Hacker News new | ask | show | jobs
by Jerrrrrrry 599 days ago

  >As a personal note, I know I’m a bit of an exception ...That’s critical for me, and if an ISP filters based on source, it’s a deal-breaker—I’ll switch to a different ISP.

"...and obviously, Pennywise, I must spoof ingress and egress..."

"Of course, Agent Bond."

1 comments

If it's your real IP, it's not spoofing, even if you send the packet through a different ISP than the one which gave you the IP. If you think about it: if you got an IP directly from ARIN you wouldn't have to send your packets through ARIN to make them legitimate.
un-validated spoofed egress causes problems when everyone tests their egress-effectiveness at once.

there is no "ingress," just a firewall of bad peers.

What? It's not spoofing because it's their real IP.

  >If you think about it:
I genuinely stopped reading there somehow subconsciously, and have a lil read to do, thank you.