Hacker News new | ask | show | jobs
by m463 1303 days ago
I remember working on denial-of-service protection code for an embedded device.

One problem was that if the code was TOO aggressive in protecting from a denial of service attack, you could actually help an attack or be the culprit yourself by denying legitimate traffic.

I think this is what cloudflare is doing. They are imprecise and they are denying legitimate traffic.

1 comments

I don't think that ever happens. If anything they are too lenient. Our own alarms kicks in way before Cloudflares DDOS protection is activated.