‹ BackHN Continuity

Thread

Court agrees with EFF: Utah's VPN law demands a technical impossibility

802 points · 405 comments · hn_acker

  1. SoftTalker · · focus · HN ↗
    > platforms are left with an impossible choice: completely block all VPN traffic nationwide or withdraw access from Utah entirely

    Is it even possible to reliably know that a connection is from a VPN? Anyone can proxy through a random hosting provider.

    1. not_a_bot_4sho · · focus · HN ↗
      Kinda.

      I use VPN most of the time. My work requires it, and I like Mozilla VPN for personal privacy. (Note: it has ad blocking DNS built in which is nice!)

      I occasionally get blocked by websites or services, especially streaming apps, if I'm on VPN. I suspect they're just looking out for Amazon/Microsoft/etc IP address blocks. It's very annoying

      1. Aurornis · · focus · HN ↗
        That's not the same. You get blocked because the IP address you're coming from is associated with a VPN list, not because they're analyzing the traffic in detail.

        The simplest methods block known datacenter IP ranges like you thought. More will score it based on several heuristics and a reputation over time. If you get 100 different users connecting from a single IP, it's probably not someone's home internet connection.

        1. medvidek · · focus · HN ↗
          > If you get 100 different users connecting from a single IP, it's probably not someone's home internet connection.

          In some parts of the world hiding (NAT) entire neighborhoods behind one public IP is normal practice.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.