Earlier quoted context omitted.
Egress traffic cost is massively higher on both AWS and GCP. Instances of comparable power are somehow more expensive on both AWS and GCP. Also, simplicity; AWS IAM is mightily complicated, things like Cloud Formation are totally non-trivial, etc. You can get going more easily with simple and moderately complex setups on Linode or DO. Of course, AWS, GCP, and Azure have much bigger infrastructure, several availabilit…
At some level of evolution of your company you want complicated thing like AWS IAM, because manual management of access becomes much more complicated.
Linode launches free DDoS protection
161–170 of 182 posts
Re: Linode launches free DDoS protection
#162Earlier quoted context omitted.
That's not protection, that's literally the opposite of protection lol. If you get attacked they take your service out the back and shoot it in the head. Edit: To clarify, filter = protection. Preventing all traffic is not. Both were stated in the description above so they should be clear which one it is.
Heh, that reminds me of my first bank account. They told me I had something called "overdraft protection", which I stupidly assumed would protect me from overdrafting my account by declining transactions. Then I forgot to deposit a check at one point and overdrafted my account. I assumed things were fine because none of my transactions were getting declined. Instead I was being charged an extra $15 fee on every trans…
Re: Linode launches free DDoS protection
#163Serious question: why would I want to use Linode over GCP or AWS? Asking as someone who hasn’t really dabbled with smaller cloud providers. Is it cost? Support? Developer tooling?
Linode gives me 1000GB of transfer for the $5 it costs me to rent a vm, while AWS would charge me $150 for just that bandwidth by itself.
Re: Linode launches free DDoS protection
#164Earlier quoted context omitted.
I’m curious, does anyone know what that means specifically? How can they differentiate normal traffic from malicious traffic? What exactly triggers it? Is a ping flood with a slow (50mbits) internet connect enough? I am aware that the details are mostly likely private to protect them from abuse and are also a trade secret but I have a very hard time to find a general approach that might be similar to their solution?
Most probably they have DDoS appliances (i.e. Arbor, corero, etc) installed in their network. One of the implementation is they will redirect all customer traffic to this appliance. And then the appliance will get some sample of the traffic and match it with their attack fingerprints database. If matched they will block the traffic. For the good traffic they will let it go to its final destination.
Re: Linode launches free DDoS protection
#165Serious question: why would I want to use Linode over GCP or AWS? Asking as someone who hasn’t really dabbled with smaller cloud providers. Is it cost? Support? Developer tooling?
Re: Linode launches free DDoS protection
#166Earlier quoted context omitted.
On my part, I prefer Linode now simply because I won't support a company as openly monopolistic as .. those guys .. if I can avoid it. Also, maybe a little superficial loyalty. Linode was the first provider I found with KVM support when it was a new feature in QEMU, but that reasoning is long expired.
I like Linode and DO and have my issues with the big cloud players, but I don’t see them as monopolistic at all? There are multiple highly competitive offerings in the market, each competing on features and cost. You have lots of choice and even vendor lock in is somewhat mitigable if you want to put the effort in.
Re: Linode launches free DDoS protection
#167I guess this is basically the same as OVH's "VAC" system? I sometimes get these emails: >We have just detected an attack on IP address x.x.x.x. In order to protect your infrastructure, we vacuumed up your traffic onto our mitigation infrastructure. The entire attack will thus be filtered by our infrastructure, and only legitimate traffic will reach your servers. and then: >We are no longer able to detect any attack o…
> I never need to do anything, but I don't think these attacks are real anyway What would it take to convince you an attack is real when it has been 100% mitigated and you never saw it in your backend infrastructure? I ask as the engineering manager for DDoS protection at Cloudflare, and we stop a lot of attacks. But I feel this tension in the communication and product offering... if we do our job well enough that a…
I was running node_exporter, which exports a lot of detailed network info from my kernel to Prometheus. During the time intervals leading upto, during, and after the attack, there is nothing there. Not even a blip.
I don't find it likely that OVH completely prevented any kind of volumetric attack from hitting me with zero detection latency. I just have doubts about there existing a perfect technology that doesn't have any false positives and also kicks in instantly. I'll keep an open mind.
Re: Linode launches free DDoS protection
#168Earlier quoted context omitted.
Couple reasons for those less experienced with VPS?
Not GP but for me, Linode had been fine for 5+ years and it speaks but Vultr has been having choppy network at least once a month for few years now (detected by port monitoring) and that also speaks too. DO has been good on me too.
Re: Linode launches free DDoS protection
#169Re: Linode launches free DDoS protection
#170Earlier quoted context omitted.
Who is "everyone"? Linode has been my primary choice over DO for some years.
Pretty much Reddit and HN Sentiment. And if you look at the growth of DO it is apparent DO is outgrowing its competitors.