Go Back   vb.org Archive > Community Discussions > Forum and Server Management
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #11  
Old 02-10-2012, 05:07 PM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by L2Insomnia View Post
It may increase performance in some cases I agree but it doesn't do squat for security if the hacker knows anything at all. That's what i am trying to get at People should not think "I'll just use CloudFlare and I'll be safe" as that is most likely going to lead to trouble at some point.

I'm not bashing CloudFlare just want to make it clear that using them does not by any means make you safe from getting hacked.
It makes it alot harder. Main reason is, the bad actors are quickly identified and dealt with. People generally have no idea what all CF really does do. But I have seen it in action.
Reply With Quote
  #12  
Old 02-10-2012, 05:11 PM
Boofo's Avatar
Boofo Boofo is offline
 
Join Date: Mar 2002
Location: Des Moines, IA (USA)
Posts: 15,776
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Well, you're one of the very few lucky ones then. I had more issues with it than non-issues.
Reply With Quote
  #13  
Old 02-10-2012, 06:27 PM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Boofo View Post
Well, you're one of the very few lucky ones then. I had more issues with it than non-issues.
Yeah, v4 for some reason. There's a CF rep here, surprised he doesn't search up mentions and reply to stuff.
Reply With Quote
  #14  
Old 02-10-2012, 06:43 PM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
It makes it alot harder. Main reason is, the bad actors are quickly identified and dealt with. People generally have no idea what all CF really does do. But I have seen it in action.
I know cloudflare well and am a paid member as I was curious about it. First ask yourself how these bad actors are identified IP? Cookie? Now how easy are both of those things to get around to even the worst script kiddie wannabe hacker? Extremely easy.
Now lets say it can identify a previously used perl script that was used to attack a previous site in CloudFlares "circle". Changing the script is also very easy. So in all as far as I can see it is a minor annoyance at most to people with bad intentions.
Reply With Quote
  #15  
Old 02-10-2012, 07:35 PM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by L2Insomnia View Post
I know cloudflare well and am a paid member as I was curious about it. First ask yourself how these bad actors are identified IP? Cookie? Now how easy are both of those things to get around to even the worst script kiddie wannabe hacker? Extremely easy.
Now lets say it can identify a previously used perl script that was used to attack a previous site in CloudFlares "circle". Changing the script is also very easy. So in all as far as I can see it is a minor annoyance at most to people with bad intentions.
Bypassing CF to get to my actual hosting. Love to see it.
Reply With Quote
  #16  
Old 02-11-2012, 12:06 AM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Max Taxable View Post
Bypassing CF to get to my actual hosting. Love to see it.
There is no bypassing there is just doing. Anyways not going to argue about it. If people want to take the easy way and just pay for CF and assume they are safe than that's their problem.
Reply With Quote
  #17  
Old 02-11-2012, 12:24 AM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by L2Insomnia View Post
There is no bypassing there is just doing. Anyways not going to argue about it. If people want to take the easy way and just pay for CF and assume they are safe than that's their problem.
I don't pay for it, I use the free version. And I don't assume anything.

I've been at this close to 15 years and never been hacked, cracked, defaced, anything. Except of course, DDoS attacks. Became quite expert on those. I used to disable entire botnets just for kicks.

I am not all that sure you understand CF at all.
Reply With Quote
  #18  
Old 02-11-2012, 01:21 AM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

There is not much to understand. The idea is great but it really cannot be effective against any attacker who has even a bit of knowledge. I think the idea is great and I hope it becomes what they claim it is now, but as of right now it does not offer much in the way of defense. A well configured server is much more effective.
Reply With Quote
  #19  
Old 02-11-2012, 01:33 AM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by L2Insomnia View Post
There is not much to understand. The idea is great but it really cannot be effective against any attacker who has even a bit of knowledge. I think the idea is great and I hope it becomes what they claim it is now, but as of right now it does not offer much in the way of defense. A well configured server is much more effective.
Multiple layers is key, you are correct. There's no magic bullet.
Reply With Quote
  #20  
Old 02-11-2012, 06:12 AM
AGN03 AGN03 is offline
 
Join Date: Nov 2011
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Derailed
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 07:58 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.05062 seconds
  • Memory Usage 2,260KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (7)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (10)post_thanks_box
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete