• Saik0A
    link
    fedilink
    English
    arrow-up
    72
    arrow-down
    2
    ·
    1 year ago

    They’re all uppity that to use cloudflare proxy they have to terminate the ssl connection there. So technically cloudflare can sniff all the traffic. But that’s kind of the point of WAFs and Reverse Proxies.

    I would argue that the sheer amount of data throughput that Cloudflare has, you’d have to really be on a list to be monitored… and they certainly cannot just log all data willy nilly.

    • r00ty@kbin.life
      link
      fedilink
      arrow-up
      35
      ·
      1 year ago

      I suppose this one is quite simple. How can they cache, if they don’t MitM the connection? I don’t think it would be technically possible. If you want the cache/CDN you just need to use a company you trust. If you don’t trust them then you don’t get the cache/CDN.

      • Saik0A
        link
        fedilink
        English
        arrow-up
        24
        arrow-down
        2
        ·
        1 year ago

        Correct. But people are viewing the DDOS protection, Cache, WAF, etc… functions as evidence that Cloudflare is obviously malicious and storing 100% of all data traversing them.

        I’ve seen no evidence of that yet, and will certainly discontinue use of them if they show such tendencies. Until then, I will absolutely leverage their platform for my use as a paying customer.

        I do understand the fear with their free platform though… They’ve gotta make money somehow, and I feel there’s probably a fear that is data collection.

        • evanuggetpi@lemmy.nz
          link
          fedilink
          arrow-up
          1
          ·
          1 year ago

          Hell yeah. My e-commerce sites can only function thanks to Cloudflare, particularly their DDOS and WAF, and Workers, and KV storage. Of all the tech companies to be worried about, Cloudflare is way down my list.