TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

CloudFlare enabling free SSL by mid-October

154 pointsby moonbootsalmost 11 years ago

11 comments

nilvedalmost 11 years ago
Please note that using Cloudflare, even with free SSL, is not an increase to the security and privacy of your users. On the contrary, Cloudflare records information about your users (this cannot be disabled) and, by default, blocks users who attempt to view your site through privacy-enhancing software. I would suggest that people looking to install SSL on their website (this should be everybody) instead get their free SSL certificate from gandi.net or StartSSL, who do not spy on or block your users.
评论 #8150261 未加载
评论 #8150139 未加载
评论 #8150063 未加载
评论 #8150047 未加载
评论 #8150035 未加载
user3almost 11 years ago
Most of the websites wont encrypt the link from Cloudflare to the server, ultimately defeating the purpose of SSL aside from a better search ranking.
评论 #8149809 未加载
评论 #8149737 未加载
评论 #8150228 未加载
donavanmalmost 11 years ago
Are there more actual implementation details somewhere? Sounds like selecting the ssl context based on the clients SNI request. This (obviously) would predicate client SNI support, as opposed to anycast IPs or similar.
评论 #8149619 未加载
评论 #8149877 未加载
alanbyrnealmost 11 years ago
Does it bother anyone else that when you try to visit the Google post explaining that they are using HTTPs as a ranking signal via https it redirects to http?<p><a href="http://googleonlinesecurity.blogspot.co.uk/2014/08/https-as-ranking-signal_6.html" rel="nofollow">http:&#x2F;&#x2F;googleonlinesecurity.blogspot.co.uk&#x2F;2014&#x2F;08&#x2F;https-as-...</a>
curiousjorgealmost 11 years ago
what I just paid 20&#x2F;month for the SSL....<p>Update: I have another concern I just found out.<p>For example, I do a lot of web scraping through my domain and I see that I was automatically opted in to use <a href="https://www.cloudflare.com/apps/scrapeshield" rel="nofollow">https:&#x2F;&#x2F;www.cloudflare.com&#x2F;apps&#x2F;scrapeshield</a>, something that is supposed to block scraping.<p>There&#x27;s a huge conflict of interest if it turns out that the cloudflare network actively aims to help block scraping.<p>I know you guys said you will be on the neutral side but if the cloudflare is helping Scrapeshield become more intelligent about scraping by monitoring my scraping actions, I really don&#x27;t know if it&#x27;s wise to stay with cloudflare, as much as I love it.
评论 #8149979 未加载
评论 #8149916 未加载
评论 #8150161 未加载
general_failurealmost 11 years ago
Do not announce things until done. This is just shameless marketing stunt.
juntoalmost 11 years ago
I presume that customer private keys need to be stored on Cloudflare servers to implement this. Has that just made Cloudflare servers a legitimate prime NSA target?<p>I.e. all your keys belong to us
评论 #8150264 未加载
taksintikalmost 11 years ago
Cloudflare throwing it down with authority...well played. In the end the consumer really doesn&#x27;t give a hoot. They want simple.
tanglesomealmost 11 years ago
Why are people up-voting an ad?
willualmost 11 years ago
Are EV certs going to remain Business&#x2F;Enterprise-only?
评论 #8149918 未加载
tuananhalmost 11 years ago
CloudFlare is the coolest free CDN out there.