Comment by abofh

2 days ago

I mean basically that. If you hit a corporate IP, unless they have flow level logging or you have very extensive timestamps, then the game ends, company says they've enacted new training or controls, but they can't identify a specific person and it's not their fault.

Essentially - this is not a suggestion.

Residential ip's map to a specific person, and it's a lot harder for them to deflect and say I'm not responsible for my own Internet connection

> Residential ip's map to a specific person,

Since when does every household member have their own residential IP?

Even in single households that's not true (friends visiting, on-and-off partner, one night stands, helping the neighbor out cause their wifi is broken, ...)

And I don't know the logging + data retention requirements for CGNAT.

  • > Since when does every household member have their own residential IP?

    Isn't that the dream of IPv6? Every member and device in your home trackable all the time?

    • Most devices should be using temporary dynamic IPv6 addresses, for this exact reason. I believe this is the default on most Linux distributions, not sure about others.

      1 reply →

    • Thank you for making it clear why IPv6 must not succeed. Long Live IPV8.

From the ISPs perspective, companies are still just as responsible for whatever takes place over their connection. From the law's perspective, the person responsible is whoever a jury can be convinced did it.

In cases where the company wifi is open or places like hotels the person who did it could be long gone. Unsecured residential wifi connections aren't much of a thing anymore, but I've seen a lot of people lending out their residential connection when they airbnb their vacation homes to strangers.

  • >Unsecured residential wifi connections aren't much of a thing anymore<

    most residential wifi are not very secure, put the black hat on for a second, then send a message telling a user there is something they cant have; cant do; or will lose, unless they log in, or sign in. then you see the joe password, and many times its the same password for everything.