• 0 Posts
  • 6 Comments
Joined 1 year ago
cake
Cake day: July 24th, 2023

help-circle



  • It redirects, it doesn’t proxy. The workflow is: user navigates to URL->DNS sends it to cloudflare->cloudflare ensures request is allowed based on selected rules (human check, geo check, DDOS check, etc) and remembers->request is redirected to non-cloudflare address->server response goes direct from server to user browser->subsequent requests are redirected without the test as long as the cookie remembers. I don’t like cloudflare, every time I have an issue pop up out of nowhere, it’s usually cloudflare and some over eager netsec engineer that broke CORS, or decided css wasn’t important, or that machine to machine traffic was a DOS attack. But it’s not reading your statements or anything else the server sends back. It could conceivably read your username and password and any other data you send in your request, but it doesn’t have the TLS certificate. So even though it doesn’t even try, if CF decided to be nefarious, as long as your banks engineers are at least somewhat competent CF is only getting encrypted data that it can’t do anything with. Hate on CF all you want, but hate it for the right reasons.



  • Because checking a bag became a premium feature you have to pay for. So now they’re trying to be first/early to compete for the overhead bag space, which there’s not enough of for everyone. A lot of people have anxiety about traveling and it’s not just the fear of heights or dwelling on the dangers of flying, a lot of it is based on the loss of control of their lives for those few hours. The sooner you’re in your seat with your carryon above your head, the sooner you’re back in control and can relax a little.