Cloudflare Docs
Magic WAN
Edit this page on GitHub
Set theme to dark (⇧+D)

Cloudflare Magic WAN

Improve security and performance for your entire corporate networking, reducing cost and operation complexity.
Enterprise-only

Magic WAN provides secure, performant connectivity and routing for your entire corporate networking, reducing cost and operation complexity. Magic Firewall integrates smoothly with Magic WAN, enabling you to enforce network firewall policies at Cloudflare’s global network, across traffic from any entity within your network.

With Magic WAN, you can securely connect any traffic source — data centers, offices, devices, cloud properties — to Cloudflare’s network and configure routing policies to get the bits where they need to go, all within one SaaS solution.

Magic WAN supports a variety of on-ramps including Anycast GRE or IPsec tunnels, Cloudflare Network Interconnect, Cloudflare Tunnel, WARP, and a variety of Network On-ramp Partners. If you prefer to set up your sites automatically, you can purchase Magic WAN Connector, a lightweight software package you can install in corporate network locations to automatically connect, steer, and shape any IP traffic.


​​ Features

​​ Magic WAN Connector

Use Magic WAN Connector to automatically connect, steer, and shape any IP traffic.

​​ Connect with third-party device

Magic WAN is compatible with a host of third-party devices. If you do not have Magic WAN Connector, start here to learn how to set up Magic WAN manually.

​​ Tunnel health checks

Magic WAN sends health check probes to monitor network status and the health of specific network components.

​​ Traffic steering

Magic WAN steers traffic along tunnel routes based on priorities you define during the onboarding process.

​​ Network analytics

Network analytics allows you to check traffic patterns and DDoS attacks in near real-time, to troubleshoot IP traffic issues.