We have recently moved our DNS hosting across to cloudflare. We are looking at enabling some of the other services such as enabling proxy for the traffic.
The issue i am having is that when this is enabled all traffic is coming from the US and not from an Australian Data Center.
The issue i am finding is that carriers within Australia such as Superloop and Vocus can route to Cloudflare addresses within 20ms. Some of Australia’s largest carriers (Telstra and Optus) who don’t peer with IX can take over 200ms.
All our customers are going to be using residential carriers like Telstra and Optus
Well, that’s up to those providers then and you can’t so anything from your end. If they chose a cheaper path to save a cent per GB traffic and make customers upset with bad performace, it’s their decision.
It may be their decision to choose a carrier that doesn’t peer with IX but they most likely wouldn’t understand what peering is. Telstra and Optus are not cheaper by any means its just that is who everyone knows within Australia.
I am trying to improve my customers experience and that is why i would be enabling Proxy and utilising a service such as Cloudflare.
Wouldn’t it make sense for Cloudflare to purchase IP Transit and advertise their routes through the two biggest carriers within Australia to reduce hops to their services. Obviously peering with IX is cheap and i can understand why Cloudflare would peer with IX but a lot of carriers within Australia don’t.
I am a customer of Cloudflare and i can choose my carrier based on peering but 99% of our customers wont see the performance gain and potentially notice an impact to services with proxy enabled.
Some of Australia’s telco providers are exorbitantly expensive. As a result we may choose to only provide / advertise particular ranges in certain peering scenarios and this may mean that for certain plan types peering may be to a datacenter elsewhere in APAC. The broadest coverage/peering would be available to Business and Enterprise plans.
Even then, ultimately peering decisions are often the choice of the telco provider and some OZ telco providers make interesting choices on how to best serve their investors… i mean customers.
If your firewall is trying to geo-locate Cloudflare IPs it will fail. When you proxy an IP address through Cloudflare the IP address we advertise is an anycast IP address. See @MarkMeyer’s initial response from 2 days ago.