> strips SSL from every connection before passing it onto origins
What do you mean? You definitely can serve with TLS end-to-end with CF, it's called Full (strict) mode, or something like that.
What do you mean? You definitely can serve with TLS end-to-end with CF, it's called Full (strict) mode, or something like that.
For almost all of Cloudflare's features. CDN, WAF, and all the compute features require seeing, storing, and caching content in plaintext. CF doesn't have much of a value proposition if all they're doing is handling Layer 3/4 DDOS prevention (most DDOS hits even back in 2015 were done on the protocol layer, or at least most DDOSes that actually showed up or impacted the underlying service).