Cloudflare Access Troubleshoot
This skill systematically identifies and resolves Cloudflare Access authentication problems, from Google OAuth misconfigurations to policy mismatches and domain blocking. It guides you through verifying OAuth credentials, checking allowed email lists, confirming Pi-hole whitelisting, and validating redirect URIs to pinpoint exactly why authentication is failing.
Cloudflare Access Troubleshoot diagnoses and resolves authentication failures including OAuth errors, access denial, and login loops.
AI-generated summary based on this skill's SKILL.md
Decision gist · record as of 2026-01-26
Cloudflare Access Troubleshoot diagnoses and resolves authentication failures including OAuth errors, access denial, and login loops. This skill systematically identifies and resolves Cloudflare Access authentication problems, from Google OAuth misconfigurations to policy mismatches and domain blocking. It guides you through verifying OAuth credentials, checking allowed email lists, confirming Pi-hole whitelisting, and validating redirect URIs to pinpoint exactly why authentication is failing.
Use it when
- Cloudflare Access Troubleshoot addresses common failure causes: Google OAuth misconfigurations.
- Cloudflare Access Troubleshoot recommends verifying OAuth credentials first.
Install
dawiddutoit/custom-claude/cloudflare-access-troubleshoot · repository language: Python
generated, unverified - the skill's exact subdirectory could not be determined; check the repository on GitHub
Open directory. Skills are indexed for reading, not audited. Review a skill's body before installing it.
Frequently asked questions
AI-generated answers based on this skill's SKILL.md and metadata
How do I troubleshoot Cloudflare Access issues?
Cloudflare Access Troubleshoot systematically identifies and resolves authentication problems by guiding you through verification steps. Start by checking your OAuth credentials are correctly configured, confirm your email is on the allowed list, verify Pi-hole whitelisting if applicable, and validate redirect URIs match your provider settings. The skill helps pinpoint exactly why authentication is failing so you can resolve it quickly.
Why is my Cloudflare Access not working?
Cloudflare Access Troubleshoot addresses common failure causes: Google OAuth misconfigurations, policy mismatches between your rules and user attributes, domain blocking, or incorrect redirect URIs. The skill walks you through diagnosing each layer—from authentication provider setup to access policies—to identify whether the issue stems from credentials, permissions, network configuration, or policy logic.
What should I check when Cloudflare Access authentication fails?
Cloudflare Access Troubleshoot recommends verifying OAuth credentials first, then checking that your email address appears on the allowed list for your application. Confirm any DNS filtering (like Pi-hole) isn't blocking Cloudflare domains, and validate that your redirect URI exactly matches what your OAuth provider expects. These checks cover the most common authentication failure points.
How can I fix Cloudflare Access login and access denied problems?
Cloudflare Access Troubleshoot resolves login failures and access denied errors by systematically checking policy configuration, email allowlists, and OAuth setup. It helps you verify that your access policies correctly match user attributes, that authentication is completing successfully, and that permission rules aren't blocking legitimate users. The skill guides you through each troubleshooting layer.
What are common Cloudflare Access configuration problems?
Cloudflare Access Troubleshoot identifies configuration issues including mismatched redirect URIs, incomplete OAuth provider setup, overly restrictive policies, and domain blocking by network filters. It also covers policy logic errors where rules don't match intended user groups, and helps verify that all required fields in your Access application settings are correctly populated.
How do I debug Cloudflare Access errors?
Cloudflare Access Troubleshoot provides systematic debugging by checking authentication flow at each stage: OAuth credential validation, email allowlist verification, network connectivity (including DNS filtering), policy evaluation, and redirect URI matching. This layered approach isolates whether errors originate from provider misconfiguration, permission rules, network issues, or application setup.
Let your AI agent find skills like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 56,283 agent skills by what they can do, searchable in plain language.
wish › “Diagnose and resolve Cloudflare Access authentication failures”
Give your agent the search over MCP, or paste the wish link into any chat. No install? Search from any chat →
Related skills
This skill automates Cloudflare Access deployment with Google OAuth identity provider integration. It verifies prerequisites, configures OAuth credentials, creates Access applications for protected services, and establishes allow policies for authorized users. Use it to secure remote access to your applications and troubleshoot authentication issues.
This skill adds new users to Cloudflare Access by updating the allowed email list in your environment configuration and syncing policies across all protected services. It validates email formats, prevents duplicates, and confirms successful policy updates before providing test instructions for the new user.
Configure Cloudflare Access service tokens to enable automated systems, scripts, and monitoring to authenticate without human intervention or Google OAuth. Store credentials securely in .env, test access with curl or a helper script, and manage token lifecycle through the Cloudflare dashboard.
This skill systematically identifies and resolves IPv6 DNS problems that cause local network clients to bypass direct access and connect through Cloudflare Tunnel with OAuth authentication. It verifies Pi-hole's filter-AAAA configuration, tests IPv6 blocking, clears client DNS caches, and confirms local access works without authentication prompts.
This skill automates Pi-hole DNS configuration for your local network, reading domain entries from domains.toml and applying them to Pi-hole's container environment. It detects your Pi's IP, updates DNS records, and verifies that services resolve correctly across your network.
This skill guides you through creating a new Cloudflare Tunnel from scratch, handling token generation, .env configuration, and container restart. It covers prerequisite checks, dashboard setup, hostname routing, and connectivity verification to get your tunnel operational.
More skills cloudflare-troubleshooting (MIT) · Caddy Subdomain Add (unlicensed)