zlacker

[return to "Tell HN: Archive.is inaccessible via Cloudflare DNS (1.1.1.1)"]
1. eastda+d6[view] [source] 2019-05-04 19:31:43
>>ikeboy+(OP)
We don’t block archive.is or any other domain via 1.1.1.1. Doing so, we believe, would violate the integrity of DNS and the privacy and security promises we made to our users when we launched the service.

Archive.is’s authoritative DNS servers return bad results to 1.1.1.1 when we query them. I’ve proposed we just fix it on our end but our team, quite rightly, said that too would violate the integrity of DNS and the privacy and security promises we made to our users when we launched the service.

The archive.is owner has explained that he returns bad results to us because we don’t pass along the EDNS subnet information. This information leaks information about a requester’s IP and, in turn, sacrifices the privacy of users. This is especially problematic as we work to encrypt more DNS traffic since the request from Resolver to Authoritative DNS is typically unencrypted. We’re aware of real world examples where nationstate actors have monitored EDNS subnet information to track individuals, which was part of the motivation for the privacy and security policies of 1.1.1.1.

EDNS IP subsets can be used to better geolocate responses for services that use DNS-based load balancing. However, 1.1.1.1 is delivered across Cloudflare’s entire network that today spans 180 cities. We publish the geolocation information of the IPs that we query from. That allows any network with less density than we have to properly return DNS-targeted results. For a relatively small operator like archive.is, there would be no loss in geo load balancing fidelity relying on the location of the Cloudflare PoP in lieu of EDNS IP subnets.

We are working with the small number of networks with a higher network/ISP density than Cloudflare (e.g., Netflix, Facebook, Google/YouTube) to come up with an EDNS IP Subnet alternative that gets them the information they need for geolocation targeting without risking user privacy and security. Those conversations have been productive and are ongoing. If archive.is has suggestions along these lines, we’d be happy to consider them.

◧◩
2. HNthro+tx[view] [source] 2019-05-05 00:51:34
>>eastda+d6
archive.is is a very important tool in online extremism research and you've taken money from far-right extremists, your explanation for why it's inaccessible seems incomplete.

This is probably where I get banned from Hn but it has to be said - to posture as if you care about end users while in the same breath taking money from extremists and turning over personal identifiable information to far-right outlets like DailyStormer, is disingenuous at best and I can think of other ways to describe it which are less charitable.

You also host and protect 8chan.

https://twitter.com/ncweaver/status/1124091916520497153

https://twitter.com/klarajk/status/1122625367490146304

https://twitter.com/Riverseeker/status/1122612031234945024

https://twitter.com/slpng_giants/status/1123592717341200384

https://twitter.com/NathanBLawrence/status/10562868097418199...

https://twitter.com/NJDemocrat/status/897147112273608705

https://twitter.com/InvestMib/status/1123308004873515015

https://twitter.com/jwz/status/1124415034610860033

◧◩◪
3. syshum+Xx[view] [source] 2019-05-05 00:58:39
>>HNthro+tx
This is amusing, They Banned the DailyStormer which I why I will never support them. While I disagree 100% with the DailyStormer it is not up to cloudflare to decide who can and can not speak, who can and can not access the internet.

The concept of Free Speech is the most important right we have as humanity, while I may not agree with some peoples words I will fight for their right to say those words

And do not even come at me with "well they are private company" we impose all kinds of regulations on private companies when it comes to basic human rights like free speech and Free Association for example private companies can not refuse service based on race, sex, age, etc.

yet you WANT them to censor content, censor speech. You want them to apply your left authoritarian world view to legal speech, and yes everything you have cited is LEGAL SPEECH in the USA.

If there are actual threats, True Threats as defined in US law, then the police should be involved and the people arrested. If there is defamation or other illegal speech then the courts should be involved

It should NOT be the position of private companies to regulate speech online

Platform Access Is A Civil Right. https://humanevents.com/2019/05/03/platform-access-is-a-civi...

◧◩◪◨
4. Aeolun+dG[view] [source] 2019-05-05 03:26:33
>>syshum+Xx
Yes, I want them to censor lies and misleading speech. People or services that feed the public dangerous misinformation should be silenced.

I realize that’s a slippery slope, but I just don’t trust the public to filter for themselves any more.

◧◩◪◨⬒
5. syshum+pQ[view] [source] 2019-05-05 07:01:34
>>Aeolun+dG
So who should be the arbitrator of truth? You do understand that I can cite many many many many many examples though out history where actual truth was suppressed, actual advancement was suppressed by those in power.

Free Speech is the most powerful tool Minorities and oppressed people through out the world have to end their oppression, and you just want to strip it away because of fear...

How can you not see how utterly dangerous this idea is, how can you ignore all of human history to believe it is a good idea to suppress speech.

It is not a slippery slope at all, is termination of basic human rights, is the the return to the dark ages, to Totalitarianism.

You hope that be installing a regime of censorship and speech control you will end "lies" and/or "hate" when in reality you will ensure its continued existence and growth while taking away peoples power to challenge it in the open light of public debate

[go to top]