Comment on OpnSense + Crowdsec = comfort
MangoPenguin@lemmy.blahaj.zone 3 days ago I don’t believe there are any logs being transferred, just the abusive IPs are shared with the central DB.
So if an IP starts hitting a ton of rules (like .env access, repeated 404s, 429s, etc… Or specific AppSec rules) then that IP is blocked and sent to their central DB where it’s pushed out to everyone running Crowdsec.
non_burglar@lemmy.world 3 days ago
Cloudflare is in the business of keeping infrastructure up and working. Any security benefits of CF are secondary.
They do talk a lot about security and their WAF on their home page, it might be secondary but they do mention it a lot.
non_burglar@lemmy.world 2 days ago
Sure, but that WAF solution is not for us, it’s aimed at clients who can measure their web presence in millions of requests per second.
Cloudflare is a CDN first and foremost, their success competing with Fastly and Akamai has been good to them, but they don’t care if you get pwned unless you have a ton of money.
I guess? They advertise it as blocking bots and bad actors and such but it doesn’t really do that.