Source IP incorrect on multi homed systems

Janne Johansson icepic.dz at gmail.com
Sun Feb 19 18:04:49 UTC 2023


Den sön 19 feb. 2023 kl 18:06 skrev Sebastian Hyrvall <sh at keff.org>:
>
> You should get into that debate. Proposing firewall workarounds is not a
> correct solution so please don't do it. It needs to be fixed. It's an
> immature VPN solution that always just proposed a workaround instead of
> fixing the problem.

I would make sure that you are not mis-ascribing the problem* to "an
immature VPN" and not what the default UDP behaviour of the kernel is,
to pick a working interface to send packets from based on the routing
table, in which any/all udp based tunnel would suffer the same
problem. If you google it, you may find that other udp transports face
the same "problem".

*) https://en.wiktionary.org/wiki/Chesterton%27s_fence

-- 
May the most significant bit of your life be positive.


More information about the WireGuard mailing list