3 ms·
Only reason I can think of is it's way easier to get loads of ips to bypass rate limits with ipv6 than it is with ipv4
by iMerNibor 8y ago
Only reason I can think of is it's way easier to get loads of ips to bypass rate limits with ipv6 than it is with ipv4
- wongarsu 8y agoWhich is only useful in the narrow case in which your target supports IPv6 and doesn't treat each /64 block as one address for the purposes of rate limiting. This combination seems quite rare.
- LaGrange 8y agoWhy would you think it's rare? I've seen places running multiple projects were developers were barely aware that the sysadmins gave everyone an IPv6 address, and therefore the rate limiting has to be IPv6-aware. It's trivial to fix once it becomes a problem (at least in our case it was), but I wouldn't expect it to be an uncommon mistake.
- mgliwka 8y agoIt’s pretty easy to acquire blocks larger than /64.
- aaaaaaaaaab 8y agoIt would be trivial to rate-limit the whole subnet then.
- throwaway2048 8y agoMaybe, but that does not mean a lot of ISPs haven't done that.
- pilif 8y agoif you rate-limit, you should probably be rate-limiting on the /64 prefix and those are about as hard to get as individual v4 addresses.