{"repo":"jorgelbg/cloudflare-access-grafana","free":true,"listed":false,"github":"https://github.com/jorgelbg/cloudflare-access-grafana","clone":"git clone https://github.com/jorgelbg/cloudflare-access-grafana.git","description":"Small proxy for automatically log in users from Cloudflare Access into Grafana","language":"Go","stars":52,"topics":["grafana","cloudflare-access","oauth","openid-connect","proxy","cloudflare-worker","hacktoberfest"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"cloudflare-access-grafana cloudflare-access-grafana is an HTTP proxy implemented to run transparently behind Cloudflare Access and forward the email of the signed-in user to Grafana. Running this small proxy between Cloudflare Access and Grafana instance allows you to automatically sign in the authenticated user from Cloudflare Access into Grafana. 📥 Installation / Getting started To accomplish this Grafana has to run in with the Auth Proxy Authentication mode enabled. This will delegate the authentication to another component: Cloudflare Access + cloudflare-access-grafana in this case. A minimal grafana.ini config could look like this: Running a Grafana docker container with the previous configuration can be done with the following command: In this case, the header property set to email is important because the email is the claim that we get from the JWT token provided by Cloudflare Access. header name can be configured to any desired value and will need to match the FORWARDHEADER environment variable passed into cloudflare-access-grafana. You can copy the template from .env.template into your environment file and adjust the required values. Now you can run the cloudflare-access-grafana container with the following command: This will start the proxy on the specified address and it will start to listen for incoming requests. When a new HTTP request is received it will validate the JWT token, extract the email claim from the token and forward to the specified host the header ","default_branch":null,"files":null,"tree":[],"storefront":"/r/jorgelbg","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/jorgelbg/cloudflare-access-grafana/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}