Shifting left at enterprise scale: how we manage Cloudflare with Infrastructure as Code
Cloudflare has adopted Infrastructure as Code with Terraform, custom tools, and Open Policy Agent to enhance security and engineering efficiency.
MAIN POINTS
- Cloudflare transitioned to Infrastructure as Code for internal account management.
- Terraform and custom tools are integral to the new architecture.
- Open Policy Agent is used for enforcing security baselines.
- The changes aim to boost engineering velocity and security.
TAKEAWAYS
- Infrastructure as Code improves management of Cloudflare's internal accounts.
- Security baselines are enforced through Open Policy Agent.
- Custom tooling complements Terraform in the new setup.
- The approach enhances both security and engineering speed.