Live data from Hacker News

Cloudflare Warp

1.1.1.1

111–120 of 196 posts

Re: Cloudflare Warp

#111

why tf does the whole screen change color when I try to highlight text?! ughghg scroll jank nausea forget ad blockers I need a css blocker

Double clicking the background apparently toggles the dark mode. Because you know, people love toggling dark mode on and off and web sites must make it so much easier even at the cost of overriding default behaviors.

Re: Cloudflare Warp

#112

If you use Apple relay service is this still relevant?

Probably. As far as I know, the Apple Relay only works in the browser. So your torrent clients and other apps can still bypass it and directly access their servers. Warp+ is a VPN.

Re: Cloudflare Warp

#113
post #60

Earlier quoted context omitted.

Yup. A bit less catchy than “Don’t be evil” but it’s the same. Cloudflare is what Google was 20 years ago. The cycle can only break by decentralized protocols.

> The cycle can only break by decentralized protocols. I disagree. The cycle can break by breaking up the monopolies so that one company doesn't control everything, and allow free market to expand. Competition keeps people from being evil. Evil only happens when there's no reason for them to NOT do evil things. Google was fine until they became the top dog and nobody could even compete.

> Competition keeps people from being evil. Evil only happens when there's no reason for them to NOT do evil things.

I don’t agree. People generally don’t steal, but if they have no food, they will resort to theft to survive. Competition can prevent some ill effects of monopolistic tyranny, which I think is what you’re getting at here, but it breeds other evils.

Re: Cloudflare Warp

#114

I don't quite understand this. Is this just a normal VPN?

Yes. Except that it uses Wireguard (more efficient and a modern protocol), and sites using Cloudflare can still see your IP.

You can't change the exit node (the server that web sites see), and is free, unlike most commercial VPN providers.

Re: Cloudflare Warp

#115

Earlier quoted context omitted.

Your ISP can collect your traffic history AND trivially connect that history to your identity, and sell/provide data to brokers, TLAs, police etc. Cloudflare can collect your traffic history, but can only connect that history to your originating IP + timestamp. Their official client may be able to collect more info though. But, warp is just wireguard, so you do not need to run their official client there are shell/py…

> Your ISP can collect your traffic history AND trivially connect that history to your identity, and sell/provide data to brokers, TLAs, police etc. That's exaggerating quite a bit. Maybe in 2005 they had that sort of insight, but with HTTPS everywhere things are different. Your ISP can only see which IPs you're connecting to, possibly which hosts you're looking up depending on your setup but DNS-over-TLS and the lik…

SNI is majority clear-text today, so your ISP can collect the sites you are visiting and not just their IPs even with TLS. Hopefully that changes soon.

Your point about cloudflare having even more access to your browsing details than the list of sites you have visited that your ISP can collect is a good point. It is kinda crazy how so many companies are OK with a 3rd party terminating TLS for them. And, back on the first point, most sites that do support ESNI today are behind Cloudflare (makes your point even stronger).

But, still, Cloudflare would have to be snooping on content to correlate identity (at Cloudflare scale, that means they would have to already be targeting you), while your ISP already has it.

For me personally (stuck with Verizon which is known to snoop and sell data), I prefer "trusting" Cloudflare until they are shown to be a bad actor like Verizon too.

Re: Cloudflare Warp

#116
post #60
post #29

> Your Internet service provider can see every site and app you use—even if they’re encrypted. Some providers even sell this data, or use it to target you with ads. > We believe privacy is a right. We won't sell your data, ever. "We, the people who make up this company now, but not in the future, PROMISE." I notice they didn't say "we don't keep the data." According to the comments, this is just wireguard. I deployed…

Yup. A bit less catchy than “Don’t be evil” but it’s the same. Cloudflare is what Google was 20 years ago. The cycle can only break by decentralized protocols.

And in time, Cloudflare will be what Google is now. Better stay away from them, so we don't end locked in, like we did with Google. They will start using their role as the internet proxy as a lever soon, prioritizing the sites they like and slowing down the sites they don't.

Re: Cloudflare Warp

#117

Earlier quoted context omitted.

They have terminated service for 8chan, The Daily Stormer, and KiwiFarms. I'll leave it up to you to determine how fair of a description "censored" is.

Even though those three website are filth, they have objectively been censored by Cloudflare. What's the confusion here? Just be honest about it and say Cloudflare censors content they don't agree with. Why the tiptoeing around this fact?

Sure, you can roll with this definition of 'censored', but it makes the term almost meaningless.

Would you describe HN as a "censored" forum because they engage in moderation? Even 4chan doesn't allow child porn, would it also be accurately described as censored?

Generally, when we refer to a platform as 'censored' we do so for much stronger reasons than "they've banned a few users/customers in the past".

Re: Cloudflare Warp

#118
post #7

Why do they want to add all our traffic to their backbone?

Much easier to get a global view of Internet behaviour when there are only one or two DCs worth of ClickHouse clusters needing tapped Related question: given this obviously generates logs, what are CloudFlare doing to protect log data in transit within its own network from similar attacks to the Google-NSA episode? ( https://www.washingtonpost.com/world/national-security/nsa-i... )

What was to stop the NSA funding, creating, acquiring, or controlling CloudFlare so as to be useful for MITM surveillance?

Re: Cloudflare Warp

#119
post #104

Most of the time the fastest way to any given site is to avoid unnecessary network hops. Now maybe CF have a more efficient route here or there but really I can’t believe that for most people it’ll be faster. As for security or privacy I can’t imagine they’re much safer than browsing most HTTPS sites directly. There’s nothing to say they’ll be able to resist a secret US government subpoena for records either.

You'd be surprised at the poor path that the average packet takes. Cloudflare has lots of PoPs that are very close to major cities so it is very conceivable that if that brings you to a higher quality backbone it would result in better performance overall. I don't know about the quality of Cloudflare's backbone but at Google you could definitely get noticeably better performance by quickly getting into the Google bac…

Do they even maintain something resembling a backbone? A lot of these CDNs just use public transit for outwards traffic
Post reply on HN