Live data from Hacker News

Cloudflare API, dashboard, tunnels down

cloudflarestatus.com

51–60 of 93 posts

Re: Cloudflare API, dashboard, tunnels down

#51
post #41

Earlier quoted context omitted.

Such as?

1. DDoS Attacks 2. Port scanning attacks 3. Geolocation attacks (you shouldn't run a server from your home, when your IP Address could be used to find you; be it from a hack or an abuse of the legal process) 4. The US internet relying on a backbone mostly operated by 4 companies (meaning a direct connection is a massive perk) For as much as we moan about Amazon and Cloudflare centralizing things; believe me, just tak…

Those are problem and symptoms - not design flaws. How could one design a system that doesn't let DDoS exist on the network?

Re: Cloudflare API, dashboard, tunnels down

#53
post #43

I started leaning the Shopify CLI and syntax and was surprised to know that nothing works without Cloudflare tunnels. There is an option to use ngrok instead, but I have never seen such a setup for "local" development.

I used ngrok for Shopify dev; I didn't know there was such a thing as CF tunnels.

Re: Cloudflare API, dashboard, tunnels down

#54
post #14

If you’re waiting for the inevitable “this is why we shouldn't centralize everything”; this is that comment. As much as I like cloudflare and easy to use stuff, lets be a little bit mindful of the blast radius of highly centralized services which are even more complex to operate due to the scale of the deployment and problem scope. luckily this time its just administrative interfaces and supplemental services that as…

It's nice to at least be considering blast radius in a figurative manner, hope that lasts.

Re: Cloudflare API, dashboard, tunnels down

#56
post #28

Earlier quoted context omitted.

What's the impact for most sites if they go down a few times a year due to AWS/CloudFlare?

Whats the impact if the entire internet is down for a couple of hours? What if its more than a few hours because theres a natural monopoly and a dearth of capable people to run systems independently - thus no strong external incentive for rapid response outside of punitive SLAs? How much soft power do you think such an entity would have on the world stage.

> Whats the impact if the entire internet is down for a couple of hours?

People get some off-screen time? Life goes on.

> What if its more than a few hours because theres a natural monopoly?[...snip...] How much soft power do you think such an entity would have on the world stage.

They're just commodity infra providers. The Facebook and Twitters of the world have way more power and influence. This isn't even a hypothetical. The big cloud providers have been around for what, a decade or so now? How many times has the world collapsed with every Cloudflare or AWS downtime? It's just not as big a deal as you paint it to be. These providers going down is like the digital equivalent of a highway crash -- a small inconvenience for a few hours, then forgotten about in a day or two.

Re: Cloudflare API, dashboard, tunnels down

#58
post #43

I started leaning the Shopify CLI and syntax and was surprised to know that nothing works without Cloudflare tunnels. There is an option to use ngrok instead, but I have never seen such a setup for "local" development.

I used ngrok for Shopify dev; I didn't know there was such a thing as CF tunnels.

I don't know when this became the default, but if you don't define --tunnel-url it will use CF

Re: Cloudflare API, dashboard, tunnels down

#59

Downtime happens - no one is happy about it but it comes with the job and downtime will happen whether you use cloud or run on prem. Cloudflare at least accurately reflects the incident on their status page. Often dashboards will show everything green despite the service being down. In these moments communication is critical and Cloudflare does it well especially as we all know when it comes to the post mortem. They…

Has Akamai had a global outage? They are the largest player in the market and i don't recall one global outage from them.

Re: Cloudflare API, dashboard, tunnels down

#60
post #41

Earlier quoted context omitted.

Such as?

1. DDoS Attacks 2. Port scanning attacks 3. Geolocation attacks (you shouldn't run a server from your home, when your IP Address could be used to find you; be it from a hack or an abuse of the legal process) 4. The US internet relying on a backbone mostly operated by 4 companies (meaning a direct connection is a massive perk) For as much as we moan about Amazon and Cloudflare centralizing things; believe me, just tak…

I actually have a lot of respect for the big backbones. If Goog/MS/Amz owned them all, they'd find some way to wall it off from everyone else. If Comcast or Charter owned them all, our internet would cost about $1000 a month by now. All things considered, IMO they've been fairly good and fair stewards.
Post reply on HN