Live data from Hacker News

Cloudflare took down our website

robindev.substack.com

241–250 of 483 posts

Re: Cloudflare took down our website

#241

As far as I can tell, the issue with this is: OP runs a casino/gambling site. Gambling is a regulatory mess (I have spent far too long dealing with this as an RNG supplier), and so it's very hard to comply with every jurisdiction, and each one needs you to prove compliance to operate in that jurisdiction.* Gaming companies spend a lot on compliance and tracking, but since the internet is the internet, it's pretty har…

[dead]

Re: Cloudflare took down our website

#242
post #236

Earlier quoted context omitted.

In fairness regarding this particular post, the author admits they were probably violating Cloudflare's ToS, and they knew it. The folks at CF could have been less obtuse in handling the matter. But at the end of the day this is an online casino breaking ToS and they got spanked.

I believed that too, then I noticed they had a feature for the TOS violation that didn't fundamentally change anything. The only difference was you paid for it. In that way it's not your average TOS violation.

I saw that. Not clear to me that there's anything wrong with that. There's a lower tier with more restrictions. You want to do certain things, you need a custom plan. This is not unusual.

The most unprofessional thing CF did in my view was cutting off the customer's service so abruptly. But we have to bear in mind here we're only seeing one side of the story. And again, online casino, violating ToS, using CF's platform to circumvent blocks that were being placed on their website. Potentially to circumvent laws and so forth. That custom quote they received from CF could be pricing in a lot of things, including legal risk.

There's just a lot we don't know here, this isn't a typical customer and the idea that they got cut off abruptly because they told CF they were shopping around is entirely speculation by the post author.

Re: Cloudflare took down our website

#243
I moved away from Cloudflare—to self hosting our network infrastructure—because, while this didn’t happen to us, I was very aware that it could. We had a great deal on Enterprise for a couple of years, but zero guarantees that it would last (and some indications that it wouldn’t). I wanted to stop praying that they wouldn’t alter the deal.

Re: Cloudflare took down our website

#245
post #85

We had a site hosted on CF business plan with fairly large bandwidth usage (completely legal, had a lot of media). They approached us with an enterprise plan but we did not have the budget for it. Asked for a little time, they said fine and we moved much of the bandwidth usage to a couple of dedicated servers on OVH I think. Never heard from them after that.

How do you deal with DDoS attacks against said OVH servers?

Re: Cloudflare took down our website

#246
post #236

Earlier quoted context omitted.

I believed that too, then I noticed they had a feature for the TOS violation that didn't fundamentally change anything. The only difference was you paid for it. In that way it's not your average TOS violation.

I saw that. Not clear to me that there's anything wrong with that. There's a lower tier with more restrictions. You want to do certain things, you need a custom plan. This is not unusual. The most unprofessional thing CF did in my view was cutting off the customer's service so abruptly. But we have to bear in mind here we're only seeing one side of the story. And again, online casino, violating ToS, using CF's platfo…

Yeah, those are fair points. I was just surprised to see "you can't do illegal things without custom pricing." It's an interesting avenue.

Re: Cloudflare took down our website

#247

Earlier quoted context omitted.

How does paying $10k a month solve that?

It's 10k a month for them to set up a dedicated IP address pool so that they could BYOIP and buy their own IP addresses instead of getting the IP addresses in cloudflare's main IP address pool repeatedly banned or reputation harmed. i.e. it's a $10k fee for maintaining the infrastructure for a quarantine around their services

Why can't they communicate than then? BYOIP also costs nothing to produce.

Re: Cloudflare took down our website

#249
post #108

From personal experience I know that 10TB per month is like 30k/year and SSL for SaaS is around 40k/year on the enterprise plan. No idea about pricing for having your own IP. I have no idea why Cloudflare would ask you to use these two features. SSL for SaaS is only useful if you want to add domains and certificates via API. I have had my fair share of negative experience with Cloudflare but this is next level bad. U…

> From personal experience I know that 10TB per month is like 30k/year Is this true? We are at 3TB and growing so I'm slightly concerned

Start making a backup plan

Re: Cloudflare took down our website

#250

As far as I can tell, the issue with this is: OP runs a casino/gambling site. Gambling is a regulatory mess (I have spent far too long dealing with this as an RNG supplier), and so it's very hard to comply with every jurisdiction, and each one needs you to prove compliance to operate in that jurisdiction.* Gaming companies spend a lot on compliance and tracking, but since the internet is the internet, it's pretty har…

BYOIP is reasonable, though I doubt anyone actually does legislation blocks by IP. Since like half of companies on the internet use Cloudflare or other multi-tenant infrastructure everyone is aware that you can't block an IP address and hit one target. The only thing I've seen is DNS blocks (both DNS protocol directly and based on TLS SNI).

FYI, we also fully block users from the US (due to regulations).

My problem here is mainly the unprofessional communication and huge mess of mixing "compliance" with sales, without giving any clear information or options. And then the removal of our account without warning while we were still talking to them.

Post reply on HN