Live data from Hacker News

Warp – Mobile VPN

blog.cloudflare.com

201–210 of 500 posts

Re: Warp – Mobile VPN

#201

Earlier quoted context omitted.

Can/has anyone from CloudFlare commented? This refusal to work with WireGuard has left a bitter taste in my mouth from a company that I otherwise like.

Here's what I posted to our blog when this question came up: https://blog.cloudflare.com/boringtun-userspace-wireguard-ru... We communicated with Jason throughout the process and have a ton of respect for him and the entire WireGuard community. In the short term, we need the flexibility to quickly update BoringTun's code base to support the project we built it for. That's harder when you need to coordinate with peopl…

Oh, I missed that comment, thank you. That makes sense.

Re: Warp – Mobile VPN

#202

Earlier quoted context omitted.

I was in the same boat, hopefully this will help: https://www.stavros.io/posts/how-to-configure-wireguard/ It's actually very easy to set up, I don't know why the official docs make it seem super hard.

What's the reasoning behind embedding the private keys directly in the config?

Mostly convenience, since it's a "getting started" guide. I'd prefer a better way than the config file to specify devices, but unfortunately there isn't one right now. Maybe I should write a WireGuard config manager tool.

Re: Warp – Mobile VPN

#203
Just as an aside, I thought that was an exceptionally well-written product announcement, or press release, or whatever you'd call it. It was long, but I didn't mind reading the whole thing. It answered all the basic questions about why I should use it, how they plan to make money, and with enough technical detail that I understood essentially how it works. It was very much the opposite of the marketing material you get from most big corporations. I'm saving the page as a PDF as a good example if and when I need to write a product announcement.

Re: Warp – Mobile VPN

#204

I just signed up. cloudflare is on the short list of Internet companies that I trust (with the usual small bit of doubt and skepticism!). With just a few reservations, I also trust G Suite, Firefox, and a few hosting companies I do business with. I have been supporting FSF, ACLU, etc. for years, but the practical considerations that prompted me to be a bit more trusting are Cloud Search in GSuite, Cloudflare offering…

I have to mostly agree... Cloudflare has actively participated with a lot of communities to bring better CDN options to open-source projects who otherwise would be overloaded. I'm not sure how much I actually trust GSuite, ironically preferring Office365 to it as there are huge, gaping holes in it's usefulness, specifically group email tethered to a horribly broken secondary interface (groups) and the fact that the product as a whole has languished a lot.

I'm in a position where I do appreciate Google's software, Chrome/V8 and resulting node and electron as downstream projects. However, my trust of Google is waning in light of their incredibly divisive culture all around and a lot of their practices, cover ups and just poor form in the sun-setting of "don't be evil."

Re: Warp – Mobile VPN

#205
post #154

Earlier quoted context omitted.

I don’t think this would fly for a number of reasons, but CloudFlare isn’t exactly a world leader or even a household name. They’re a newcomer in this space and for once they’re actually open with their community (us). If CloudFlare is the villain, then are CenturyLink & Comcast the heroes? By my estimation, we’re more likely to see any kind of doomsday scenario like that executed by cable companies and telcos — whic…

No one is the villain here, it's not that simple. These are companies that respond to market pressures. Routing around the network operators (both figuratively and literally) makes a lot of sense for large cloud providers. Especially so if there are no network neutrality rules in place to enforce free access to consumers (as opposed to consumer ISPs demanding payment for pushing content to their subscribers). Also, t…

There is a big difference between traffic numbers of youtube and surfing the net. I may have a documentary open in the background while I read dozens of other websites.

Re: Warp – Mobile VPN

#206
post #106

Earlier quoted context omitted.

You are worried about unlocking bootloader (which you should) for rooting or system less mod, but okay for an exploit operating from user space?

Yes, basically. Could also approach from usb/wifi/bluetooth/etc instead of local userspace. The problem specifically is that unlocking the bootloader the official way deletes drm keys stored in a "TA" partition, and that makes the camera less functional. It would be sufficient to find a vulnerability that let me back up the DRM keys - but that seems unlikely without gaining root access and I'd have more confidence th…

Okay that makes more sense.

Unfortunately AFAIK all community run mods for Android require bootloader to be unlocked.

Re: Warp – Mobile VPN

#207

Earlier quoted context omitted.

> Because I don't want any single company to have too much power, Yes. Agreed. But if not Cloudflare as a pushback alternative to those trying to own the internet, then who? It seems to me the "standard internet" is getting smaller and smaller. What other options do we have?

This pearl clutching is getting out of control. The existence of cloudflare is totally orthogonal to your ability to self-host content on the internet. They don't have any power, except over their customers and those customers customers. If you don't want to use them, then don't. No one is stopping you.

Fyi - I don't have a problem with them.

Re: Warp – Mobile VPN

#208

Earlier quoted context omitted.

> Because I don't want any single company to have too much power, Yes. Agreed. But if not Cloudflare as a pushback alternative to those trying to own the internet, then who? It seems to me the "standard internet" is getting smaller and smaller. What other options do we have?

This pearl clutching is getting out of control. The existence of cloudflare is totally orthogonal to your ability to self-host content on the internet. They don't have any power, except over their customers and those customers customers. If you don't want to use them, then don't. No one is stopping you.

I would almost argue the contrary: Cloudflare makes self-hosting more possible, when you're going up against the large cloud hosting empires like Amazon and Google and Microsoft. You may not be hosting on one of those, but you can slap a little Cloudflare in front of yours to give your own server similar levels of robustness... and you can always turn it back off if they ever become a problem, since you aren't using proprietary APIs and services to power your server.

If anything, I've kinda been hoping Cloudflare would realize self-hosting and decentralization is what they should be supporting and pushing, as it's when using their CDN makes the most sense. And obviously, Amazon and Google and Microsoft all have their own CDN capabilities, so the less people using their cloud services, the better for Cloudflare.

Re: Warp – Mobile VPN

#209
post #104

Earlier quoted context omitted.

Fast.com is through Netflix, so your carrier is probably throttling. Try a different speed test with no VPN to confirm.

Using the speed test app I get 65 direct and 58 using the NYC setting in PIA. Ping is 31 ms for PIA vs 28 direct. I look forward to testing with Warp once it's released, but I don't see how it could be much better than the status quo. PIA has lots of servers all over the place, cloudflare might have a bigger network but the delta should be negligible. I am a bit surprised that fast would get throttled though.

It's been pretty common and a big part of why Netflix created the service iirc. ISPs have been throttling netflix as a negotiating tactic when creating peering agreements for upstream traffic or deploying more content servers. The whole process has been really horrible imho. Some mobile providers do it to force lower quality streams, that in fairness are probably more appropriate for small/mobile devices. 1080p-4K are probably overkill on a 5-6" device.

Re: Warp – Mobile VPN

#210

Earlier quoted context omitted.

Can/has anyone from CloudFlare commented? This refusal to work with WireGuard has left a bitter taste in my mouth from a company that I otherwise like.

Here's what I posted to our blog when this question came up: https://blog.cloudflare.com/boringtun-userspace-wireguard-ru... We communicated with Jason throughout the process and have a ton of respect for him and the entire WireGuard community. In the short term, we need the flexibility to quickly update BoringTun's code base to support the project we built it for. That's harder when you need to coordinate with peopl…

I guess that doesn't make sense to me. If Jason offered you your own sub-project to run with, why can't you "move fast"?

>I thought the invitation to put their engineers as the head of a WireGuard subproject was a cool invitation, but alas.

https://lists.zx2c4.com/pipermail/wireguard/2019-March/00404...

I mean no offense, but the response comes off as corporate approved PR. "We need to move fast" when you haven't actually even tried engaging with the parent project and have no idea whether or not it would prohibit "moving fast" is disingenuous IMO.

Post reply on HN