Live data from Hacker News

Warp – Mobile VPN

blog.cloudflare.com

91–100 of 500 posts

Re: Warp – Mobile VPN

#91
post #88

I don't trust this, or these people. No matter what words they use, the model is a dangerous one and we should be just as wary of it coming from cloudflare as we would if it were coming from google.

Why?

Re: Warp – Mobile VPN

#92
It's good have another VPN from a player with huge network infrastructure like Cloudflare, but the article seems to digress frequently.

>TCP, the foundational protocol of the Internet, was never designed for a mobile environment.

Packet loss due this is mentioned, but I don't see a relevance to the new VPN service; especially when the next section talks about wrap using UDP.

> We’ve built Warp around a UDP-based protocol

Other VPN providers do offer an option of choosing TCP/UDP as per usage i.e. better reliability vs faster speed.

I'm glad that it uses Wireguard, but it's likely other major VPN providers are working on a Wireguard version for their clients & so in the end it would come down to speed/price/privacy which hopefully cloudflare can compete with.

Re: Warp – Mobile VPN

#93

> We built Warp around WireGuard So basically Cloudflare created an app with Cloudflare branding and set up a Wireguard server for everyone. No bad, but just check out the original: https://www.wireguard.com While I am not a big fan of VPNs in general, I have to admit, that Wireguard performs exceptionally well. I tested it a week ago and the added latency is pretty much just the network latency and the bandwidth los…

From personal experience:

When coupled with an DNS based ad blocker Wireguard can actually make your internet faster than when not using it.

More so on Android than iOS and more so on mobile than fixed, but still feels so much smoother.

you can even only forward the DNS requests and not the rest of the data so your home upload speed won't become your bottleneck.

Re: Warp – Mobile VPN

#94

It seems to me that in practice, Cloudflare's mission is not actually to build a better Internet, but to offer an alternative, proprietary network (one could call it the CloudflareNet), and convince content providers and consumers to use that network. Because I don't want any single company to have too much power, I'll stick with the standard Internet, which is not owned by any single company. However, I realize that…

I'd be interested to see your evidence for such a statement and better understand what exactly makes you think Cloudflare's mission is to build a proprietary network?

Pretty much most if not all of Cloudflare's services and work suggest the complete opposite to me.

Like other commenters, Cloudflare for me is probably one of the only companies I truly trust. I'm not saying that because I'm a big user of there services in fact 1.1.1.1 is the only service I actively use.

Re: Warp – Mobile VPN

#95
post #64
post #19

Earlier quoted context omitted.

1.1.1.1 doesn't use eDNS and likely never will: https://developers.cloudflare.com/1.1.1.1/nitty-gritty-detai... So geo-specific things will break... BBC.com should load though since its for out-of-UK people

Site should load just fine without eDNS -- even "geo-specific" ones. They will just route you as if you came from your local Cloudflare PoP rather than your home IP; usually not a big difference since Cloudflare is in so many locations. I'm not having any trouble with bbc.co.uk on 1.1.1.1, maybe it was a temporary hiccup. (Disclosure: I work for Cloudflare but not on this product.)

> not a big difference

I am getting more than 300ms difference to google.com

https://pastebin.com/raw/QnbWXU1a

Re: Warp – Mobile VPN

#96
"Hokey as it sounds, the primary reason we built Warp is that our mission is to help build a better Internet — and the mobile Internet wasn’t as fast or secure as it could be and VPNs all suck. Time and time again we've watched people sit around and talk about how the Internet could be better if someone would just act. We're in a position to act, and we've acted."

By doing the least work possible: creating a proxy. They haven't actually fixed the internet at all, they just made a new middle box.

Re: Warp – Mobile VPN

#97
post #27

I currently use DNS66 for ad blocking on android without root. Is there a way to do something similar while using this app? Alternatively, I have a Xperia XA1 running a June 5, 2017 security patch. It's been my intent for a long time now to figure out how to get root without unlocking the boot loader the sony approved way (which makes the camera less functional). Anyone have any pointers on easy to exploit privilege…

You are worried about unlocking bootloader (which you should) for rooting or system less mod, but okay for an exploit operating from user space?

Re: Warp – Mobile VPN

#98

> We built Warp around WireGuard So basically Cloudflare created an app with Cloudflare branding and set up a Wireguard server for everyone. No bad, but just check out the original: https://www.wireguard.com While I am not a big fan of VPNs in general, I have to admit, that Wireguard performs exceptionally well. I tested it a week ago and the added latency is pretty much just the network latency and the bandwidth los…

> What I found most interesting, was that there were some use-cases when the network with Wireguard performed even better than without it (probably related to congestion control).

It could be the different routing.

Your ISP's routing might be sub-optimal to certain destinations. After all, it chooses routes based (at least in part) on cost, not performance.

There are commercial products that do this sort of tunneling (among other things) to lower routing latencies.

Re: Warp – Mobile VPN

#99
Cloudflare is one of the companies I trust and use . But in every company's life cycle, there will be a time when some other company (Google, Facebook and other usual evils) comes forward to buy this company out, will they hold off? or will they go public? What happens next is a store for another time!

Re: Warp – Mobile VPN

#100

It seems to me that in practice, Cloudflare's mission is not actually to build a better Internet, but to offer an alternative, proprietary network (one could call it the CloudflareNet), and convince content providers and consumers to use that network. Because I don't want any single company to have too much power, I'll stick with the standard Internet, which is not owned by any single company. However, I realize that…

I disagree with this statement. We haven't pushed incompatible standards or any other nonsense. We've literally pushed out the latest standards and enabled more encryption (see Universal SSL making SSL free years before Let's Encrypt; see enabling IPv6; enabling HTTP/2; etc. etc.). As for HTTP/3... so will we. See: https://blog.cloudflare.com/http-3-from-root-to-tip/ , https://blog.cloudflare.com/the-road-to-quic/ an…

What about web sites hosted on or proxied by CF with nag screens and captchas blocking my IP?

I like and use 1.1.1.1 though.

Post reply on HN