Live data from Hacker News

Warp – Mobile VPN

blog.cloudflare.com

111–120 of 500 posts

Re: Warp – Mobile VPN

#113
post #100

Earlier quoted context omitted.

What about web sites hosted on or proxied by CF with nag screens and captchas blocking my IP? I like and use 1.1.1.1 though.

We don't host web sites. What nag screens are you talking about?

Those "cloudflare loading" screens that come up when visiting some low-traffic sites. It's probably more common for people using privacy blockers and browser containers to block tracking. I see it at least a few times per day and I get captchas on almost any site that uses them (regardless of being behind cloudflare).

Re: Warp – Mobile VPN

#114
> 1. We don't write user-identifiable log data to disk;

> 2. We will never sell your browsing data or use it in any way to target you with advertising data;

Is it just me or are these terms super-specific? They can easily be circumvented to achieve real logging, especially at Cloudflare's scale. While I trust Cloudflare as a company, I feel like they're being a bit disingenuous here.

Re: Warp – Mobile VPN

#116

It seems to me that in practice, Cloudflare's mission is not actually to build a better Internet, but to offer an alternative, proprietary network (one could call it the CloudflareNet), and convince content providers and consumers to use that network. Because I don't want any single company to have too much power, I'll stick with the standard Internet, which is not owned by any single company. However, I realize that…

I disagree with this statement. We haven't pushed incompatible standards or any other nonsense. We've literally pushed out the latest standards and enabled more encryption (see Universal SSL making SSL free years before Let's Encrypt; see enabling IPv6; enabling HTTP/2; etc. etc.). As for HTTP/3... so will we. See: https://blog.cloudflare.com/http-3-from-root-to-tip/ , https://blog.cloudflare.com/the-road-to-quic/ an…

Fair point. I especially appreciate that even Workers is based on a W3C standard, when it could have been a proprietary API.

However, Cloudflare has also adopted and promoted at least one standard that adds complexity for dubious benefit, specifically DNSSEC, which tptacek has repeatedly criticized (e.g. [1]).

Moreover, Cloudflare is encouraging both providers and consumers to bypass the public Internet as much as possible in favor of Cloudflare's network and proprietary protocol(s). For providers, this is done through Argo and especially Argo Tunnel. And now for consumers, Warp is replacing the standard TCP with a proprietary protocol built on UDP.

Now that Cloudflare has proprietary replacements for the standard Internet on both sides, it can start taking advantage of network effects to make its proprietary network attractive to still more providers and consumers. As Cloudflare's power grows, it becomes harder to escape any future abuses of that power, as well as honest mistakes on Cloudflare's part.

I realize the standard Internet sucks in some ways, and Cloudflare is doing something about that. But I think the right answer is to improve the standards-based Internet, not offer a proprietary replacement. I suppose that's not compatible with running a VC-backed business, though.

[1]: https://news.ycombinator.com/item?id=10553371

Re: Warp – Mobile VPN

#117
post #24

I've downloaded 1.1.1.1 fresh from Google Play just now, but I don't see any "get in line" option. Buried somewhere, or Google still staggering out the latest version of the app?

I did the same and it was at the top of the screen with the big button to enable DNS. It was not labeled "Warp" or "VPN" (in keeping with the "A VPN for People Who Don’t Know What V.P.N. Stands For" theme I suppose).

Re: Warp – Mobile VPN

#118

Earlier quoted context omitted.

> What I found most interesting, was that there were some use-cases when the network with Wireguard performed even better than without it (probably related to congestion control). It could be the different routing. Your ISP's routing might be sub-optimal to certain destinations. After all, it chooses routes based (at least in part) on cost, not performance. There are commercial products that do this sort of tunneling…

Possible but I am not exactly sure what caused the difference. I used fast.com for testing and when I increased the number of parallel connections the performance degradation was lower when using Wireguard. I assumed that it is related to congestion control as Wireguard uses UDP AFAIK and otherwise I would use TCP on the bottleneck part of the connection.

The ISP might be doing it knowing you're connecting to Netflix. But if you do a VPN, they don't know those specific packets are going to Netflix, so they can't shape the packets.

Re: Warp – Mobile VPN

#119
post #88

I don't trust this, or these people. No matter what words they use, the model is a dangerous one and we should be just as wary of it coming from cloudflare as we would if it were coming from google.

Why?

US startups are not exactly trustworthy by default and VC backing seems to often force them to abuse any power and control they have over users for VCs benefits. And security and privacy these days more often than not is just a cover to do something bad, from simple anti-competitive practices to outright evil causes that help killing people.

Re: Warp – Mobile VPN

#120
post #88

I don't trust this, or these people. No matter what words they use, the model is a dangerous one and we should be just as wary of it coming from cloudflare as we would if it were coming from google.

Why?

because he smoked too many marijuanas last night
Post reply on HN