The #CloudFlare outage follows a pattern we have seen before. Was it Google last time?
1. Generate an exciting config file
2. Auto-deploy the file everywhere
3. Everything everywhere crashes
All these big systems want to be able to react quickly to certain types of events, so they probably all have this failure mode baked in. Because security! Or some such.
"Obviously" the files deployed this way "should" be validated carefully. And there "should" be canaries and staged roll-outs... Should.