Much easier to get a global view of Internet behaviour when there are only one or two DCs worth of ClickHouse clusters needing tapped
Related question: given this obviously generates logs, what are CloudFlare doing to protect log data in transit within its own network from similar attacks to the Google-NSA episode? ( https://www.washingtonpost.com/world/national-security/nsa-i... )