Changing the source IP is frequently used for IDS evasion and spoofing the
address of another system or network to get around firewall rules.
Typically the spoofing does not work so well with TCP connections, but is
more effective with UDP scans.  If the scanner was on the same local network
as the target the TCP spoofed scan would stand a better chance of success
(since the MAC address would still be intact).  

I think it would be useful to retain this feature.  It is good for auditing
firewall and IDS systems.


