Live data from Hacker News

Cloudflare took down our website

robindev.substack.com

431–440 of 483 posts

Re: Cloudflare took down our website

#431
post #384

Earlier quoted context omitted.

Oh well, last I checked “gambling” will match with a .* regex pattern.

You said "I’m going to guess that you need to have an Enterprise contract to be a business of certain categories". If that was the problem, this issue wouldn't be relevant to most people. When you switch to "they can terminate anyone", and they act this rashly and unexpectedly, that means anyone needs to live in fear.

But that’s the norm for SaaS products, especially when you don’t have an enterprise contract where termination procedures are more robust.

So nobody is going to live in fear when cloudflare has the exact same TOS policy as everyone else.

Re: Cloudflare took down our website

#432

The Cloudflare CEO & co-founder is quite active on Twitter[0] and somewhat active on HN[1], would be interesting to get his perspective on this. [0] https://x.com/eastdakota/ [1] https://news.ycombinator.com/user?id=eastdakota

I flagged it for him, we'll see if he replies. https://x.com/ArtemR/status/1795074047539068991

Re: Cloudflare took down our website

#433

Earlier quoted context omitted.

While they absolutely shouldn't ban IP for reasons you said, some do that anyway. The most (in)famous case is China's GFW which banes IPs all the time. Yes, other websites often get accidentally blocked, but they don't care. Moreover, you can't even communicate with them because there are no official legal regulations. This is something what any CDN or cloud providers have to deal all the time.

There are numerous official legal regulations and decisionmaking bodies pertaining to the GFW. What do you mean?

CCP does what they want, the “regulations” are meaningless.

Re: Cloudflare took down our website

#434

Earlier quoted context omitted.

Gaming machines are highly regulated, almost like medical devices. There are seals on the hardware, any modification must be approved, you must certify that the payout is the expected one, ...

I'd say worse than medical. As long as it works and doesn't fail, no one will give a fuck about medical hardware or the condition it's in. Just look at your average GP's ultrasound, it's probably older than the GP themselves is. Gambling however, you constantly have government auditors and the tax office crawling up your literal arse to make sure you don't cheat the gamblers, or worse, the government out of their mon…

Gambling is shady to begin with. It’s easy to say that all businesses only care about money, but gambling is pure greed, from both the customer’s and proprietor’s perspectives. Sure, there is greed in medical but gambling is ONLY greed.

Re: Cloudflare took down our website

#435

I will remind HNers: is Cloudflare not the company that leaked sensitive data through cache files that were indexed by at least Google, and when the tech community were up in arms about the massive leakage of sensitive data, the CEO’s strategy was to turn up here and criticise Google for not deindexing quickly enough? You get what you pay for.

This was a much needed reminder. Although, it's quite difficult to find a better DDoS mitigator which is better than CF, I still wouldn't trust them for everything. Especially, since they are most likely snooping on the decrypted HTTPS connections

> Although, it's quite difficult to find a better DDoS mitigator which is better than CF, I still wouldn't trust them for everything.

Adding Challenges, TLS fingerprinting and Rate Limiting is possible on just about every major CDN platform to be honest. I guess with CF it's more "ootb" though, where you don't really have to think too much about policies - but at the same time, you can't go as granular in those policies (e.g layered) as some others.

Re: Cloudflare took down our website

#436
post #102

This doesn't pass the sniff test. From the actions Cloudflare took and their communication, it's very clear that there was something about the way their services were used that they were unhappy about. The post doesn't include what that problem was, but I have a very hard time believing that the author was not in the know and just got their account nuked without any further commentary, especially after being in a num…

So CF is ok with shady for 10k but not for .25k?

Isn’t that a tale as old as the internet? Hosting adult traffic is painful in all respects, and they get a premium for it.

CF was more than happy to help, but .25k wasn’t a number that solved all the problems.

Re: Cloudflare took down our website

#437

Earlier quoted context omitted.

How does paying $10k a month solve that?

Nice place you got here. It'd be a shame if something happened to it. Except the "place" isn't Mom and Pop's bodega, it's a casino dodging countries blocking its main domain.

What are you trying to say here? You think extortion is ok if a country is trying to base itself where it is legal?

Re: Cloudflare took down our website

#438
Another issue with Cloudflare is that it seems to be blocking VPN access to sites that have any regional restrictions.

Of course, it is easy to identify the IP addresses of the well-known VPNs, so it's not rocket science, but it does mean that popular VPNs will no-longer give you out-of-region access.

Re: Cloudflare took down our website

#439
post #365
post #308

Earlier quoted context omitted.

> The 'customer support of last resort' genre is common and not usually a good fit for HN They're already off Cloudflare, I would see this story more as "Dealing with tech company X is a business risk" cautionary tale.

Those are variations of the same thing from an HN systems point of view. The problem is that there are way too many of these stories to be interesting and/or to all be on HN's front page, but they tend to attract upvotes anyway. As I said above, we're happy to make exceptions for the occasional thread that is genuinely of interest, but sometimes the process for idenitfying those is "apply standard penalties -> genera…

While I understand where you're coming from. Appreciate the immense amount of work you do. HN is pretty much the only way I'll see a post like this, and I like to keep track of behaviours like this. I use cloudflare for a lot of things, but it's a deal breaker not giving time to migrate off and causing downtime.

I understand all the complexities here. Have worked closely with a Trust and Safety team before (real estate portal). But if that business was good enough to exist on the CF network for X years, it should be given time to move if it's no longer an agreeable business partner, that makes it a worthy story.

Re: Cloudflare took down our website

#440

As far as I can tell, the issue with this is: OP runs a casino/gambling site. Gambling is a regulatory mess (I have spent far too long dealing with this as an RNG supplier), and so it's very hard to comply with every jurisdiction, and each one needs you to prove compliance to operate in that jurisdiction.* Gaming companies spend a lot on compliance and tracking, but since the internet is the internet, it's pretty har…

This is just how people communicate now in the business world. It's up to you to read between the lines.

One thing I've learned to be wary of on the job is "do you need help?" That phrase is often code for "You are not performing up to our expectations. This is your first and only warning. Get in shape or get out."

Post reply on HN