Spread snowflake-01 bridges' tor traffic over several IP addresses
We discussed a few days ago how 12 super active snowflake back-end bridges on one IP address could trigger the "too many connections plus too many circuits from one IP address" anti-ddos defenses at Tor relays.
I asked Linus if we can get a few more IP addresses for snowflake-01, and he thinks it sounds doable.
(They don't even need to be the sort of addresses that can receive incoming connections. So they could in theory be outbound natted or something. If that's easier -- I suspect it does not make it easier. :)
So step one is that @linus gets those addresses and adds them to the computer and says here what they are. I think 3 or 4 or 6 total addresses would be good, but even 2 would be a lot more than 1.
And then step two is that @dcf or somebody goes in to the torrc's of the bridges and configures each of them to use the right outbound IP address. This is done by setting the "outboundbindaddress" line in their torrc.
(And I guess step zero, which can happen at any point, is that somebody notices this is a poor idea and jumps in to explain why.)