Explore the following examples for Rules. Filter resources...Route /images to an S3 Bucket using TerraformRoute requests with a URI path starting with /images to a specific AWS S3 bucket with Cloud Connector using Terraform.Route /images to an S3 BucketRoute requests with a URI path starting with /images to a specific AWS S3 bucket using Cloud Connector.Send EU visitors to a Google Cloud Storage bucketRoute all traffic from EU visitors to a Google Cloud Storage bucket using Cloud Connector.Serve /static-assets from Azure Blob StorageRoute requests with a URI path starting with /static-assets to an Azure Blob Storage container using Cloud Connector.Disable Brotli compressionCreate a compression rule to turn off Brotli compression for all incoming requests of a given zone.Disable compression for AVIF imagesCreate a compression rule to turn off compression for AVIF images, based on either the content type or the file extension specified in the request.Enable Zstandard compression for default content typesCreate a compression rule to turn on Zstandard compression for response content types where Cloudflare applies compression by default.Use Gzip compression for CSV filesCreate a compression rule to set Gzip compression as the preferred compression method for CSV files.Use only Brotli compression for a specific pathCreate a compression rule to set Brotli as the only supported compression algorithm for a specific URI path.Define a single configuration rule using TerraformCreate a configuration rule using Terraform to turn off Email Obfuscation and Browser Integrity Check for API requests in a given zone.Change the HTTP Host header and DNS recordCreate an origin rule to change the HTTP Host header and the resolved DNS record.Change the destination portCreate an origin rule to change the destination port.Define a single origin rule using TerraformCreate an origin rule using Terraform to override the Host header, the resolved hostname, and the destination port of API requests.A/B testing with same-URL direct accessSet up an A/B test by controlling what response is served based on cookies.Append dates to cookies to use with A/B testingDynamically set a cookie expiration and test group.Auth with headersAllow or deny a request based on a known pre-shared key in a header. This is not meant to replace the WebCrypto API.Send Bot Management information to originSend Bots information to your origin. Refer to Bot Management variables for a full list of available fields.Send suspect bots to a honeypotUse the bot score field to send bots to a honeypot.Bulk redirect based on a map objectRedirect requests to certain URLs based on a mapped object to the request's URL.Country code redirectRedirect a response based on the country code in the header of a visitor.Custom cacheStore, retrieve, and remove assets from cache programmatically. Use this template to optimize performance and implement custom caching strategies.Debugging logsSend debugging information in an errored response to a logging service.Define CORS headersAdjust Cross-Origin Resource Sharing (CORS) headers and handle preflight requests.Follow redirects from the originModify the fetch request to follow redirects from the origin, ensuring the client receives the final response.Add HEX timestamp to a request headerAdd a custom header to requests sent to the origin server with the current timestamp in hexadecimal format for debugging, tracking, or custom routing purposes.Validate JSON web tokens (JWT)Extract a JWT from the Authorization header, verify its HMAC-SHA256 signature using the WebCrypto API, and validate its claims.Maintenance pageServe a custom maintenance page instead of fetching content from the origin server or cache. Ideal for downtime notifications, planned maintenance, or emergency messages.Override a Set-Cookie header with a certain valueGet a specific Set-Cookie header and update it with a certain value.Redirect 403 Forbidden to a different pageIf origin responded with 403 Forbidden error code, redirect to different page.Redirect from one domain to anotherRedirect all requests from one domain to another domain.Remove fields from API responseIf origin responds with JSON, parse the response and delete fields to return a modified response.Remove query strings before sending request to originRemove certain query strings from a request before passing to the origin.Remove response headersRemove from response all headers that start with a certain name.Return information about the incoming requestRespond with information about the incoming request provided by Cloudflare’s global network.Rewrite links on HTML pagesDynamically rewrite links in HTML responses. This is useful for site migrations and branding updates.Change origin and modify pathsRoute requests to a different origin, prepend a directory to the URL path, and remove specific segments.Set security headersSet common security headers such as X-XSS-Protection, X-Frame-Options, and X-Content-Type-Options.Send timestamp to origin as a custom headerConvert timestamp to hexadecimal format and send it as a custom header to the origin.Route to a different origin based on origin responseIf response to the original request is not 200 OK or a redirect, send to another origin.Sign requestsVerify a signed request using the HMAC and SHA-256 algorithms or return a 403.Slow down suspicious requestsDefine a delay to be used when incoming requests match a rule you consider suspicious based on the bot score.Add a wildcard CORS response headerCreate a CORS response header transform rule to add an Access-Control-Allow-Origin HTTP header to the response with wildcard as static value. (cookiename=value).Add a request header with the current bot scoreCreate a request header transform rule to add a X-Bot-Score HTTP header to the request with the current bot score.Add request header with a static valueCreate a request header transform rule to add an X-Source HTTP header to the request with a static value (Cloudflare).Add a request header for subrequests from other zonesCreate a request header transform rule to add an HTTP header when the Workers subrequest comes from a different zone.Add a response header with a static valueCreate a response header transform rule to add a set-cookie HTTP header to the response with a static value (cookiename=value).Normalize encoded slashes in URL pathCreate a URL rewrite rule (part of Transform Rules) to normalize encoded forward slashes (%2F) in the request path to standard slashes (/).Remove a request headerCreate a request header transform rule (part of Transform Rules) to remove the cf-connecting-ip HTTP header from the request.Remove a response headerCreate a response header transform rule (part of Transform Rules) to remove the cf-connecting-ip HTTP header from the response.Rewrite blog archive URLsCreate a transform rule to rewrite the URL format /posts/<YYYY>-<MM>-<DD>-<TITLE> to the new format /posts/<YYYY>/<MM>/<DD>/<TITLE>.Rewrite path of moved section of a websiteCreate a URL rewrite rule (part of Transform Rules) to rewrite everything under /blog/<PATH> to /marketing/<PATH>.Rewrite path of archived blog postsCreate a URL rewrite rule (part of Transform Rules) to rewrite any requests for /news/2012/... URI paths to /archive/news/2012/....Rewrite path for object storage bucketCreate a URL rewrite rule (part of Transform Rules) to rewrite any requests for /files/... URI paths to /....Rewrite image paths with several URL segmentsCreate a URL rewrite rule (part of Transform Rules) to rewrite any requests for /images/<FOLDER1>/<FOLDER2>/<FILENAME> to /img/<FILENAME>.Rewrite URL query stringCreate a transform rule to rewrite the request path from /blog to /blog?sort-by=date.Rewrite page path for visitors in specific countriesCreate two URL rewrite rules (part of Transform Rules) to rewrite the path of the welcome page for visitors in specific countries.Set a response header with the current bot scoreCreate a response header transform rule (part of Transform Rules) to set an X-Bot-Score HTTP header in the response with the current bot score.Set response header with a static valueCreate a response header transform rule (part of Transform Rules) to set an X-Bot-Score HTTP header in the response to a static value (Cloudflare).Perform mobile redirectsCreate a redirect rule to redirect visitors using mobile devices to a different hostname.Redirect admin area requests to HTTPSCreate a redirect rule to redirect requests for the administration area of store.example.com to HTTPS, keeping the original path and query string.Redirect requests from one domain to anotherCreate a redirect rule to redirect all requests to a different domain, maintaining all functionality, except for the discontinued HTTP service (port 80).Redirect requests from one country to a domainCreate a redirect rule to redirect all website visitors from the United Kingdom to a different domain, maintaining the current functionality in the same paths.Redirect requests for a domain to a new domainCreate a redirect rule to redirect all URLs for a domain to point to the root of a new domain, including any subdomains of the old domain.Redirect requests to a different hostnameCreate a redirect rule to redirect all requests for smallshop.example.com to a different hostname using HTTPS, keeping the original path and query string.Redirect local visitors to specific subdomainsCreate a redirect rule to redirect United Kingdom and France visitors from the example.com website's root path (/) to their localized subdomains https://gb.example.com and https://fr.example.com, respectively.Redirect visitors to a new page URLCreate a redirect rule to redirect visitors from /contact-us/ to the page's new path /contacts/.Redirect from root to WWWCreate a redirect rule to forward HTTPS requests from the root (also known as the “apex” or “naked” domain) to the WWW subdomain.Redirect from WWW to rootCreate a redirect rule to forward HTTPS requests from the WWW subdomain to the root (also known as the “apex” or “naked” domain).Remove locale from URL pathCreate a redirect rule to redirect visitors from an old URL format with locale information to a new URL format.