CloudFlare

Can I Enable CloudFlare on a Wildcard (*) Sub-Domain?

No, CloudFlare does not support enabling proxying (orange cloud) for wildcard (*) sub-domains. However, wildcard sub-domains can still be managed through DNS-only mode, allowing you to use CloudFlare for basic DNS functionality without its advanced security and performance features.

Why Can’t CloudFlare Proxy Wildcard Sub-Domains?

CloudFlare’s infrastructure does not support wildcard (*) sub-domains because it requires precise domain or sub-domain names to apply its caching, DDoS protection, and SSL/TLS encryption features. Proxying wildcard sub-domains would make it difficult to enforce these features effectively and securely.

What Happens If You Add a Wildcard Sub-Domain?

When you add a wildcard sub-domain (e.g., *.yourdomain.com) to CloudFlare:

  • The wildcard will be visible in the DNS settings with a DNS Only (gray cloud) option.
  • CloudFlare will not proxy traffic for the wildcard sub-domain, meaning no caching, security, or performance enhancements will be applied.

Alternative Options for Wildcard Sub-Domains

If you need CloudFlare features for specific sub-domains, you must manually add them to your CloudFlare account. For example:

  1. Add each required sub-domain explicitly, such as blog.yourdomain.com, shop.yourdomain.com, etc.
  2. Enable proxying (orange cloud) for these sub-domains individually to benefit from CloudFlare’s services.

How to Add Wildcard Sub-Domains in DNS Only Mode

While proxying is not supported, you can still use wildcard sub-domains in DNS-only mode for basic DNS functionality. Here’s how:

  1. Log in to CloudFlare: Access your account via the CloudFlare Dashboard.
  2. Navigate to DNS Settings: Select your domain and open the DNS tab.
  3. Add a Wildcard Sub-Domain: Create a new DNS record with the following settings:
    • Type: A (or CNAME, depending on your setup)
    • Name: *
    • Value: Your server’s IP address
    • Proxy Status: Set to DNS Only (gray cloud)

Key Considerations

  • SSL Support: Wildcard SSL certificates installed on your server can secure wildcard sub-domains, but CloudFlare’s proxying features won’t apply.
  • Performance: Without proxying, you won’t benefit from CloudFlare’s CDN and caching services for wildcard sub-domains.
  • Specific Sub-Domains: Add individual sub-domains explicitly to take full advantage of CloudFlare’s features.

Need Assistance?

If you need help configuring wildcard sub-domains or understanding CloudFlare’s limitations, contact our support team through the CustomerPanel. We’ll assist you in setting up your sub-domains for optimal performance and security.

Knowledgebase