mastodon.ie is one of the many independent Mastodon servers you can use to participate in the fediverse.
Irish Mastodon - run from Ireland, we welcome all who respect the community rules and members.

Administered by:

Server stats:

1.7K
active users

#cloudflare

9 posts9 participants0 posts today

Hello, readers and followers.

Last week, feeling rather bored, I decided to write a small
script to assist in identifying centralised servers within the fediverse.

This is particularly useful as the fediverse is intended to be free, open, and decentralised, in order to safeguard democracy, free speech, and, most importantly, to protect democracy and human freedom, which are
fundamental human rights and online privacy.

At this stage, the script identifies centralised and privacy-invasive servers operating on the
#MITM networks of AWS, CloudFlare, and Azure (Microsoft). By now, we should all be aware that these networks are detrimental to privacy, as they do everything possible to identify you for the purpose of collecting your Personally Identifiable Information (PII), fingerprinting your browsers, and censoring the internet for those who refuse to be part of the walled garden.

The results from running the collection of previously connected servers to my fediverse instance are as in the file attached

#fediverse #freespeech #decentralization #cloudflare #crimeflare #infosec #privacy #azure #aws #amazon #onlineprivacy #privacymatters #democracy #protectdemocracy

When can we declare IP Geo location / country code blocking practically dead as a mitigation strategy?

Sure it is still useful blocking script kiddies from Iran and other low hanging fruit, but do any serious APT crews actually launch attacks from their home country anymore?

With the use of zero trust, distributed attack and delivery networks (looking at you Cloudflare), and VPN usage country blocking feels less useful than in the past.

Replied in thread

@joho mmm, jag hade "åsikter" om att Folkhälsomyndigheten bjöd med #Cloudflare som tredjepart 2020 när jag ville få reda på mina medicinska provsvar 😳
marcusosterberg.se/robust-digi

En annan höjdpunkt i mitt liv är när jag fick repressalier av en "digitaliseringsdirektör" för att jag påpekade det olämpliga i att ha en Facebook-pixel på klamydia.nu
Eller en kommunikationsdirektör på Sahlgrenska när jag tyckte de skulle skippa Facebook-inloggning till sin patient-wiki.

Marcus ÖsterbergRobustheten inom digitaliseringen är vad då, lite mer exakt?Parallellt med att vi hör hur allt fler lär sig att dra nytta av digitaliseringen av samhället tycks vi också göra oss beroende av att digitaliseringen bara funkar. För vad förväntas vi göra när, hela eller delar av, nätet inte fungerar? Likt nu i slutet av augusti.

What we know about the current online banking outage so far?

EDIT -- NOT just on the East Coast. Reports are coming in from California and Texas as well.

It seems to be regional (East Coast) and it's involving regional banks.

Both banks I checked are now displaying error messages.

I *suspect* that these banks are using the same banking platform. (Another bank using a different platform seems to be working fine). The ones that aren't working use #Cloudflare and #Lemisk for their platforms. The one that is working does not.

I've heard debit cards are still working (but haven't tested that out yet).

#Banking #CyberAttack? #SoftwareIssue? #OnlineBanking

Replied in thread

@varbin @f4grx @nixCraft @torproject Well, you can dynamically block them based off packet rate & amount of requests and rate-limit them as well as limit them in terms of transfer rate.

Not to mention you rarely see DDoS attacks from residential IPs and ISPs are quick to disconnect offending hosts upon reporting them, so worst-case one blocks a /24 for 24 hours.

  • This doesn't even account for the fact that #Skiddie-Tools like #LOIC are easily dstinguishable and filter for.

Again: if this is a real problem, any decent datacenter / hoster / upstream will gladly pick up the phone or reply to your support request via mail.

  • After all, they too don't like it when someone hammers their infrastructure, so they have a vested interest in #Blackholing bad traffic at the #IX level.

#DECIX even officially recommends that as a means to handle large-scale DDoS attacks and keep everyone else online.

  • To me a "#Layer7" solution like #Anubis comes way too late as it already incurs billable traffic at many hosters and datacenters and we don't want to cough up money because of someone else trying to #blackmail us (which is the #1 reason for DDoS'ers to do so!)…

📢 New article alert!

A year after migrating my site from the cloud to a self-hosted NUC cluster, I'm sharing more technical details behind making it work. I've proven it's viable with the right setup.

My current stack includes:
- WordPress container with Apache and PHP
- MySQL and Memcached for data storage
- Batcache, Varnish, and Cloudflare for caching

Updated rules have increased edge cache from 30%!

#WebHosting #SelfHosted #WordPress #Caching #Cloudflare

eric.mann.blog/blogs-and-nucs-

Eric Mann's Blog · Blogs and NUCs and Caching, Oh My!A year ago, I migrated my site to a self-hosted NUC cluster, defying industry skepticism about home hosting. Using a WordPress stack with Varnish and Cloudflare, I optimized performance and security, achieving over 30% traffic caching.