Hey everyone! 👋 I've been lurking for a bit but this is my first post. I come from more of a data analytics background (SQL, Looker, building data pipelines), but I've recently gotten involved in our company's network security stack.
We just finished migrating our Secure Web Gateway from iboss to Cloudflare One. Overall, I'm really impressed! The admin UI and dashboard in Cloudflare are so much cleaner and easier to navigate than what we had before. Setting up policies felt more intuitive, and the integration with other Zero Trust components is great.
However, I've hit a snag that I'm hoping you all can help me understand. The URL filtering seems... weaker? With iboss, we had very granular control and the categories felt more precise. I'm noticing more sites slipping through Cloudflare's "Social Media" or "Newly Registered Domain" categories that iboss would have caught.
Has anyone else experienced this? I'd love a detailed walkthrough on how you've fine-tuned Cloudflare's URL filtering for maximum coverage.
* Are there specific custom lists or threat intelligence feeds you've integrated?
* What's the best practice for layering policies (like combining DNS + HTTP policies)?
* For those who came from other SWGs, did you have to adjust your expected blocking thresholds?
Really excited to learn from the community here! My goal is to build a secure, reliable pipeline for our users that doesn't rely on constant manual list updates.