▲ 547 ▼ Will it be a never ending war? (lemy.lol) submitted 3 years ago* (last edited 3 years ago) by w00t@lemy.lol to c/memes@lemmy.ml NSFW 49 comments fedilink hide all child comments
[–] redditcandoone@sopuli.xyz 85 points 3 years ago (3 children) What's cloudflare done? permalink fedilink source hideshow 6 child comments replies: [–] odium@programming.dev 92 points 3 years ago Cloudflare has human checks before you can access some sites. Some apps and screenreaders no longer work with those sites. permalink fedilink source parent [–] Saik0Shinigami@lemmy.saik0.com 69 points 3 years ago (1 child) They're all uppity that to use cloudflare proxy they have to terminate the ssl connection there. So technically cloudflare can sniff all the traffic. But that's kind of the point of WAFs and Reverse Proxies. I would argue that the sheer amount of data throughput that Cloudflare has, you'd have to really be on a list to be monitored... and they certainly cannot just log all data willy nilly. permalink fedilink source parent hideshow 2 child comments replies: [–] r00ty@kbin.life 35 points 3 years ago (1 child) I suppose this one is quite simple. How can they cache, if they don't MitM the connection? I don't think it would be technically possible. If you want the cache/CDN you just need to use a company you trust. If you don't trust them then you don't get the cache/CDN. permalink fedilink source parent hideshow 2 child comments replies: [–] Saik0Shinigami@lemmy.saik0.com 22 points 3 years ago Correct. But people are viewing the DDOS protection, Cache, WAF, etc... functions as evidence that Cloudflare is obviously malicious and storing 100% of all data traversing them. I've seen no evidence of that yet, and will certainly discontinue use of them if they show such tendencies. Until then, I will absolutely leverage their platform for my use as a paying customer. I do understand the fear with their free platform though... They've gotta make money somehow, and I feel there's probably a fear that is data collection. permalink fedilink source parent [–] w00t@lemy.lol [S] 19 points 3 years ago (4 children) No high-profile cases yet, but some people are already concerned: https://crimeflare.eu.org/ permalink fedilink source parent hideshow 8 child comments replies: [–] xusontha@ls.buckodr.ink 31 points 3 years ago* Doesn't load, maybe they need Cloudflare lol (i'm joking don't send me to internet hell) Wayback doesn't seem to work with it either permalink fedilink source parent [–] qaz@lemmy.world 9 points 3 years ago* I might be missing something but the document seems to be comparing Cloudflare to the great firewall of China and calling them criminal because of things they could potentially do? permalink fedilink source parent [–] 01189998819991197253@infosec.pub 7 points 3 years ago (1 child) Only works on http, and just redirects to https://0xacab.org/dCF/deCloudflare/-/blob/master/README.md permalink fedilink source parent hideshow 2 child comments replies: [–] Double_A@discuss.tchncs.de 3 points 3 years ago* It would help if that site wouldn't look like it was written by some crazy person trying to make a shitpost... permalink fedilink source parent [–] Brimos@lemmy.world 6 points 3 years ago Site appears to be down. What is this for? permalink fedilink source parent
[–] odium@programming.dev 92 points 3 years ago Cloudflare has human checks before you can access some sites. Some apps and screenreaders no longer work with those sites. permalink fedilink source parent
[–] Saik0Shinigami@lemmy.saik0.com 69 points 3 years ago (1 child) They're all uppity that to use cloudflare proxy they have to terminate the ssl connection there. So technically cloudflare can sniff all the traffic. But that's kind of the point of WAFs and Reverse Proxies. I would argue that the sheer amount of data throughput that Cloudflare has, you'd have to really be on a list to be monitored... and they certainly cannot just log all data willy nilly. permalink fedilink source parent hideshow 2 child comments replies: [–] r00ty@kbin.life 35 points 3 years ago (1 child) I suppose this one is quite simple. How can they cache, if they don't MitM the connection? I don't think it would be technically possible. If you want the cache/CDN you just need to use a company you trust. If you don't trust them then you don't get the cache/CDN. permalink fedilink source parent hideshow 2 child comments replies: [–] Saik0Shinigami@lemmy.saik0.com 22 points 3 years ago Correct. But people are viewing the DDOS protection, Cache, WAF, etc... functions as evidence that Cloudflare is obviously malicious and storing 100% of all data traversing them. I've seen no evidence of that yet, and will certainly discontinue use of them if they show such tendencies. Until then, I will absolutely leverage their platform for my use as a paying customer. I do understand the fear with their free platform though... They've gotta make money somehow, and I feel there's probably a fear that is data collection. permalink fedilink source parent
[–] r00ty@kbin.life 35 points 3 years ago (1 child) I suppose this one is quite simple. How can they cache, if they don't MitM the connection? I don't think it would be technically possible. If you want the cache/CDN you just need to use a company you trust. If you don't trust them then you don't get the cache/CDN. permalink fedilink source parent hideshow 2 child comments replies: [–] Saik0Shinigami@lemmy.saik0.com 22 points 3 years ago Correct. But people are viewing the DDOS protection, Cache, WAF, etc... functions as evidence that Cloudflare is obviously malicious and storing 100% of all data traversing them. I've seen no evidence of that yet, and will certainly discontinue use of them if they show such tendencies. Until then, I will absolutely leverage their platform for my use as a paying customer. I do understand the fear with their free platform though... They've gotta make money somehow, and I feel there's probably a fear that is data collection. permalink fedilink source parent
[–] Saik0Shinigami@lemmy.saik0.com 22 points 3 years ago Correct. But people are viewing the DDOS protection, Cache, WAF, etc... functions as evidence that Cloudflare is obviously malicious and storing 100% of all data traversing them. I've seen no evidence of that yet, and will certainly discontinue use of them if they show such tendencies. Until then, I will absolutely leverage their platform for my use as a paying customer. I do understand the fear with their free platform though... They've gotta make money somehow, and I feel there's probably a fear that is data collection. permalink fedilink source parent
[–] w00t@lemy.lol [S] 19 points 3 years ago (4 children) No high-profile cases yet, but some people are already concerned: https://crimeflare.eu.org/ permalink fedilink source parent hideshow 8 child comments replies: [–] xusontha@ls.buckodr.ink 31 points 3 years ago* Doesn't load, maybe they need Cloudflare lol (i'm joking don't send me to internet hell) Wayback doesn't seem to work with it either permalink fedilink source parent [–] qaz@lemmy.world 9 points 3 years ago* I might be missing something but the document seems to be comparing Cloudflare to the great firewall of China and calling them criminal because of things they could potentially do? permalink fedilink source parent [–] 01189998819991197253@infosec.pub 7 points 3 years ago (1 child) Only works on http, and just redirects to https://0xacab.org/dCF/deCloudflare/-/blob/master/README.md permalink fedilink source parent hideshow 2 child comments replies: [–] Double_A@discuss.tchncs.de 3 points 3 years ago* It would help if that site wouldn't look like it was written by some crazy person trying to make a shitpost... permalink fedilink source parent [–] Brimos@lemmy.world 6 points 3 years ago Site appears to be down. What is this for? permalink fedilink source parent
[–] xusontha@ls.buckodr.ink 31 points 3 years ago* Doesn't load, maybe they need Cloudflare lol (i'm joking don't send me to internet hell) Wayback doesn't seem to work with it either permalink fedilink source parent
[–] qaz@lemmy.world 9 points 3 years ago* I might be missing something but the document seems to be comparing Cloudflare to the great firewall of China and calling them criminal because of things they could potentially do? permalink fedilink source parent
[–] 01189998819991197253@infosec.pub 7 points 3 years ago (1 child) Only works on http, and just redirects to https://0xacab.org/dCF/deCloudflare/-/blob/master/README.md permalink fedilink source parent hideshow 2 child comments replies: [–] Double_A@discuss.tchncs.de 3 points 3 years ago* It would help if that site wouldn't look like it was written by some crazy person trying to make a shitpost... permalink fedilink source parent
[–] Double_A@discuss.tchncs.de 3 points 3 years ago* It would help if that site wouldn't look like it was written by some crazy person trying to make a shitpost... permalink fedilink source parent
[–] Brimos@lemmy.world 6 points 3 years ago Site appears to be down. What is this for? permalink fedilink source parent