For those who want to try it at home:

ping 33333333
ping 55555555

I am sorry, two random Internet users in Korea and Germany, your IP addresses are simply special.

      • enumerator4829@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        0
        ·
        29 days ago

        A few years ago my old university finally went with NAT instead of handing out public IPs to all servers, workstations and random wifi clients. (Yes, you got a public IP on the wifi. Behind a firewall, but still public.) I think they have a /16 and a few extra /24s in total.

        • Possibly linux@lemmy.zip
          link
          fedilink
          English
          arrow-up
          0
          ·
          29 days ago

          Honestly there isn’t much reason to go with NAT unless you are looking to lease/sell IPs

          The sad part is that almost no universities do IPv6

          • enumerator4829@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            0
            ·
            29 days ago

            I kinda get why organisations don’t migrate.

            IPv6 just hands you a bag of footguns. Yes, I want all my machines to have random unpredictable IPs. Having some extra additional link local garbage can’t hurt either, can it? Oh, and you can’t run exhaustive scans over your IP ranges to map out your infra.

            I’m not saying people shouldn’t migrate, but large orgs like universities have challenges to solve, without any obvious upside to the cost. All of the above can be solved, but at a cost.

            • interdimensionalmeme@lemmy.ml
              link
              fedilink
              arrow-up
              0
              ·
              29 days ago

              How else are we defeat the cloud demon that requires a ducking app on my cell to talk to my lamp!!! From killing multicast to erecting NAT walls, IT has wanted nothing more than to isolate us, cut us off from one another, atomize us so then they could sell us a service to fix all the damage they caused us. They disempower us and then leverage it against us! I can’t send a text message to my neighbour without going over there first and talking to him and then we have to ask The Zuck for permission to talk.

              Bring back the end to end principle! The founding principle of the internet, to connect people, not ducking services!

              Bring back multicast, broadcast and direct connections. Duck STUN and TURN, I will not longer jump your hoops, IT!

              Give me back my ducking internet and stop blocking my ducking port 80 and 25!!

              Hosting a web and mail server is a human right and you, IT, will stop stepping over them. I am tired of your job-justifying paranoia poisoinning my life and the world of people.

              Stop infantilizing and disempowering users for your convenience, IT!

              Freedom is not a footgun!

              • enumerator4829@sh.itjust.works
                link
                fedilink
                English
                arrow-up
                0
                ·
                29 days ago

                Disempower users until they stop leaking leaking data.

                Infantilise users until they stop clicking random links in shitty phishing emails.

                Disempower power users until they can’t create security incidents by running shittily patched shadow IT on random open ports.

                If you don’t like it, don’t operate in organisations beholden to

                • GDPR
                • ISO 27001
                • PCI-compliance
                • NIS2
                • IP range reputation
                • Public reputation

                At least for organisations. As a private individual, I want my wide open ports on a public static IP at home.

                • interdimensionalmeme@lemmy.ml
                  link
                  fedilink
                  arrow-up
                  0
                  ·
                  29 days ago

                  IP range reputation

                  That this even exists, is another reason why we need to switch to ipv6. There will be no maintaining “reputation lists” for 340 trillion trillion trillion IP addresses