4 ms·
Can you elaborate on that?
by JosephRedfern 9y ago
Can you elaborate on that?
- tempay 9y agoOP is probably referring to [1] or the general fact that they MITM most traffic that uses their services. [1] https://blog.cloudflare.com/incident-report-on-memory-leak-caused-by-cloudflare-parser-bug/ https://blog.cloudflare.com/incident-report-on-memory-leak-c...
- dingo_bat 9y agoTbf that's the actual service they offer. It's not like they are being sneaky.
- tialaramex 9y agoTo be sure, but anybody using CloudFlare needs to keep in the back of their head that everything going through CF is not only accessible to a hypothetical Bad Guy at CloudFlare it can also (and remember has, this is a real bug that happened) get exposed to unrelated parties on the Internet if CF mixes your data with somebody else's by mistake. This makes CF seem fine for your different variants of popcorn.gif, your (subresource integrity checked) Javascript implementation of the VIC-20 computer, or a public blog post, and NOT so great for patient access to histology results, private web forums, banking, and many other things on the Web.
- matthewmacleod 9y agoOf course they do that. How else would such a service possibly operate?
- vader1 9y agoBy offering two different models and letting you choose between them for each hostname under Cloudflare. 1) Injecting themselves on the application layer (the current model) 2) Injecting themselves on the network layer, passing through only encrypted traffic between the client and your servers Not every feature they currently offer would still be possible in model #2, but most of them (including DDOS protection) can still work in a limited fashion.