Using cloudflare as front-end proxy make it much more difficult to really stop the botnet, as everything is going through CloudFlare, server cannot stop accepting requests from it, including those from botnet.
My suggestion is to bypass cloudflare in such case, see if it can defeat the attack.