Subscribe to receive notifications of new posts:

Fearless SSH: short-lived certificates bring Zero Trust to infrastructure

2024-10-23

Zero TrustCloudflare Zero TrustAcquisitionsSSHCloudflare AccessCloudflare OneCompliance

Access for Infrastructure, BastionZero’s integration into Cloudflare One, will enable organizations to apply Zero Trust controls to their servers, databases, Kubernetes clusters, and more. Today we’re announcing short-lived SSH access as the first available feature of this integration. ...

Is this thing on? Using OpenBMC and ACPI power states for reliable server boot

2024-10-22

InfrastructureOpen SourceOpenBMCServersFirmware

Cloudflare’s global fleet benefits from being managed by open source firmware for the Baseboard Management Controller (BMC), OpenBMC. This has come with various challenges, some of which we discuss here with an explanation of how the open source nature of the firmware for the BMC enabled us to fix the issues and maintain a more stable fleet....

Thermal design supporting Gen 12 hardware: cool, efficient and reliable

2024-10-07

HardwareEdgeCloudflare Network

Great thermal solutions play a crucial role in hardware reliability and performance. Gen 12 servers have implemented an exhaustive thermal analysis to ensure optimal operations within a wide variety of temperature conditions and use cases. By implementing new design and control features for improved power efficiency on the compute nodes we also enabled the support of powerful accelerators to serve our customers....

How Cloudflare auto-mitigated world record 3.8 Tbps DDoS attack

2024-10-02

DDoSAttacksTrendsSecurity

Over the past couple of weeks, Cloudflare's DDoS protection systems have automatically and successfully mitigated multiple hyper-volumetric L3/4 DDoS attacks exceeding 3 billion packets per second (Bpps). Our systems also automatically mitigated multiple attacks exceeding 3 terabits per second (Tbps), with the largest ones exceeding 3.65 Tbps. The scale of these attacks is unprecedented....