Cloudflare Global Network experiencing issues

https://www.cloudflarestatus.com/

Many websites are down, so much for decentralised internet.

584 points · 76 comments · view on lemmy.world

76 Comments

Manjushri@piefed.social · 110 pts · 258d (9 replies)

Oh, let me check down detector to see what's impacted.

2D4AmcdIRPw1tXA.png

Well, shit...

filcuk@lemmy.zip · 23 pts · 258d (7 replies)

Man what's not impacted?
I host my own shit and I couldn't access it from my own house

Overshoot2648@lemmy.today · 13 pts · 258d (1 reply)

Use a tailscale tunnel instead, or at least as backup.

filcuk@lemmy.zip · 5 pts · 258d

I have wireguard, but I don't expose most services locally, so it wouldn't save me in this case.
Thanks though

sugar_in_your_tea@sh.itjust.works · 4 pts · 258d

Is there a reason you're tunneling through Cloudflare?

modular950@lemmy.zip · 2 pts · 258d (3 replies)

as a general noob to self-hosting, I'm curious about this!

do you run your stuff through a cloudflare tunnel, or have any authentication service that lives outside of your network? something has got to be causing your connections to go out and then back for a cloudflare outage to impact on your own LAN, right?

filcuk@lemmy.zip · 8 pts · 258d (1 reply)

I use them as a DDNS, and a first line of defence.

It seems very wasteful, doesn't it?
The truth is that I often need to access these from a device that doesn't have local access to the server, such as a company laptop, or a phone on mobile network.
This is also given for anyone outside of my house.
As such, I often don't bother setting up local access, except for specific services that are critical or use a lot of bandwidth that can go locally.

Not to mention password and bookmark management, which is a little part, but it can get out of hand (I have about 50 services/front-ends).

TLDR: Your can use cloudflare or alternatives with fallback on local for most services, if you set it up that way

modular950@lemmy.zip · 3 pts · 258d

got it! I don't have that many hosted services, but for my limited external clients that need to connect, I get by with what tailscale has to offer at least for now!

thanks for the breakdown!

wischi@programming.dev · 5 pts · 258d

Maybe cloudflare DNS 1.1.1.1?

sp3ctr4l@lemmy.dbzer0.com · 2 pts · 257d

Ok uh, somehow, no one has posted this yet.

The System Is Down

darko@feddit.org · 84 pts · 259d

Funny when downdetector is down because they use cloudflare

aarRJaay@lemmy.world · 39 pts · 259d (3 replies)

"Further details will be made available when we've worked out how the AI screwed us this time"

some_kind_of_guy@lemmy.world · 8 pts · 258d (2 replies)

Is AI the new DNS?

Grandwolf319@sh.itjust.works · 4 pts · 258d (1 reply)

DNS is necessary

some_kind_of_guy@lemmy.world · 2 pts · 258d

Touché

grue@lemmy.world · 32 pts · 258d (1 reply)

TFW Cloudflare is down but I can't tell Lemmy about it because... Cloudflare is down (and Lemmy.world uses Cloudflare).

Imgonnatrythis@sh.itjust.works · 5 pts · 258d

Try a different instance. Might be nice to be off something related to cloudflare anyway.

Psythik@lemmy.world · 30 pts · 258d (1 reply)

First Amazon, then Cloudflare. I'm glad this shit only goes down when I'm asleep.

It's almost as if having two companies control half the web is a bad idea...

Spankerton@lemmy.world · 8 pts · 258d

Azure was also down recently too lol

Samsy@lemmy.ml · 29 pts · 258d (11 replies)

Why the heck is everything stripped to them. I can't believe the grandfather's of the internet thought about a www which goes completely dark if some players like cloudflare, aws, azure etc went down. Put down these network oligarchs!

BanMe@lemmy.world · 34 pts · 258d (2 replies)

I run a nonprofit and as soon as I got our new website up, a board member insisted the domain route through Cloudflare. I choose my battles with this guy, so I went ahead and did it. Thus, fixing a nonexistent problem means our website is now subject to Cloudflare downtime.

Mouselemming@sh.itjust.works · 16 pts · 258d (1 reply)

Might be a good moment to ask the Board if they'd like to go another route

conorab@lemmy.conorab.com · 4 pts · 258d

What about 2nd 54th route?

some_kind_of_guy@lemmy.world · 8 pts · 258d (5 replies)

Easier and cheaper to outsource your site's security to someone else. God forbid you have to learn the cyber. Simple as.

sugar_in_your_tea@sh.itjust.works · 3 pts · 258d (4 replies)

Some things aren't as easy to mitigate, like DDOS attacks. If that's a legitimate concern, something like Cloudflare makes a ton of sense.

conorab@lemmy.conorab.com · 2 pts · 258d (3 replies)

It surprises me that companies like Uber depend on them. You’d think that by the time you’re as big as Uber that you’d be able to just endure a DDoS but I guess the threat of multi-terabit DDoSs and the cost of the associated downtime would be enough to scare anybody smaller than AWS.

sugar_in_your_tea@sh.itjust.works · 2 pts · 258d (2 replies)

And why take the risk? Just pay Cloudflare to take care of it instead of getting all the expertise in house, surely that's cheaper, no?

pressanykeynow@lemmy.world · 1 pts · 258d (1 reply)

You don't even need to pay them, this service is free.

sugar_in_your_tea@sh.itjust.works · 1 pts · 257d

The basic service is free. There's an enterprise tier with more features, such as prioritizing IP ranges (e.g. geographical areas the company operates in).

pressanykeynow@lemmy.world · 3 pts · 258d (1 reply)

Why the heck is everything stripped to them

You need some CDN to hide your server IP from DDOS. Cloudflare is the only free one. AWS and Azure are the big ones with many additional services and seemed pretty reliable. So here's 95% of the Internet probably.

Samsy@lemmy.ml · 1 pts · 257d

Ddos? Aren't we aware of this with fail2ban?

aeronmelon@lemmy.world · 27 pts · 259d (2 replies)

switches over to stored media

…again

CloudFlare went from the muscle of the internet to a liability.

ms_lane@lemmy.world · 3 pts · 259d (1 reply)

I wonder if it's even worth it now.

Might be better to try and wing it on your own if you want reliability.

Gov and corpos will keep using it since it absolves them of responsibility.

Agent641@lemmy.world · 3 pts · 258d

DDOS protection in 2025:

slaacaa@lemmy.world · 26 pts · 258d (1 reply)

Just one more merger bro. I promise bro just one more merger and it'll fix everything bro. Bro... just one more merger. Please just one more. One more merger and we can fix this whole problem bro. Bro c'mon just give me one more merger i promise bro. Bro bro please i just need one more

Lemminary@lemmy.world · 2 pts · 258d

I still don't understand how that shit is possible to do so willy-nilly. Do these lawmakers and MBAs not see the endgame on this one? Has it not been clear where this leads?

Ugh, I speak as if they care.

Xerxos@lemmy.ml · 22 pts · 258d (5 replies)

How the fuck is there no fallback in case of an outage?

luipaard0011@lemmy.zip · 7 pts · 258d

Happy cake day!

pyre@lemmy.world · 4 pts · 258d

how many outages does this make now... this is the internet now. a couple companies hold the services for the entire internet and if they have an issue it's basically the before times.

fodor@lemmy.zip · -5 pts · 258d (2 replies)

The developers are lazy fuckheads. It really is that simple. And some others are vastly underfunded, but most are lazy fuckheads.

Robaque@feddit.it · 4 pts · 258d

Or maybe they're overworked and burnt out

C4551E@lemmy.blahaj.zone · 1 pts · 257d

it ain't the devs fault lmao try the people who tell them what to do

pyria@kbin.melroy.org · 18 pts · 258d
[ removed ]
Burnoutdv@feddit.org · 18 pts · 258d

Good thing that the dezentralized internet has a centralized arbiter that..if down, effectivly, gives the entire internet a single point of failure. As cloudflare seems to have a use, especially in modern times were everyone and their mother got an ai crawler sucking small servers dry, I wonder if there is anything left to have interconnected networks without some big shot buffering against accidently ddos

frezik@lemmy.blahaj.zone · 18 pts · 258d

Today, we remind you that AWS isn't the only single point of failure on the Internet.

sp3ctr4l@lemmy.dbzer0.com · 16 pts · 258d (4 replies)

Ah.

That... would explain why I have been confused by / screaming at the internet today.

... wonderful.

Rolling internet brownouts untill the Tracer Tong ending it is then.

laranis@lemmy.zip · 4 pts · 258d (3 replies)

That was my ending of choice as well.

sp3ctr4l@lemmy.dbzer0.com · 2 pts · 258d (2 replies)

... When I originally played the game, and still to this day, I consider it the worst ending.

Simply because it causes the most suffering and death.

Illuminati ending is ... essentially status quo, nothing really changes, beyond your personal story.

Helios ending... well, terrifying, but frankly, I trust JC.

Play through DX IW and you'll see he... makes very persuasive arguments.

Uh, anyway, canonically, they blended all three endings together, to set up DX IW.

I'd say the JC/Helios ending is... fairly clearly the most optimistic ending of IW.

Also, fun little uh, spoiler, I guess... one of the endings of DX IW features a panning/dollying shot from the vantage point of an orbital space station.

Its looking at the Eastern US and Western Atlantic.

... Florida isn't present. It's almost entirely underwater, by ~2080.

MajorasTerribleFate@lemmy.zip · 2 pts · 258d (1 reply)

DX IW

DirectX Infinity War? I have no context for this, and of course I could look it up, but not doing so is more fun.

sp3ctr4l@lemmy.dbzer0.com · 2 pts · 258d

Deus Ex Invisible War.

Deus Ex did have a direct sequel, made by the same studio, came out a couple of years after the original Deus Ex.

Problem was, it was basically designed for the Xbox, so, levels had to get broken into smaller chunks with lots of load screens, a good deal of gameplay mechanics got simplified / dumbed down.

But... the overall storyline, from a world building perspective at least, was fairly interesting.

The game is very much the red headed step child of the Deus Ex franchise, as the overall impression (which is correct imo) is that it was basically a dumbed down console version of a DX sequel, a significant disappointment.

foremanguy92_@lemmy.ml · 13 pts · 258d (3 replies)

Relaying on one big entity is always a bad idea, self host powers

mmmac@lemmy.zip · 2 pts · 258d (2 replies)

You gonna self host something that can eat a terrabyte per second ddos like its nothing?

sugar_in_your_tea@sh.itjust.works · 2 pts · 258d

A DDoS is much less likely to target your small site.

foremanguy92_@lemmy.ml · 2 pts · 258d

Sure ddos attacks would be the most difficult thing to counter

fox2263@lemmy.world · 11 pts · 259d (2 replies)

Multiple customers.

isVeryLoud@lemmy.ca · 15 pts · 258d

Yeah, 8 billion is multiple customers

BootLoop@sh.itjust.works · 5 pts · 258d

Potentially

homesweethomeMrL@lemmy.world · 8 pts · 258d (8 replies)

State actors: Let’s take down . . Ohhh . . Howabout cloudflare today.

IphtashuFitz@lemmy.world · 12 pts · 258d (3 replies)

I’m guessing it was actually something internal. If you look at their status page you’ll notice the outage occurred smack in between some sort of maintenance work they seem to be rolling out to most/all of their edge locations. As soon as they resolved the outage they continued with the regional maintenance updates.

homesweethomeMrL@lemmy.world · 4 pts · 258d (1 reply)

Of course known maintenance windows are the perfect time for the ol’ cyberattackeroo.

modular950@lemmy.zip · 4 pts · 258d

let me update my notes... one second

HugeNerd@lemmy.ca · -1 pts · 258d

I’m guessing it was actually something internal.

My sources tell me it was a Russian egg sac that hatched early and shorted out some power rails. It's plausible, it certainly can't be the house of cards nature of modern systems.

HugeNerd@lemmy.ca · 9 pts · 258d (3 replies)

Paranoid people: State actors! Technical people, engineers, programmers, normal people: shit happens, people built this.

homesweethomeMrL@lemmy.world · 10 pts · 258d (2 replies)

Just because you’re paranoid, don’t mean they’re not after you

HugeNerd@lemmy.ca · 1 pts · 258d (1 reply)

Ah yes, the age old tale of The Boy Who Cried State Actor.

homesweethomeMrL@lemmy.world · 1 pts · 258d

Yeah that almost never happens. Besides they’re covered by the comprehensive protection of CrowdStrike. And Microsoft.

errer@lemmy.world · 8 pts · 258d (1 reply)

DNS? DNS.

Pork rinds? Pork rinds.

Sir_Kevin@lemmy.dbzer0.com · 3 pts · 258d

Porkchop Sandwiches!

Rooty@lemmy.world · 7 pts · 258d

Even my fediverse instance (lemmy.world) was down. The internet was invented so shit like this would NOT happen. Fuck the corporate internet.

Dragonborn3810@lemmy.world · 4 pts · 258d

Oh, I thought my eduroam was just being shit today, that's good to know

Archr@lemmy.world · 3 pts · 258d

.*.*?

shortwavesurfer@lemmy.zip · 1 pts · 258d

Laughs in tor, nostr, and monero. What outage?

BarneyPiccolo@lemmy.today · 1 pts · 257d (2 replies)

Crowdstrike broke down the airports last year, AWS failed a few weeks ago, and now this. Seems like someone might be probing for vulnerabilities. One morning we'll wake up to the entire Internet down, for a while.

modus@lemmy.world · 2 pts · 257d (1 reply)

Yes please.

BarneyPiccolo@lemmy.today · 3 pts · 257d

I have been actively playing my guitar as a distraction from my phone. I take it almost everywhere, and instead of scrolling my phone mindlessly, I play instead.

I work a lot of events, so I show up early, set up, and then while I'm waiting for the event to start, I play the guitar instead of play with my phone. I'm getting to be known for it now.

DarkCloud@lemmy.world · -10 pts · 258d (1 reply)

The Chinese United Front are testing a series of backbone organizations and assets for readiness. The final attack will coincide with major world events and obscure readiness and communications.

This will be done via disconnecting several relates levels of internet functionality so that even their repair measure will still seem unresolved. They will reconfigure and retry, unaware that their problem is solved, it's the other levels/locations of the internet's function that are still broken (so can't be tested against).

This will provide extended cover that could last days or weeks. So far testing of this plan has been going well.

Agent641@lemmy.world · 2 pts · 258d

Thank you Alex Jones