4 ms·
CloudFlare. It's free and bulletproof, even if you don't use their protective reverse proxy you can use their DNS service for free and it has a dynamic updating
by problems 10y ago
CloudFlare. It's free and bulletproof, even if you don't use their protective reverse proxy you can use their DNS service for free and it has a dynamic updating API.
Unlike other providers (looking at you Amazon with your handling of Wikileaks) they've also proven themselves willing to stand up for their customers, even free ones legally.
- brianwawok 10y agoCloudflare is not bulletproof. Had several times where cloudflare proxy plus my Nginx server got stuck in infinite loops making everything time out. No logical reason why. Switched to cloudCDN and 0 problems since.
- problems 10y agoSounds like your app was doing something weird as I've not had any issues using a similar setup. What's this cloudCDN thing? Can't find it on Google.
- brianwawok 10y agohttps://cloud.google.com/cdn/docs/ https://cloud.google.com/cdn/docs/ Check a checkbox, and your static stuff gets CDNed. Seems a lot better than letting another service control you, perhaps put up CAPATCHAs, perhaps mess up your networking, etc.
- problems 10y ago> Seems a lot better than letting another service control you, perhaps put up CAPATCHAs, perhaps mess up your networking, etc. Disabling the CAPTCHAs is trivial, just set the security features to low or off. This does basically the same thing in terms of "mess up your networking" though. All your traffic is just routed through Google instead of CloudFlare. No real difference there. You can also kick the CF security up if you get attacked. Google's will however cost you a crapload if someone decides to run even a fairly primitive layer 7 attack against you. So you better just hope you don't get hit, unless I'm missing something excluding attack bandwidth?
- mbrukman 10y agoGoogle does do some automatic DDoS protection for you: https://cloud.google.com/files/GCPDDoSprotection-04122016.pdf https://cloud.google.com/files/GCPDDoSprotection-04122016.pd... I'm not sure if that addresses your concern, but hope this is helpful. Let me know either way. I'm a PM on Google Cloud, but not working on either CDN or DDoS protection.
- kalefranz 10y ago+1 for Cloudflare. For failover and such, I'm watching for how their traffic control and traffic manager features evolve. https://blog.cloudflare.com/cloudflare-traffic/ https://blog.cloudflare.com/cloudflare-traffic/
- kevin_b_er 10y agoThey will, however, acquire an SSL cert in your name for themselves when you use their DNS service.
- OJFord 10y agoWhat problems can that cause though? (Alternatively - does anything stop me acquiring an SSL cert in your name, despite me not being Cloudflare and you not having an account with me?)