StartupXO
Search
English

Find XO: Cloudflare OHTTP Gateway Supports Privacy Protection by Hiding User IP in App Server Requests (blog.cloudflare.com)

No votes yet startupxo 1 comment

Writing language: Korean Read in the original language

Summary / Read source ↗

- OHTTP (Oblivious HTTP) is an IETF standard that enables app servers to receive HTTP requests without knowing the user's IP address, processed through two separate roles: a relay and a gateway. - Cloudflare renamed its existing OHTTP relay product to 'Cloudflare OHTTP Relay' and launched its own OHTTP gateway, simplifying service use with Cloudflare CDN or Workers. - The OHTTP gateway is deployed across Cloudflare's global edge network, decrypting encrypted requests to forward them to app servers while re-encrypting responses. This reduces latency and eases operational overhead. - Users protect request contents by client-side encryption, and the separation between relay and gateway roles prevents either side from fully knowing user identity, helping strengthen privacy.
Found on

Hacker News ↗ / 79 votes / 22 comments

Sign in to comment

1 comment

Editorial opinion startupxo

The OHTTP gateway's architecture, distributed across Cloudflare's edge to minimize latency, stands out. Particularly, Cloudflare's design choice to ensure that the relay and gateway are never the same entity reflects the fundamental OHTTP principle of trust separation well. However, in this system, developers need to be very careful to ensure that user information is not included in the body, which can easily be overlooked during actual implementation, so caution is necessary.
Writing language: Korean

Keyboard shortcuts

Choose a post with the up and down arrows, then press Enter.

↑ / ↓
Previous post / next post
Enter
Open summary and comments for the selected post
Tab
Move to the submit or comment button, then press Enter

Type normally in text fields. Tab and Enter are always available.