Live data from Hacker News

Don't trust your business with Linode

twitter.com

1–10 of 26 posts

Re: Don't trust your business with Linode

#3
post #2

Has anyone else had issues with Linode before? While this specific situation sucks, I feel like I’ve seen much more headache with AWS/GCP/Azure regarding people getting completely locked out of stuff.

It's always a risk when you're leasing computer resources from a 3rd party.

At least if you own the hardware, you won't lose your data (except in extreme cases where the government takes it, but if this is the case you're screwed and data / service loss is the least of your worries).

Re: Don't trust your business with Linode

#5
post #2

Has anyone else had issues with Linode before? While this specific situation sucks, I feel like I’ve seen much more headache with AWS/GCP/Azure regarding people getting completely locked out of stuff.

I received a third-party malware report from Linode once[0]. It’s possible that something has changed in the meantime since this was probably 4–5 years ago, but my own experience in a similar scenario was that Linode acted reasonably and in good faith. This tweet makes it sound like their policy and procedure hasn’t changed.

In my case, Linode opened an “AUP violation” ticket with a copy of the report, the steps they required to close the ticket (essentially: fix it and explain corrective measures), and a time when they would disable the server otherwise (which was something like 24 hours). It sounds like itch.io decided to ignore the AUP violation ticket and their server was disabled after 24 hours, just like the ticket said it would. (Waiting on a support ticket instead of calling also seems like a weird bad choice when your whole site is offline.)

I guess, having some first-hand experience with Linode’s malware handling process, that itch.io were at fault here, but I guess there may be more to the story they haven’t shared or weren’t clear on.

[0] Actually twice; some internet vigilante hooked up a virus scanner to a web crawler and was sending false positive reports directly to the abuse address for the netblock. After the second one I kindly suggested Linode stop accepting these reports, and never heard anything again.

Re: Don't trust your business with Linode

#6
post #3
post #2

Has anyone else had issues with Linode before? While this specific situation sucks, I feel like I’ve seen much more headache with AWS/GCP/Azure regarding people getting completely locked out of stuff.

It's always a risk when you're leasing computer resources from a 3rd party. At least if you own the hardware, you won't lose your data (except in extreme cases where the government takes it, but if this is the case you're screwed and data / service loss is the least of your worries).

People have backups on another cloud / on premise right?

Re: Don't trust your business with Linode

#7
post #3

Earlier quoted context omitted.

It's always a risk when you're leasing computer resources from a 3rd party. At least if you own the hardware, you won't lose your data (except in extreme cases where the government takes it, but if this is the case you're screwed and data / service loss is the least of your worries).

People have backups on another cloud / on premise right?

That's a lot of work to do right. Probably rare in the wild.

Re: Don't trust your business with Linode

#8
post #7

Earlier quoted context omitted.

People have backups on another cloud / on premise right?

That's a lot of work to do right. Probably rare in the wild.

> That's a lot of work to do right.

Compared to?

Backups are something you should have regardless, an account with other providers and means to spin up some nodes is just basic common sense.

Vote with your wallet, let the execs know and never come back, it's honestly that simple.

Re: Don't trust your business with Linode

#9
post #7

Earlier quoted context omitted.

That's a lot of work to do right. Probably rare in the wild.

> That's a lot of work to do right. Compared to? Backups are something you should have regardless, an account with other providers and means to spin up some nodes is just basic common sense. Vote with your wallet, let the execs know and never come back, it's honestly that simple.

Agreed. It's easy to get a false sense of security with s3 / object storage being so reliable.

Always better to have an escape hatch and corresponding protocols in place.

Re: Don't trust your business with Linode

#10

My friend just got pwned by a malicious itch.io game a few days ago. They didn't reply to my report, but seemed to have taken it down after a couple days.

Later versions of windows 10 and up has a sandbox feature (https://learn.microsoft.com/en-us/windows/security/threat-pr...) you can enable to run random exes, also advised you keep a free malware scanner active etc. I resurrected an ancient piece of hardware recently and in the hunt for drivers these were key.
Post reply on HN