So I have a S3 static website. Domain, DNS and proxy is managed via Cloudflare. Cloudflare is set to communicate with browsers using SSL and it in fact enforces SSL for non-SSL requests. However, traffic between CF and S3 is http only, as S3 buckets don’t support SSL on their own and i assume I’d have to remedy that using Cloudfront. Now, having Cloudflare AND Cloudfront both invloved is kinda dumb.
So, how bad is it, to have Cloudflare talk to S3 sites directly, without SSL?