Email or username:

Password:

Forgot your password?
Kiwix

So last week (on Sunday 1 December at 00:00), our server host canceled its service without warning.

TL;DR: we do not recommend using @Hetzner_Online 's service

Everyone else: a short 🧵

A two-panes meme with 1. Bart Simpson saying "It's the worst day of my life" and 2. Omer adding "The worst day of your life so far"
50 comments
Kiwix

Murphy's law states that if things can go wrong, they will. Ideally in the worst possible way.

For us, that meant having our servers disconnected at 00:00 on a Sunday 1st (so likely a scheduled deprecation on their end).

Our main storage backend became entirely unreachable. For the average user that meant not being able to access the library and download files, and for us that meant not being able to connect to it and see what was wrong.

Kiwix

Turns out that Hetzner has decided to cancel our account and terminate all servers. There was no warning (yes, we checked our spam folder), and nobody could be reached before Monday morning.

When reached, they could not explain the reason for the cancellation:
Them: - We sent you an email.
Us : -We did not receive it, can you please resend?
Them: - We can't
Us: ಠ_ಠ

Kiwix

In the meantime, all servers had been wiped already so no way to retrieve our data.

If you are looking for a bad case of the Mondays, well, that was one.

Kiwix

Luckily we have mirrors and these were not affected. We grabbed a new machine somewhere else (Scaleway ; if we name-and-shame the one we might as well name-and-greet the other) and immediately started re-importing our data to our new Master server.

All in all, it still took about 48 hours to get these 8-ish TB back online.

Kiwix

If there is any silver lining to this, it is that we could see a few points of vulnerabilities as well as our ability to turn things around in a reasonably quick manner (here be kudos for the two heroes who manage our infra).

Learning were made, and we will see in the coming weeks/months how we can implement new safegards within our resource constraints.

/END

Joachim

@kiwix

Huh, thanks for sharing. That was a though time, eh? :-(

On slightly lighter note: most of your user should have had the content they wanted allready - localy and #offline. (That _is_ the point of #kiwix, right ? )

T.J. Crowder

@kiwix Good golly. I've been using Hetzner for years and even just recently recommended them. Sorry you've had this trouble. I'd be really curious to know what their reason was. (Lost email or no, someone or some system _must_ have a record of why they took such a draconian action.)

Kiwix

@tjcrowdertech Yeah we've moved on now and are a bit sad about the whole thing, but it would be nice to know at some point and get closure.

Dan Jones

This is the second "don't use Hetzner" post I've seen this morning, and for somewhat different reasons.

Here's the other one.

@tjcrowdertech@hachyderm.io @kiwix@mastodon.social

Rich Felker

@kiwix The poor communication is bad, but this is the worst. If you're terminating service, data should be held for a reasonable time, at least a month, unless it was manually inspected and deemed illegal even to possess (i.e. CSAM), to allow customer to retrieve/migrate it. Immediate deletion is a huge red flag.

Rich Felker

@kiwix Even if you don't care about customers terminated fir violation of ToS, immediate deletion for them means same could happen to any customer by technical glitch or employee error. That should not be possible in decent professional hosting.

F4GRX Sébastien

@kiwix were you a victim of the same ai based tool that brought down itch io?

skull

@f4grx @kiwix the itchio situation was a phishing report sent to the domain registrar. this is about server hosting.

slotos

@monday @f4grx @kiwix In itch.io case, the report was sent both to domain registrar and their hosting provider. Just that only one had crapped their pants.

Melroy van den Berg

@f4grx @kiwix that would be my question as well? Sent to your registar.

Aral Balkan

@kiwix Sorry you had to go through that. Please do keep us updated if they do provide any sort of explanation/apology/recourse.

Hetzner is currently set as the first supported hosting provider for the Small Web in Domain and this makes me *very* anxious.

Any thoughts/could you possibly look into this and find out what happened, @lenzgr?

Jubei

@aral @kiwix @lenzgr I am also interested in hearing if they provide an explanation. Please keep us posted.

Solarpunk Davy

@aral @kiwix @lenzgr indeed, hetzner tends to be an interesting EU alternative to the cloud giants. Sad if they're getting into this mess.

Aral Balkan

@SolarDavy @kiwix @lenzgr Not only that but they’re affordable. I haven’t been able to find a VPS service as reliable, with an API that works so well, and such excellent performance and I’ve been looking. But I also can’t risk all the sites we’re going to be hosting disappearing overnight without any explanation (or even with an explanation, to be fair). So this is very worrisome indeed.

Solarpunk Davy

@aral @kiwix @lenzgr agreed, affordable, green, not a lot of extra bullshit.

I'm also thinking of what kind of backups on non hetzner storage.

Sunil

@aral @kiwix @lenzgr Running my mastodon server along with few other services on Hetzner!! Need to start looking at backup strategy outside of Hetzner and avoid facing loss of data.

Dee Fedilore 🦦

@aral @kiwix @lenzgr When it's fedi, the issue is usually the anti-porn rule in their TOS.

In some cases, it's in good faith. For example, with the tenforward.social, they cited a lot of hardcore porn posted/boosted by the admin, on the admin's main account.

In other cases, it seems like they don't really pay attention and are vulnerable to fake reports. For example, a series of small transfem instances were taken down over an anime picture of two clothed girls kissing.

Andrew Leahey

@kiwix @rysiek

Well they sent it to you, how would they still have it?

Cmon.

C'était Marud depuis le début :mastodont_v2:

@kiwix holy shit... did they finally came up with a real reason ?
how did you managed to go back online ?

DELETED

@kiwix it's not the first complain I see in my feed and it's against the law, weird!

Caleb James DeLisle
Guys.

Hetzner
Is
Not
A
Reliable
Company

They've been kicking people off their service "because feelz" for YEARS.
Guys.

Hetzner
Is
Not
A
Frank Heijkamp

@kiwix @Hetzner_Online You don't seem to be the only one having issues with Hetzner. Their solid reputation is nomore. What a shame.

Hachiko

@kiwix @Hetzner_Online
I have had a very similar issue with OVH.

ck0

@kiwix That's not the first time I hear this kind of story from Hetzner. I'm kind of glad that my email domain name is banned on their plateform (I just attempted to register an account behind my usual vpn, like I did with my other providers) and I can't make an account with them anymore.

DELETED

@ck0 @kiwix Actually happens more and more.

Not entirely sure what's going on there recently, but it feels a bit like they try to push out "power users" to cut costs.

Marco Dalla Stella

@kiwix we also have our instance on Hetzner, I'm quite scared now...
I used their services for years... Unbelievable.
Now I know what I'll be doing on the Christmas holidays: backup tests... 😢

Cybarbie

@kiwix @Hetzner_Online **A Cautionary Tale. **

How many backups are stored only in the cloud? How many buckets are the one and only copy of your entire IP?

Looking at you *Entire World*

Well done on your planning and recovery btw. Great effort. 👏👏👏

cryptix

@kiwix yea, they have very bad escalation procedures.. we got bitten by that, too. They send an email to a server and then made it inaccessible... so.. obv no way for us to ever see that email...

I don't know when they had reputation for good (customer) service... I basically see them as a discounter these days.

🌸Lilyana Marie🌸

@kiwix @Hetzner_Online Yet they have no issue letting cybercriminals use their services

João S. O. Bueno

I was considering trying and moving things up to Hetzner - -it turns out there are reasons why it is so cheap:

It may occasionally just wipe out your entire business infrastructure, permanently, with no one or nothing to resort for.

Won't be touching this unless I hear they offered a multi-hundred-thousand dollar compensation for the error to Kwix in short notice.

floss.social/@kiwix@mastodon.s

[evil] lvl. 98 cute lesbian vampire catgirl

@kiwix@mastodon.social @Hetzner_Online@social.cologne yahhhh, maybe about 9 months ago, someone falsely reported our instance for CSAM, resulting in hetzner taking it down immediately. it took a community effort and lots of twitter posts at them before they reversed course, despite our appeals

(we switched to another provider within a week cuz... yikes)

we did get some nice emojis out of the whole thing though: ​:hetznered:​ ​:hetzner_friend:​

i highly highly dont recommend them

Angela Scholder

@kiwix @Hetzner_Online From what I've seen over the years is that you're not the first having that experience with Hetzner..

Go Up