@stefano I'm surprised such ISPs still exist. I had a hard time to find one that's still giving me "real" #IPv4 (and not #DSLite, which is just #IPv6 with some tunnel for IPv4 using #CGNAT, which seems to be more and more the standard ... understandable, given the shortage of IPv4 addresses)
But yes, #HE's free service is awesome! 😎
#ipv4 #dslite #ipv6 #cgnat #he
@kubikpixel @ComicSans @RitaWerner das liegt oftmals an der Art wie Provider #CGNAT umsetzen und Traffic Manipulieren.
@torproject bzw. #Orbot helfen als #PerformanceProxy lt. meiner 13+ Jahre Erfahrung da sehr gut selbst auf #EDGEland-Mobilfunk...
#edgeland #performanceproxy #orbot #cgnat
@sindarina Personally, I think violating #RFCs should be a criminal offense, since I've also experienced the #VPN-breaking use of #RFC1918 adresses for #CGNAT!
@craigmaloney I guess not if you’ve caught up with me to this point. So considering #creativeCommons licenses are vulnerable to this attack & the #CreativeComrades license is not, the former is potentially less effort for a malicious player to circumvent.
OTOH, creative commons have changed their settings to reduce the frequency that visitors are denied access to the license text. The defense would likely have to be tried by a #CGNAT user.
#creativecommons #creativecomrades #cgnat
@martinsteiger Ist bei Mobile-Providern (getestet: #Wingo) auch so. Grund: #CGNAT
@sans_isc AFAICT they don't and even if they would that would violate RFCs and make them liable to @BNetzA fines.
Speaking of shitty #CGNAT:
I should protest of them using #RFC1918 address space [10.0.0.0/8] when #RFC6598 states they must use 100.64.0.0/10 instead...
https://en.wikipedia.org/wiki/Carrier-grade_NAT
https://datatracker.ietf.org/doc/html/rfc6598
The #Wireguard server on my free #Oracle VCN account just spontaneously stopped sending Internet traffic to clients. Which means my #Plex server I route through them to bypass #CGNAT would no longer fetch metadata on new media or detect intros on TV shows.
It appears to be an #Oracle issue. After spending hours fighting their terrible UI to and fix it, I gave up and nuked my instance. Now I can't get Wireguard to work at all on the fresh one.
Plex is stuck in Relay Mode. Fun times. 👎
#cgnat #plex #oracle #wireguard
I expetience some strange behaviour with @torproject #TorBrowser on a (throttled) mobile connection:
Neither bridges (obfs4, meek-azure nor snowflake) nor without with get some.stable.connection and just contantly have circuits dying before it can even load the homepage to show it's connected.
Is it just me or do #MVNO's using #CGNAT on #RFC1918 adress spaces also try to prevent and block #Tor useage?
#Tor #rfc1918 #cgnat #mvno #torbrowser
Not to mention a lot of woes apply due to shitty #CGNAT on #RFC1918 adress spaces and other crap, like wannabe-geolocation that results in moving devices changing their [WAN-sided] IP-Adresses [whilst retaining the one on the aerial interface] causing reconnects.
And OFC a least-cost MVNO will get lower priority and worse service than an enterprise-contract M2M data-only SIM with guaranteed SLAs.
@stanford @kobayashi90 well, my notation proposal is just a way to note down the #IPv6 and it could allow for a "#4over6" transitional mechalism (similar to #6over4) by specifying a fixed /96 subnet for automatic PAT+NAT so we'd not have shit like #DualStackLite with #CGNAT which is just horrible.
Bonus Points if your (mobile) ISP uses RFC1918 adress spaces, bricking #VPN's!
https://en.m.wikipedia.org/wiki/6over4
https://en.m.wikipedia.org/wiki/Carrier-grade_NAT
#VPN #cgnat #dualstacklite #6over4 #4over6 #IPv6
@HopelessDemigod not really, but I have issues with other mobile networks which - in violation of #RFC6598 - use #RFC1918 adress space for #CGNAT.
https://en.wikipedia.org/wiki/Carrier-grade_NAT
I'm shure that @stux runs mstdn.social as dual-stack, so even NAT & PAT should not be the problem...
@jwildeboer @EU_Commission that being said, I fully agree and think everyone should have a free, provider-independent #IPv6 /64 assignment and shit like #CGNAT, espechally those violating standards and using #RFC1918 adress spaces (like #mobile networks routinely do) should be abolished and forcibly disconnecting limes each 24 hours as well as trying to restrict peoples' use should be abolished.
https://social.wildeboer.net/@jwildeboer/110250521163940486
@fuchsiii #IPv6 ist mangels must-provide und Krückentechnologien wie #CGNAT leider immernoch im Hintertreffen.
Es ist traurig dass viele Unternehmen nichtmals WAN-seitig was anderes als #IPv4 nutzen wollen...
Siehe https://twitter.com/noipv6 ...
@JanFi0PN leider nur "#BisZu" ohne #SLA's oder garantierte Bandbreiten und dann wohl auch mit kapittem #DualStackLite / #CGNAT.
#cgnat #dualstacklite #sla #biszu
There are few #Internet options where I live. Fiber is 2 years out. I may need to use an ISP that uses #CGNAT, which means no open ports at all. I see that #Tailscale and #Zerotier both use #STUN (or something like it) to solve this problem. Are there any pure Open Source tools that can do this? #Yggdrasil is great, but is TCP based, so can't do direct P2P with blocked ports (it can communicate, but via a public or private intermediary.) Perhaps #Debian packages? #askfedi
#Internet #cgnat #tailScale #zerotier #stun #Yggdrasil #Debian #askFedi
@elshoggotho @regordane #Cloudflare blocks people whose ISPs issued them a #CGNAT IP address. These people are discriminated against in more of a prison like way than a commercial way. They are not offered subscriptions. They are simply blocked and not even told why. How is that useful to those that are marginalized?
Not that I'm looking to change ISP in the immediate future, but I thought I'd take a quick look at #Starlink out of curiosity.
Looked pretty good, right up until I got to #CGNAT . For there are many things up with which I will not put, and CGNAT is right at the top of that list.
#starlink #cgnat #campaignforrealipaddresses