| ▲ | SCUSKU an hour ago |
| I would love if there was some content here besides vague posting about Cloudflare bad. Like why? There truly is no thesis to convince me right now. Also love the irony of getting an HN hug of death w/o Cloudflare |
|
| ▲ | amiga-workbench an hour ago | parent [-] |
| I can't shake the feeling that since its dealing with a huge amount of network traffic and it also strips SSL from every connection before passing it onto origins, they are a very juicy target for a certain three letter agency to place a tap. The bit I'm less bothered about is the centralising effect it has on the internet. |
| |
| ▲ | tomrod an hour ago | parent | next [-] | | Nah, they only recently got FedRAMP high. The real traffic still can't use it. | |
| ▲ | juliend2 an hour ago | parent | prev [-] | | > strips SSL from every connection before passing it onto origins What do you mean? You definitely can serve with TLS end-to-end with CF, it's called Full (strict) mode, or something like that. | | |
| ▲ | thesh4d0w an hour ago | parent | next [-] | | They're still decrypting on their nodes, and then re-encrypting before sending to the origin. There's no getting around the fact they can see the traffic as plain text. | | | |
| ▲ | skinfaxi an hour ago | parent | prev [-] | | And they issue certs in your name, right? |
|
|