---
title: Wie man VPN Tunnel von Ubiquiti zu Cloudflare konfiguriert
description: "Ubiquiti UniFi – VPN Cloudflare: Anleitung fürs IPSec Site-to-Site, ideal für IoT/OT & non-agent Traffic. Mehr Sicherheit via SSE, Policies & Failover"
image: https://rheintec.io/hubfs/Ubiquiti-Logo.jpg
---

[Skip to content](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#main-content)

[![Rheintec logo](https://rheintec.io/hubfs/website_assets/logo/logo-white.svg "Rheintec logo")](https://rheintec.io/home?hsLang=de)

- [ KMU ](https://kmu.rheintec.io/de-ch/it-fuer-kmus)
- [Enterprise](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for Enterprise 
  
    - [Consulting](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
      
      Show submenu for Consulting 
      
          - [ IT Security Consulting ](https://rheintec.io/en/consulting/security/it-security-consulting)
          - [ Cyber Security Review ](https://rheintec.io/en/consulting/cybersecurity-review)
          - [ Governance, Risk & Compliance Consulting ](https://rheintec.io/en/consulting/compliance-and-governance)
    - [Zscaler](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
      
      Show submenu for Zscaler 
      
          - [ Zscaler Architecture Consulting ](https://rheintec.io/en/consulting/zscaler/architecture-consulting)
          - [ Zscaler Health Checks ](https://rheintec.io/en/consulting/zscaler/healthchecks)
          - [ Zscaler Automation ](https://rheintec.io/en/consulting/zscaler/automation)
          - [ Zscaler Proof of Concepts ](https://rheintec.io/en/consulting/zscaler/proof-of-concept)
          - [ Z-Automate ](https://rheintec.io/en/zscaler-automation-tool)
    - [ Solutions ](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#services)
      
      Show submenu for Solutions 
      
          - [ Bring Your Own Device (BYOD) ](https://rheintec.io/en/solutions/zscaler-remote-browser-access)
          - [ CNAPP ](https://rheintec.io/en/managed-services/enterprises/wiz)
          - [ Secure Access Service Edge (SASE) ](https://rheintec.io/en/solutions/secure-access-service-edge)
          - [ Secure Service Edge ](https://rheintec.io/en/managed-services/enterprises/zscaler-sse)
          - [ Zscaler Data Security ](https://rheintec.io/en/solutions/zscaler-data-security)
          - [ SD-WAN & WAN-Edge ](https://rheintec.io/en/managed-services/enterprises/ubiquitiy-wan-edge)
          - [ Z-Automate ](https://rheintec.io/en/zscaler-automation-tool)
- [Managed Services](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for Managed Services 
  
    - [ Managed Security Services ](https://rheintec.io/en/managed-security-services)
    - [ Small & Medium Companies (5-250) ](https://rheintec.io/managed-services/small-medium-companies-smb)
      
      Show submenu for Small & Medium Companies (5-250) 
      
          - [ Zscaler 4 Small Businesses ](https://rheintec.io/en/managed-services/small-companies/zscaler-sse-4-small-businesses)
          - [ CrowdStrike XDR 4 Small Businesses ](https://rheintec.io/en/en/managed-services/small-companies/crowdstrike-xdr-4-small-businesses)
          - [ Mimecast 4 Small Businesses ](https://rheintec.io/de/mimecast-for-kmu)
          - [ Proofpoint 4 Small Businesses ](https://rheintec.io/en/rheintec-proofpoint-mail-sicherheit-f%C3%BCr-kmu-kleinunternehmen)
          - [ Small Business Secure ](https://rheintec.io/en/managed-services/small-companies/small-business-secure)
          - [ Small Business Complete ](https://rheintec.io/en/managed-services/small-companies/small-business-complete)
          - [ Medium Business Complete  ](https://rheintec.io/en/managed-services/medium-companies/medium-business-complete)
    - [ Enterprises (250+) ](https://rheintec.io/managed-services/enterprise)
      
      Show submenu for Enterprises (250+) 
      
          - [ Wiz CNAPP ](https://rheintec.io/en/managed-services/enterprises/wiz)
          - [ Zscaler SSE ](https://rheintec.io/en/managed-services/enterprises/zscaler-sse)
          - [ Zscaler PSE as a Service ](https://rheintec.io/en/managed-services/enterprises/zscaler-pse)
          - [ CrowdStrike XDR ](https://rheintec.io/en/managed-services/enterprises/crowdstrike-xdr)
          - [ Mimecast Email Security ](https://rheintec.io/en/mimecast-for-enterprise)
          - [ Mimecast DMARC Monitoring ](https://rheintec.io/en/managed-services/enterprises/mimecast-dmarc)
          - [ Proofpoint Email Security ](https://rheintec.io/en/managed-services/enterprises/proofpoint-emailsecurity)
          - [ Cloudflare WAF ](https://rheintec.io/en/managed-services/enterprises/cloudflare-waf)
          - [ Cloudflare Zero Trust ](https://rheintec.io/en/cloudflare-sse-zero-trust-cloud-proxy)
          - [ Cloudflare DNS ](https://rheintec.io/en/managed-services/enterprises/cloudflare-dns)
          - [ Check Point Datacenter and Cloud Firewall ](https://rheintec.io/en/managed-services/enterprises/checkpointdatacenter)
          - [ Keeper PAM ](https://rheintec.io/en/managed-services/enterprises/keeper-pam)
          - [ Keeper Password Manager ](https://rheintec.io/en/managed-services/enterprises/password-manager)
          - [ Rubrik Backup & Data Protection ](https://rheintec.io/en/managed-services/enterprises/rubrik-backup)
          - [ Ubiquitiy WAN-Edge & SD-WAN ](https://rheintec.io/en/managed-services/enterprises/ubiquitiy-wan-edge)
- [ Case Studies ](https://rheintec.io/case-studies-rheintec)
- [ Blog ](https://rheintec.io/en/it-security-blog)
- [About](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for About 
  
    - [ Partner ](https://rheintec.io/de/partners)
    - [ About us ](https://rheintec.io/de/about)
    - [ Karriere ](https://rheintec.io/de/karriere)

- [ KMU ](https://kmu.rheintec.io/de-ch/it-fuer-kmus)
- [Enterprise](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for Enterprise 
  
    - [Consulting](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
      
      Show submenu for Consulting 
      
          - [ IT Security Consulting ](https://rheintec.io/en/consulting/security/it-security-consulting)
          - [ Cyber Security Review ](https://rheintec.io/en/consulting/cybersecurity-review)
          - [ Governance, Risk & Compliance Consulting ](https://rheintec.io/en/consulting/compliance-and-governance)
    - [Zscaler](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
      
      Show submenu for Zscaler 
      
          - [ Zscaler Architecture Consulting ](https://rheintec.io/en/consulting/zscaler/architecture-consulting)
          - [ Zscaler Health Checks ](https://rheintec.io/en/consulting/zscaler/healthchecks)
          - [ Zscaler Automation ](https://rheintec.io/en/consulting/zscaler/automation)
          - [ Zscaler Proof of Concepts ](https://rheintec.io/en/consulting/zscaler/proof-of-concept)
          - [ Z-Automate ](https://rheintec.io/en/zscaler-automation-tool)
    - [ Solutions ](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#services)
      
      Show submenu for Solutions 
      
          - [ Bring Your Own Device (BYOD) ](https://rheintec.io/en/solutions/zscaler-remote-browser-access)
          - [ CNAPP ](https://rheintec.io/en/managed-services/enterprises/wiz)
          - [ Secure Access Service Edge (SASE) ](https://rheintec.io/en/solutions/secure-access-service-edge)
          - [ Secure Service Edge ](https://rheintec.io/en/managed-services/enterprises/zscaler-sse)
          - [ Zscaler Data Security ](https://rheintec.io/en/solutions/zscaler-data-security)
          - [ SD-WAN & WAN-Edge ](https://rheintec.io/en/managed-services/enterprises/ubiquitiy-wan-edge)
          - [ Z-Automate ](https://rheintec.io/en/zscaler-automation-tool)
- [Managed Services](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for Managed Services 
  
    - [ Managed Security Services ](https://rheintec.io/en/managed-security-services)
    - [ Small & Medium Companies (5-250) ](https://rheintec.io/managed-services/small-medium-companies-smb)
      
      Show submenu for Small & Medium Companies (5-250) 
      
          - [ Zscaler 4 Small Businesses ](https://rheintec.io/en/managed-services/small-companies/zscaler-sse-4-small-businesses)
          - [ CrowdStrike XDR 4 Small Businesses ](https://rheintec.io/en/en/managed-services/small-companies/crowdstrike-xdr-4-small-businesses)
          - [ Mimecast 4 Small Businesses ](https://rheintec.io/de/mimecast-for-kmu)
          - [ Proofpoint 4 Small Businesses ](https://rheintec.io/en/rheintec-proofpoint-mail-sicherheit-f%C3%BCr-kmu-kleinunternehmen)
          - [ Small Business Secure ](https://rheintec.io/en/managed-services/small-companies/small-business-secure)
          - [ Small Business Complete ](https://rheintec.io/en/managed-services/small-companies/small-business-complete)
          - [ Medium Business Complete  ](https://rheintec.io/en/managed-services/medium-companies/medium-business-complete)
    - [ Enterprises (250+) ](https://rheintec.io/managed-services/enterprise)
      
      Show submenu for Enterprises (250+) 
      
          - [ Wiz CNAPP ](https://rheintec.io/en/managed-services/enterprises/wiz)
          - [ Zscaler SSE ](https://rheintec.io/en/managed-services/enterprises/zscaler-sse)
          - [ Zscaler PSE as a Service ](https://rheintec.io/en/managed-services/enterprises/zscaler-pse)
          - [ CrowdStrike XDR ](https://rheintec.io/en/managed-services/enterprises/crowdstrike-xdr)
          - [ Mimecast Email Security ](https://rheintec.io/en/mimecast-for-enterprise)
          - [ Mimecast DMARC Monitoring ](https://rheintec.io/en/managed-services/enterprises/mimecast-dmarc)
          - [ Proofpoint Email Security ](https://rheintec.io/en/managed-services/enterprises/proofpoint-emailsecurity)
          - [ Cloudflare WAF ](https://rheintec.io/en/managed-services/enterprises/cloudflare-waf)
          - [ Cloudflare Zero Trust ](https://rheintec.io/en/cloudflare-sse-zero-trust-cloud-proxy)
          - [ Cloudflare DNS ](https://rheintec.io/en/managed-services/enterprises/cloudflare-dns)
          - [ Check Point Datacenter and Cloud Firewall ](https://rheintec.io/en/managed-services/enterprises/checkpointdatacenter)
          - [ Keeper PAM ](https://rheintec.io/en/managed-services/enterprises/keeper-pam)
          - [ Keeper Password Manager ](https://rheintec.io/en/managed-services/enterprises/password-manager)
          - [ Rubrik Backup & Data Protection ](https://rheintec.io/en/managed-services/enterprises/rubrik-backup)
          - [ Ubiquitiy WAN-Edge & SD-WAN ](https://rheintec.io/en/managed-services/enterprises/ubiquitiy-wan-edge)
- [ Case Studies ](https://rheintec.io/case-studies-rheintec)
- [ Blog ](https://rheintec.io/en/it-security-blog)
- [About](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert#)
  
  Show submenu for About 
  
    - [ Partner ](https://rheintec.io/de/partners)
    - [ About us ](https://rheintec.io/de/about)
    - [ Karriere ](https://rheintec.io/de/karriere)

[ Kostenlose Beratung anfordern ](https://cta-service-cms2.hubspot.com/web-interactives/public/v1/track/click?encryptedPayload=AVxigLJhOjx3NEjl3dTzs3alex%2B2Sz%2BrhHiNeNPr3qhM%2Bmnd1xhH0hZc85R016Zfr4tNiAXpoJQutSl0RRl7l33WGIvDzQIOIR%2FMvZZ4ouwxGAFoXaQFdiHiPwDtXR0sbIfzA1ujA5%2BwzxqPoZeWO7EECpw3hpDCs%2BgvNAkrhioMf3iQWFSgkHyl51blL5ZZHc6r9v50UNaVzw%3D%3D&portalId=48452581)

Deutsch

- [English](https://rheintec.io/en/it-security-blog/how-to-configure-a-vpn-tunnel-from-ubiquiti-to-cloudflare)
- [Deutsch](https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert)

# Wie man VPN Tunnel von Ubiquiti zu Cloudflare konfiguriert

[ Linus Espach ](https://rheintec.io/de/it-security-blog/author/linus-espach)  - 12.11.2025 11:43:10

- **Problem: **Viele IoT/OT-Geräte, Server und Legacy-Systeme unterstützen keine Agenten (z. B. Cloudflare WARP), oder Cloudflare Magic WAN wird zum Ramp-Up von Lokationen verwendet.
- **Lösung:** IPSec-Tunnels von UniFi Gateways zu Cloudflare via Magic WAN, um HTTP/HTTPS-Traffic zentral zu inspizieren und zu filtern – ohne Agent auf dem Endgerät.
- **Mehrwert:** Einheitliche SSE-Sicherheitskontrollen (Web-Filter, Threat-Protection, DLP, CASB), konsistentes Egress-IP-Handling, einfacher Rollout und hohe Verfügbarkeit via CLoudflare .
  
  ![Ubiquiti VPN to Cloudflare Architecture](https://rheintec.io/hs-fs/hubfs/Ubiquiti%20VPN%20to%20Cloudflare%20Architecture.png?width=920&height=1207&name=Ubiquiti%20VPN%20to%20Cloudflare%20Architecture.png)

## Architektur in 60 Sekunden

- UniFi-Gateway (Hier HA-Cluster) baut einen IPSec-Tunnel zu der Anycast-IP von Cloudflare auf und verbindet sich damit automatisch zum nächstgelegenen DC. Der Fallback wird durch Anycast automatisch von Cloudflare übernommen.
- Policy-Based Routing (PBR) auf der Ubiquiti leitet definierten Traffic (z. B. IoT-VLANs → Web) in den Tunnel (also als transparenter Proxy), interne Ziele (RFC1918) und Cloudflare WARP-Traffic wird gebypasst.
- Cloudflare SSE inspiziert/verarbeitet den Traffic gemäss der  Policies.
- Je nach Resilienz-und Performance-Ansprüchen lassen sich beliebig viele Tunnel über beliebige ISPs an Cloudflare anbinden.

## Voraussetzungen (Checkliste)

- Statische Public-IP am Ubiquiti-WAN.
- Zugriff auf das Cloudflare Admin Portal.
- Vorab-Planung: Welche Quell-Netze/VLANs sollen über Cloudflare gehen? Welche Ziele müssen gebypasst werden (RFC1918, Management-Netze, WARP-IPs)?
- Zeit-Sync (NTP) & korrekte MTU am WAN (IPSec/SSL-Inspection kann Fragmentierung triggern).

## 1. Cloudflare Konfiguration

1. Unter Networking > Magic WAN > Configuration > Tunnels einen neuen IPSec Tunnel erstellen
2. Die Tunnel-Konfiguration kann [hier ](https://developers.cloudflare.com/magic-wan/configuration/manually/how-to/configure-tunnel-endpoints/#add-tunnels)nachgesehen werden. 
3. Anschliessend unter Networking > Magic WAN > Configuration > Routes eine statische Route anlegen und den gewünschten Traffic auswählen (Quelle).

## 2. Ubiquiti Konfiguration: VPN

1. Ubiquiti Network → Settings → VPN → Site-to-Site VPN → Create New.
2. VPN Type: IPSec, VPN Method: Route-Based.
3. Remote IP/Hostname: Cloudflare Anycast IP eintragen (162.159.75.138).
4. Key Exchange: IKEv2
5. AES-256 / SHA256, DH-Gruppe 20, PFS aktiv, SA-Lifetime IKE 86400s / ESP 28800s
6. Tunnel IP: /31 gemäß UniFi-Maske (Standardvorgabe im Screenshot).
7. Remote Networks: leer lassen. 
8. Local Authentication ID: Den Wert aus dem Cloudflare Dashboard übernehmen (FQDN ID).
9. Route Distance (Metrik): kleinerer Wert = bevorzugt (z. B. 30 für Primär). 

## 4. Ubiquiti Konfiguration: Policy Based Routes (PBRs)

1. Bypass [Cloudflare WARP-IPs](https://developers.cloudflare.com/cloudflare-one/team-and-resources/devices/warp/deployment/firewall/).
2. ANY → Tunnel für die vordefinierten Quell-VLANs/Netze (IoT/OT/Server).
3. Danach prüfen, ob der Tunnel „Online“ ist.

Wichtig:

 

- UniFi kann PBR-Regeln (noch) nicht umsortieren. Legt sie in der richtigen Reihenfolge spezifisch → allgemein an und baut Platzhalter Regeln für verschiedene Use Cases, die ggf. später nachgeführt werden sollen.
- Für Ausschlüsse müssen Ausnahme- und ANY-Regel die selbe Source haben
- In der Ausnahme kann optional der Kill Switch aktiviert werden (was dazu führt, dass Traffic geblockt wird, wenn der VPN nicht erreichbar ist)

## Verifikation & Betrieb

- Egress-IP in Cloudflare prüfen (Log).
- SSE-Policies testen (URL-Filter, DLP, Upload-Kontrollen, SSL-Inspection).
- Monitoring: Tunnel-Status, Latenz zu den DC, MTU/MSS-Clamp (bei Fragmentierung).
- Schlüsselhygiene: PSK regelmäßig rotieren, Admin-Zugriffe auditieren.

## Best Practices aus Projekten

- VLAN-basiert onboarden: dedizierte IoT/OT-VLANs per PBR in den Tunnel – minimiert Blast-Radius.
- „Nur Web“ sauber trennen: Interne Dienste (z. B. OT-HMIs) nicht ins Internet tunneln; RFC1918-Bypass hilft.
- Change-Fenster einplanen: Bei SSL-Inspection oder DLP kann es App-Seiteneffekte geben; mit Pilotgruppe starten.
- Dokumentation pflegen: PBR-Ausnahmen, weitergeleiteten VLANs, Notfall-Rollback.

## Fazit

Mit IPSec Ubiquiti → Cloudflare lassen sich nicht agent-fähige IoT/OT-Assets und Server einfach, skalierbar und kosteneffizient an moderne SSE-Kontrollen anbinden – ohne Eingriffe am Endgerät. Die Kombination aus zwei DC-Tunneln, sauberem PBR und konsequenter Policy-Prüfung liefert schnell messbaren Sicherheitsgewinn – genau dort, wo Agenten nicht hinpassen.

 

[Ubiquiti](https://rheintec.io/de/it-security-blog/tag/ubiquiti), [Cloudflare](https://rheintec.io/de/it-security-blog/tag/cloudflare), [SASE](https://rheintec.io/de/it-security-blog/tag/sase)

### You might like

[![Ubiquiti Logo](https://rheintec.io/hs-fs/hubfs/Ubiquiti-Logo.jpg?width=352&name=Ubiquiti-Logo.jpg) ](https://rheintec.io/de/it-security-blog/how-to-setup-vpn-tunnels-von-ubiquiti-zu-zscaler?hsLang=de)

##### [Wie man VPN Tunnel von Ubiquiti zu Zscaler konfiguriert](https://rheintec.io/de/it-security-blog/how-to-setup-vpn-tunnels-von-ubiquiti-zu-zscaler?hsLang=de)

 Problem: Viele IoT/OT-Geräte, Server und Legacy-Systeme unterstützen keine Agenten (z. B. Zscaler Client Connector).Lösung: IPSec-Tunnels von UniFi Gateways zu Zscaler (ZIA), um HTTP/HTTPS-Traffic zentral zu inspizieren und zu filtern – ohne Agent auf dem Endgerät.Mehrwert: Einheitliche...

[![Nächtliche Stadtsilhouette mit leuchtendem digitalem Schild, das die Cloud-Sicherheit von CrowdStrike veranschaulicht](https://rheintec.io/hs-fs/hubfs/crowdstrike-cloud-security-city-skyline-digital-shield.jpg?width=352&name=crowdstrike-cloud-security-city-skyline-digital-shield.jpg) ](https://rheintec.io/de/it-security-blog/crowdstrike-cloud-sicherheit?hsLang=de)

##### [CrowdStrike Cloud Security – Lösungen für zentrale Herausforderungen](https://rheintec.io/de/it-security-blog/crowdstrike-cloud-sicherheit?hsLang=de)

 Einführung Cloud Computing ist zum operativen Rückgrat des modernen Geschäftslebens geworden. Jeder neue Workload, jede neue API und jede neue Identität, die in die Cloud migriert werden, beschleunigt die Innovation - aber jeder einzelne Schritt vergrößert auch die Angriffsfläche. CrowdStrike...

[![](https://rheintec.io/hs-fs/hubfs/website_assets/Blog/cloud-infrastructure.webp?width=352&name=cloud-infrastructure.webp) ](https://rheintec.io/de/it-security-blog/dynamic-access-management-in-the-public-cloud-with-check-point?hsLang=de)

##### [Dynamisches Zugriffsmanagement in Public Clouds mit Check Point](https://rheintec.io/de/it-security-blog/dynamic-access-management-in-the-public-cloud-with-check-point?hsLang=de)

 Erfahren Sie, wie dynamisches Tag-basiertes Access Management mit Check Point Ihre Cloud-Sicherheit verbessern und gleichzeitig Effizienz, Skalierbarkeit und robustes Firewalling gewährleisten kann.

## Wie viel kostet IT-Sicherheit für Ihr Unternehmen?

Berechnen Sie Ihre IT-Sicherheitskosten ganz einfach mit unserem Preisrechner.

[ Check our pricing calculator ](https://cta-service-cms2.hubspot.com/web-interactives/public/v1/track/click?encryptedPayload=AVxigLLdDaGp037PwumG%2BW1z1Azp65Anr6w1bT6quyIouhPKiq9x7zfbiD2B5x7NH%2Bq7KohFerMK6uORsvnlI7w%2F%2Bcc42MZwuwbW7LvWtuiY1SdwKH3wM5erK5rc7V%2Bo4C75GnQhTIVya%2B8KfbeTtmznXJYqAgmVKwW7AKWj14zj0TvjCQ%3D%3D&portalId=48452581)

[![logo-white](https://rheintec.io/hubfs/website_assets/logo/logo-white.svg "logo-white")](https://rheintec.io?hsLang=de)

[Rechtlicher Hinweis](https://rheintec.io/legal-notice?hsLang=de) [Datenschutzrichtlinie](https://rheintec.io/en/privacy-policy?hsLang=de) [Karriere](https://rheintec.io/de/karriere?hsLang=de)

[![Rheintec ISO 9001 DE](https://rheintec.io/hubfs/website_assets/iso/rht-tuev-iso-9001.webp)](https://rheintec.io/hubfs/Rheintec%20ISO%209001%20DE.pdf?hsLang=de) [![rht-tuev-iso-iec-27001](https://rheintec.io/hs-fs/hubfs/website_assets/iso/rht-tuev-iso-iec-27001.png?width=200&height=95&name=rht-tuev-iso-iec-27001.png)](https://rheintec.io/hubfs/Rheintec%20ISO%2027001%20DE.pdf?hsLang=de)

 

Standorte

![switzerland flag](https://rheintec.io/hs-fs/hubfs/website_assets/flags/switzerland%20flag.webp?width=80&height=49&name=switzerland%20flag.webp)

Rheintec Solutions AG

 Uferstrasse 90 • CH-4057 Basel

![germany flag](https://rheintec.io/hs-fs/hubfs/website_assets/flags/germany%20flag.png?width=60&height=37&name=germany%20flag.png)

Rheintec Solutions GmbH

Gartenstrasse 28 • DE-86938 Schondorf am Ammersee

Kontaktieren

+41 (0) 61 568 73 95

info@rheintec.ch

Abonnieren Sie unseren Newsletter für Sicherheitsinformationen.

© 2026 Alle Rechte vorbehalten

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Linus Espach",
    "url" : "https://rheintec.io/de/it-security-blog/author/linus-espach"
  },
  "dateModified" : "2026-03-27T09:56:39.390Z",
  "datePublished" : "2025-11-12T10:43:10.000Z",
  "headline" : "Wie man VPN Tunnel von Ubiquiti zu Cloudflare konfiguriert",
  "image" : [ "https://rheintec.io/hubfs/Ubiquiti-Logo.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://rheintec.io/de/it-security-blog/wie-man-vpn-tunnel-von-ubiquiti-zu-cloudflare-konfiguriert",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://rheintec.io/hubfs/rheintecblue.png"
    },
    "name" : "Rheintec Solutions AG"
  }
}
```