Since I am having trouble with some of the services thanks to ‘neighbor’ IPs and country block of my routers IP, I would like to redirect all my traffic to another location/IP and access internet within this path.
What I am currently thinking is;
1 - Getting a VPN service with dedicated IP but I doubt whether its possible for 1gbps ~ throughput; If its possible do you have any suggestions how should I achieve this?
2 - Renting an IP from some IP Provider and use this IP with establishing a BGP connection between us.
I am quite lost in this situation, I really would appreciate any bit of suggestion/argument about this topic and how could I achieve this with the most easiest and cheap way
If you need to use another address, BGP is not relevant, it doesn’t change your address, and porting a single IP address to another AS is out of question, you’d have to rent a subnet, ISP guys can tell you what size is the minimum required one.
So run a virtual Mikrotik (CHR) somewhere in a datacenter which provides public IPs you like and 2 Gbit/s in each direction, create an IPIP tunnel to it from your current Mikrotik and use a second src-nat on the CHR. If lucky, you won’t need any encryption of the tunnel; if less lucky or more paranoid, you’ll need to replace your current machine which one which can handle IPsec at 1 Gbit/s. RB4011 can do that if the mix of packet sizes is favourable enough; if it is not, a farm of up to 10 RB4011 will be necessary.
First of all thank you very much for detailed explanation. I see why BGP is not relevant.
I am using CCR1072 currently and this should be enough to handle IPSec up to 1Gbit/s hopefully (assuming i wont have this issue; CCR 1072 IPsec speed issue [SOLVED] ^^)
What do you think about Dedicated VPN with dedicated IP solution?
I don’t think anything - I have no experience with NordVPN or any other public VPN service. I’m an old school guy for whom a VPN is a tool you use to interconnect your enterprise networks or connect to them from anywhere, not to bypass regional restrictions (btw, think about DNS and Windows 10’s habit to use all gateways to send DNS queries).
So compare the price of rental of a VM along with a CHR license and your own control over the functionality at one hand, and the price for a Dedicated VPN where you control only your half of the setup. For a censor it is probably cheaper to block access to all NordVPN’s access points than to inspect packet headers of all traffic you send to some obscure IP in another country.