Live data from Hacker News

1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

webcache.googleusercontent.com

221–230 of 253 posts

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#221

Earlier quoted context omitted.

Fuck I hate this. I've avoided buying storage servers from ixsystems, despite the fact their products seem to be exactly what we need, because they won't tell me how much they fucking cost. They want to have a "conversation" about "solutions". Fuck you. Sell me boxes and tell me how much they cost. But they won't.

I work for a vendor and I'm not allowed to tell my clients pricing because I'm not qualified to make deals. We don't even have a list price published internally, it's all at the salesman's discretion. That means some clients pay $150k, some pay $300k, some get it for free bundled with another purchase. Far too often I'm asked "budgetary pricing" but even that is a conversation with a solution architect and a virtual…

I'm going through this right now. I'm sure we are not willing to pay the price but some VP wants a commercial solution not an in-house solution. So I have to get quotes from enterprise vendors and cannot get even ballpark numbers out of them without at least 3 meetings and where they basically try to get our finances (but maybe I'll get some tickets to NBA playoffs or something in a Faustian bargain). I never want to hear "we grow as you grow" or any form of that ever again.

Last project I could have spent that money to pay for 3-4 additional full time engineers for 3 years and built a better solution with open source because I still had to devote 2 plus myself to do integration. And then didn't have overpriced SMS for the next decade and licensing headaches and afford to keep at least 1 of the engineers indefinitely.

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#222
post #186

Earlier quoted context omitted.

opt-in vs. opt-out

Not sure your point. Who exactly do you anticipate is opt-ing? The website owner's settings defaults to secure, and they can intentionally take action to make the website less secure if they'd like to. That is their decision, of course we do not default to a less secure posture.

What I meant. This default setting is the reason why Cloudflare is not off the hook here. This is the default, so website owners who don't care or know about it won't change it. Like all default settings where you have to actively change it.

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#223
post #12

The concerning thing about this is that internet is increasingly dependent on Cloudflare, making it a single point of failure and exploitation. Somehow, people are not talking much about it, but a significant amount of sites have opted in for Cloudflare proxying, allowing it to see the traffic in plain text, while the visitors are made to believe that the connection is secure. Similarly, users will now use their fast…

Cloudflare is nothing compared to amazon and google.

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#224
post #209
post #177

Earlier quoted context omitted.

Why do startups that sell to other startups hire sales people to do this instead of just having clear pricing? Obviously they must extract some value for the business but the experience of haggling with some sales bro to get a decent price leaves me so annoyed with services that I usually skip signing up when it’s the only option. > Let’s talk about solutions! No thanks. I just want to insert dollars and get the serv…

Mainly because it makes boatloads more money than a single cookie cutter option.

I’d pay more money for an option without the endless phone calls and emails, it’s like advertising that you have to listen to.

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#226
post #12

The concerning thing about this is that internet is increasingly dependent on Cloudflare, making it a single point of failure and exploitation. Somehow, people are not talking much about it, but a significant amount of sites have opted in for Cloudflare proxying, allowing it to see the traffic in plain text, while the visitors are made to believe that the connection is secure. Similarly, users will now use their fast…

What makes that even worse is that Cloudflare is vehemently against anonymity on the Internet. I get it, it is part of their business model, but with the privacy concerns today ... well ... let's just say I am not a fan of theirs.

What makes you say that? They are well known for their IP reputation based captchas. The IPs with bad reputation are often services which exist to provide anonymity (vpns and Tor). They have done some interesting research into using zero knowledge proofs to allow good actors to bypass that without compromising privacy. There would be a lot of easier options if they were "vehemently against anonymity" than to make https://blog.cloudflare.com/cloudflare-supports-privacy-pass...

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#227

Earlier quoted context omitted.

No. 1.1.1.0/24 was not allocated because idiots poisoned it. For a long time address ranges like these were left unused because it wasn't worth anybody's time handling the problems but since IPv4 is now full we may as well do what we can with them. So China Telecom will never have been given 1.1.1.0/24

Indeed, and there was always great worry about how polluted that IP space might be. I posted this link elsewhere: https://www.merit.edu/wp-content/uploads/2016/01/1.0.0.08.pd...

Very insightful slides. I was wrong about 1.1.1.0/8

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#228
post #12

The concerning thing about this is that internet is increasingly dependent on Cloudflare, making it a single point of failure and exploitation. Somehow, people are not talking much about it, but a significant amount of sites have opted in for Cloudflare proxying, allowing it to see the traffic in plain text, while the visitors are made to believe that the connection is secure. Similarly, users will now use their fast…

What about akamai? They are a much larger CDN (no one talks about it on HN because they are not a startup). I agree with your assertion that it will become a single point of failure with many web properties but also I think that HN has a sort of filter bubble on startups (for obvious reasons) and I'm not sure cloudflare is as big as people make it out to be. Also, Google has 8.8.8.8 which could be for the same thing…

For completeness remember Google's 8.8.4.4

    google-public-dns-a.google.com 8.8.8.8
         IPv6 address 2001:4860:4860::8888

    google-public-dns-b.google.com 8.8.4.4
         IPv6 address 2001:4860:4860::8844

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#229
post #187
post #12

The concerning thing about this is that internet is increasingly dependent on Cloudflare, making it a single point of failure and exploitation. Somehow, people are not talking much about it, but a significant amount of sites have opted in for Cloudflare proxying, allowing it to see the traffic in plain text, while the visitors are made to believe that the connection is secure. Similarly, users will now use their fast…

CloudFlare has done a great job convincing everyone that putting them in the middle and letting them proxy everything is a standard configuration that you need, and if you're not doing it your site will be too slow etc.

In most cases smaller websites are regional and can be better served without CloudFlare introducing proxy delays, slower speeds. The ease of adding ssl is offsetted by the privacy hole that forwarding everything to cloudflaire creates.

Re: 1.1.1.1 Cloudflare DNS Resolver Soon to Be Announced?

#230
post #198

Earlier quoted context omitted.

It's because just having a pricing page doesn't give any feedback as to whether the price is correct or not. A salesperson could at least ask 'what is a better price we can shoot for?' or 'what features do you really need?' whereas a visitor to a pricing page just disappears.

You can A/B test pricing, Amazon does it all the time. You can have a pricing page that says "If this seems off to you, let us know and we'll talk" like Papertrail does. There are plenty of options, but if you're worried about customers walking away, you're losing tons of them by making them call you first.

Pricing is hard.

Your platform may have 1000's of features, not all of which all your clients want or can pay for. Packaging into simple groups may not possible until you have the volumes to figure out what works

Many clients need specific features that you don't have yet, pricing calculation becomes very complex, and depends on customer to customer as well. We will charge more to some customers simply because we know they need a lot of hand holding and special assistance

Post reply on HN