Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Apple, for better or worse, has been able to use their size to pressure sites into accepting connections from their Private Relay service.

If VPN usage becomes the norm, sites will have to give in eventually.





It’s better than most VPNs, but the amount of Cloudflare challenges I get is really annoying.

It’s a little weird because Apple has device attestation which is run via Cloudflare and Fastly. You’d think that would get you around the challenges, but that doesn’t seem to happen.


You should only get more challenges with VPN if the VPN users are abusing the websites. I actually get fewer CF challenges with NordVPN than without it.

Presumably Cloudflare's answer to that would be to use Cloudflare warp. (i.e. they're not a neutral party.)

It’s not a VPN service in the usual sense, and does not allow you to change locations, and they also have a mapping of IP addresses and the served geographical users.

I also assume being a service that requires an expensive device and that the browsing happen through Safari limits the abuse somewhat.


Only one I have issues with is Ticketmaster, other than that I forget that it’s even on all the time

I can’t access Reddit on Mullvad via Tailscale

There are working end-points and they tend to be stable. If you find a Mullvad server which works with Reddit, you can configure a socks5 proxy for a Firefox container assigned to Reddit (or any domain). This way, Reddit will always use the connection of the working route and your general internet experience isn't affected otherwise. Eg. you can still switch around connections to find a working one for Youtube... Don't forget about this setting, since sometimes a Mullvad server is down temporarily and the container's assigned domains won't resolve (usually enough to count up/down the Mullvad proxy id). This will also prevent you from accessing Reddit without a Mullvad VPN connection.

Socks5 proxy addresses can be found here: https://mullvad.net/en/servers

You need to prefix them with 'socks://'.


This is a good shout. Thanks!

My bank app forces me to turn my VPN off. I’m not going to change my bank over that and I imagine most others do the same anyway or will eventually. I imagine many sites and services will just continue go “we’re gonna break this thing you need until you turn the vpn off.”

You can split tunnel most VPNs to let the bank through.

Not sure I can on an iPhone but yes on my desktop I’ve done that



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: