yes. We can't let self hosted app traffic flow across the Internet in a way that escapes the vast Internet surveillance system run by the Americans called Cloudflare.

Hmm, Tailscale is too convenient and that traffic is going dark from Cloudflare's all seeing eye.

damsta yesterday at 4:00 PM
The website looks broken in dark mode on Firefox.
saejox yesterday at 9:19 PM
Needs to support tcp and udp
bitlad yesterday at 5:17 PM
So it is ngrok 10 years later?
bilater yesterday at 5:16 PM
So this is basically ngrok?
deleted yesterday at 5:16 PM
xeornet yesterday at 3:53 PM
Looks like they straight up vibe coded the landing page lol.
user3939382 yesterday at 3:15 PM
I just spent a week writing a harness around the existing tunnels to make this by hand.
dools yesterday at 10:27 PM
I’ve been using cloudflare tunnels quite a bit in places where I would have traditionally gone for a reverse port forward and they’re working really well. The quick tunnel concept seems really great but the non-quick tunnels are also very useful and can be entirely automated.
tobih yesterday at 8:59 PM
json output is nice, my agents always had to parse the text output before
rvz yesterday at 6:52 PM
Seems like the quality of software engineering is now going to zero and just vibe coding unstable alternatives since 2023.
maipen yesterday at 5:39 PM
I'm sorry to be offtopic, but this website looks like an hallucination generated by chatgpt 4.

This type of quality downgrade is scary, and it's everywhere now.

general_reveal yesterday at 5:27 PM
Could we turn this into p2p cloud hosting for all?
AtNightWeCode yesterday at 4:29 PM
Cool but the obvious flaw with this is that CF leaks DNS-records. So bots will find these urls instantly. Not sure why they have not fixed that or if it is even possible to fix.
rkovashikawa yesterday at 5:46 PM
cloudflare rocks
geroge_kyaw today at 4:52 AM
Lol Codex UI!!!
dbmikus yesterday at 4:53 PM
Now that is one vibe-coded website
nojvek today at 12:57 AM
I so hate codex speak.
superkuh yesterday at 5:16 PM
Cloudflare's only goal here is to put themselves between everyone and charge a toll. They are running a protection racket where they themselves are causing much of the damage they offer protection from. This is another example.
075326899532 yesterday at 3:55 PM
[ad]
ThrowawayTestr yesterday at 3:17 PM
No-ip gives out free dynamic DNS with a static URL. I use it for Sunshine desktop streaming when I travel.
cute_boi yesterday at 3:52 PM
what a sloppy website, did cloudflare fired bunch of ui/ux designer? Every text is slop lol.
ouch-blurred52 yesterday at 11:05 PM
[flagged]
vansh_sethi_vs yesterday at 6:36 PM
[dead]
altmanaltman yesterday at 3:19 PM
[flagged]