logoalt Hacker News

ACCount37yesterday at 10:40 PM2 repliesview on HN

Good. GeoIP should be dead, and "IP reputation" should be meaningless garbage.


Replies

observationistyesterday at 11:30 PM

IP Reputation is only as meaningful as the duration of ownership. If it's the same owner for years, then reputation is meaningful, and that should count; if it changes hands every 6 hours being assigned to VPS clients or whatnot, then make the reputation stick to the /24 owner, and so on, with varying degrees of scope and duration, so that the responsible party - the shady companies renting their IPs to bad people - actually have their reputations stick. Then block the /24 or larger subnets, or aggressively block all ranges owned by the company, isolating them and their clients, good and bad.

That sort of pressure can work. But then you risk brigading and activist fueled social media mobs and that's definitely no way to run the internet.

show 2 replies
paulddrapertoday at 12:24 AM

How do you protect against DDoS?

show 2 replies