Live data from Hacker News

Cloudflare for Offices

blog.cloudflare.com

1–10 of 16 posts

Re: Cloudflare for Offices

#3
I don't understand their statement about MPLS and security: "a need for MPLS to make their network operate securely"

Isn't MPLS used for routing and building SDN fabric where you applied a bunch of QoS rules depending of the MPLS tags ?, which as nothing to do with security.

Re: Cloudflare for Offices

#4

I don't understand their statement about MPLS and security: "a need for MPLS to make their network operate securely" Isn't MPLS used for routing and building SDN fabric where you applied a bunch of QoS rules depending of the MPLS tags ?, which as nothing to do with security.

I also noticed the writing was particularly poor. And not just the technical detail... Everything from grammar to general syntax needs tweaking for ease-of-reading.

Re: Cloudflare for Offices

#7

I don't understand their statement about MPLS and security: "a need for MPLS to make their network operate securely" Isn't MPLS used for routing and building SDN fabric where you applied a bunch of QoS rules depending of the MPLS tags ?, which as nothing to do with security.

MPLS VPN, I guess

https://en.m.wikipedia.org/wiki/MPLS_VPN

Re: Cloudflare for Offices

#9

The switch pictured in the article looks exactly like a Melanox SN2010.

I wonder if they have been able to fit enough CPU, RAM and SSD in there to handle proxy and caching services.

Yeah, could really use some details about the hardware, especially when they mentioned energy efficiency, heat production, and performance in the article, but gave no comparisons to anything for their hardware.

Re: Cloudflare for Offices

#10

how does this compare to simply using zerotier or tailscale?

Cloudflare Access does Zero Trust, something like Tailscale provides a mesh network with SSO. Tailscale has cool ACL rules, but it's not really the best way to implement true Zero Trust, especially for web applications.

I personally use Tailscale for as its a lot easier to use when you're the only one on the network compared to configuring Access for everything, but CF's zero trust stuff is quite enticing if you're running a business.

Post reply on HN