Live data from Hacker News

Cloudflare for Offices

blog.cloudflare.com

11–16 of 16 posts

Re: Cloudflare for Offices

#12

how does this compare to simply using zerotier or tailscale?

Cloudflare Access does Zero Trust, something like Tailscale provides a mesh network with SSO. Tailscale has cool ACL rules, but it's not really the best way to implement true Zero Trust, especially for web applications. I personally use Tailscale for as its a lot easier to use when you're the only one on the network compared to configuring Access for everything, but CF's zero trust stuff is quite enticing if you're r…

> Tailscale has cool ACL rules, but it's not really the best way to implement true Zero Trust, especially for web applications.

authzed.com is a better fit if you need ACLs for your web properties (Tailscale ACLs are super-clean though and I fully intend to copy it for one of my projects).

Re: Cloudflare for Offices

#13
When I think of Cloudflare workers and such, I think of the public internet. If you have a public web app and you want low latency all around the globe, a worker is a great option.

This is the opposite of that. Are they targeting "inhouse apps" that until now would be self hosted by the organization? Basically cloud apps where the cloud is in your own building? Do they have good firewalls and access control for that, for different businesses in the same building? Can a business in the future install their own one of these?

Or is this just about businesses having access to the full Cloudflare network, just a little bit faster?

Re: Cloudflare for Offices

#14
> First and foremost, it eliminates the need to rely on the costly, rigid hardware solutions

Instead, you have to depend on "free" (wrapped up in subscription charges), rigid hardware solutions provided only by Cloudflare.

It's an interesting product, and furthers Cloudflare's dominance strategy. It provides real value and at a cost that is invisible.

Re: Cloudflare for Offices

#16
Physical security of these boxes is really interesting (e.g. as CF holds a lot of SSL certificates the profit of hacking into these boxes is likely a lot higher than looks at first glance)
Post reply on HN