HN user

tomklein

521 karma

Software Developer

Posts80
Comments82
View on HN
blog.cloudflare.com 1y ago

Russian Internet users are unable to access the open Internet

tomklein
31pts5
qrbtf.com 3y ago

Stylistic QR Code Generator

tomklein
2pts0
blog.cloudflare.com 3y ago

Migrate from S3 Easily with the R2 Super Slurper

tomklein
13pts1
blog.cloudflare.com 3y ago

Cloudflare Workers scale broke our infrastructure, rebuilding it on Workers

tomklein
3pts0
blog.cloudflare.com 3y ago

Welcome to the Supercloud (and Developer Week 2022)

tomklein
1pts0
www.un.org 3y ago

Day of 8B

tomklein
2pts0
www.cloudflare.com 3y ago

Cloudflare Announces Third Quarter 2022 Financial Results

tomklein
29pts2
blog.cloudflare.com 3y ago

What we served up for the last Birthday Week before we're a teenager

tomklein
1pts0
www.cloudflare.net 3y ago

Cloudflare Announces Second Quarter 2022 Financial Results

tomklein
20pts3
engineering.q42.nl 4y ago

Going from JavaScript to WebAssembly in three steps (2020)

tomklein
2pts0
www.cloudflare.com 4y ago

Cloudflare Announces First Quarter 2022 Financial Results

tomklein
18pts3
www.niehs.nih.gov 4y ago

Perfluoroalkyl and Polyfluoroalkyl Substances (PFAS)

tomklein
3pts0
business.instagram.com 4y ago

Subscriptions: Helping Creators Earn Recurring Monthly Income on Instagram

tomklein
2pts0
blog.youtube 4y ago

YouTube makes dislike count private

tomklein
72pts4
www.namecheap.com 4y ago

.club TLD is returning SERVFAIL errors

tomklein
5pts2
edri.org 4y ago

EU Companies are now allowed to scan your private communications

tomklein
3pts0
news.ycombinator.com 5y ago

The shortest, regex breaking website-domain possible: http://pn/

tomklein
31pts18
www.techradar.com 5y ago

Instagram, WhatsApp and Facebook Messenger are all down

tomklein
13pts0
xn--allestrungen-9ib.de 5y ago

WhatsApp Down in Some Regions

tomklein
125pts105
toonk.io 5y ago

AWS and their Billions in IPv4 addresses

tomklein
16pts2
uk.pcmag.com 5y ago

Google Says Biggest DDoS Attack on Record Hit the Company in 2017

tomklein
2pts0
www.theverge.com 5y ago

Gmail has a new logo that’s a lot more Google

tomklein
2pts0
css-tricks.com 5y ago

The Paper Prototype Rule

tomklein
1pts0
blog.tomklein.me 5y ago

Load Balancing, Geo DNS, or Anycast?

tomklein
1pts0
redcanary.com 5y ago

“SemaG DNA NuF” with Right-to-Left Override Unicode Characters

tomklein
2pts0
stackoverflow.com 5y ago

An intense story told by a StackOverflow comment

tomklein
2pts0
www.theverge.com 5y ago

Google is testing domain-only URLs in Chrome to help foil scams and phishing

tomklein
2pts0
thenextweb.com 5y ago

How to write cleaner JavaScript code (destructuring)

tomklein
2pts0
blog.cloudflare.com 6y ago

Cloudflare outage on July 17, 2020

tomklein
522pts213
blog.google 6y ago

Google investing $175M toward black business owners, job seekers and devs

tomklein
4pts0

iirc, custom DNS at CF refers to using your own subdomains as name servers for CF instead of the regular *.ns.cloudflare.com. Basically a form of whitelabelling.

Specifying 3rd party name servers as your domain’s name server was (still is?) not possible with Cloudflare Registrar.

(Disclaimer: I work there)

Actually, you can assign (not transfer) IP ranges and the one advertising it does not need to own it, but would need a Letter of Authorization (LoA) or similar.

Google now has a publicly available ACME-compatible CA. For CF’s Universal SSL (default/free) Cloudflare may use Google’s CA. But may choose other providers. For Advanced Certificate Manager (paid addon), you can choose Google or other CAs for Cloudflare.

But basically Google would be the one that is issuing an SSL cert for a website. Same as LetsEncrypt.

Disclaimer: CF employee

Freenom has free TLDs (.tk, .cf, ….)

The cheapest over time will be .de with as less as 4€ a year depending on the registrar. The cheapest first year domain used to be .xyz with 0.99$ at Namecheap

I run my own email server an never had any issues with email deliverability. There must be a reason for these bounces. Any SMTP logs?

Cloudflare Down? 4 years ago

For CF, we send out these status pages manually. It's usually delayed due to wording, but not to tamper with the SLA. We do keep track of the accurate times AFAIK.

Disclaimer: I work @ CF

I coded a GeoDNS for a couple of my sites and Cloudflare‘s IPs are always geolocated to the nearest datacenters and works great in a GeoDNS setting.

Also, what about DNS resolvers that don’t support EDNS at all?

What I did after having argued several times is to straight up let them know that this isn’t true, told one or two examples on why these arguments are fake most of the time and that if they want to find arguments against it, that they would find some. Then I stop talking about such topics with them.

In my opinion, it‘s just not worth after having spent some time trying to discuss it with them. Especially when they don’t provide any backed arguments but just „random“ statements

Depending on what you’d like to do with it, you could get a server at a hosting provider that allows you to send in USB sticks with data and uploads it for you (makre sure the content is encrypted though) or get a colo with your own server which you then would have access to.

If you just need it as a cache as mentioned in another comment, you can go with a VPS

Subdomain points to a hosting provider. Hosting doesn’t know who the owner is (yet) and waits for someone to sign up/register. Attacker signs up before the real owner does, is lucky that the hosting provider does not verify ownership, and is able to serve whatever they want on the domain, for example a fake website or fake verification files.

I think one of the major advantages a tech company can have against their competitors is their culture and recently, Google seems to be losing out on this a lot. IMHO there is a huge difference between companies that just have workers and companies that are a group of people working towards a common goal/vision