Ancestors

Toot

Written by andrew_bidlaw on 2024-09-01 at 15:04

Deep Packet Inspection (DPI) and how to avoid it

https://sh.itjust.works/post/24555069

=> More informations about this toot | More toots from andrew_bidlaw@sh.itjust.works

Descendants

Written by haui on 2024-09-01 at 15:22

This might prove useful if the EU goes forward with chat control and maybe DPI further down the road.

=> More informations about this toot | More toots from haui_lemmy@lemmy.giftedmc.com

Written by boredsquirrel on 2024-09-01 at 16:03

What about ShadowSocks?

=> More informations about this toot | More toots from boredsquirrel@slrpnk.net

Written by andrew_bidlaw on 2024-09-01 at 16:59

Depends. Many popular apps are banned and closely observed here and in Iran, so they’d at least try to block any kind of connection via them, whatever protocol they use, and I switched between several on these to no result. Less known solutions work, those gated behind a subscription too, and there you can still buy a server in EU to tunnel your web needs.

It also varies from carrier to carrier, so on one connection you can use something as simple as krlvm’s tunnel local app, on others you’d need a real and non-banned VPN.

For those who have time to try several links, check thia chat on TG: outlinevpnofficial They don’t work 100% of time, but having a lot of these public servers means some of them are yet to be blocked. Their app is dumb, but it’s availiable for W10, Linux (appimage) and Android I believe.

=> More informations about this toot | More toots from andrew_bidlaw@sh.itjust.works

Written by anon5621@lemmy.ml on 2024-09-01 at 19:06

Shadowsocks quite easy to detect and to ban they exist solution out there protocols VLESS and VMESS developing by chiness dudes for bypassing chiness great firewall.

=> More informations about this toot | More toots from anon5621@lemmy.ml

Written by boredsquirrel on 2024-09-01 at 19:50

Thanks for the info

=> More informations about this toot | More toots from boredsquirrel@slrpnk.net

Written by zaknenou@lemmy.dbzer0.com on 2024-09-01 at 23:38

how does this goodbeyDPI exactly work? do you add it to your vpn or what ?

=> More informations about this toot | More toots from zaknenou@lemmy.dbzer0.com

Written by andrew_bidlaw on 2024-09-02 at 14:08

Found here: goodbyedpi.com/2024/…/how-does-goodbyedpi-work/

Packet Fragmentation

Packet fragmentation involves breaking down data packets into smaller fragments. DPI systems often struggle to reassemble these fragmented packets, leading to content inspection and filtering failure. GoodbyeDPI takes advantage of this weakness to bypass censorship.

TCP Window Size Reduction

GoodbyeDPI also uses TCP window size reduction. By reducing the TCP window size, GoodbyeDPI limits the data transmitted in a single packet. This forces DPI systems to handle multiple smaller packets, increasing the likelihood of evading detection.

DNS Spoofing

DNS spoofing is a method where GoodbyeDPI manipulates DNS responses to bypass censorship. By altering DNS responses, GoodbyeDPI can redirect traffic to its intended destination without DPI systems blocking it.

=> More informations about this toot | More toots from andrew_bidlaw@sh.itjust.works

Written by zaknenou@lemmy.dbzer0.com on 2024-09-02 at 19:26

DNS Spoofing ? would this help me use internet while pretending that I’m only using facebook ? (which my isp offers for free)

=> More informations about this toot | More toots from zaknenou@lemmy.dbzer0.com

Written by andrew_bidlaw on 2024-09-03 at 05:42

It’d probably make it harder to deny some packets on ISP’s site if they block specifilc thiings like torrents. To mask this traffic under the one sent to Facebook, I guess it should be a bit more specialized.

=> More informations about this toot | More toots from andrew_bidlaw@sh.itjust.works

Written by Lee Duna on 2024-09-02 at 18:40

Other alternatives that work on Linux as well as Windows (I haven’t tried it on windows)

github.com/bol-van/zapret

I use GoodbyeDPI and Zapret with dnscrypt-proxy, it works perfectly

=> More informations about this toot | More toots from throws_lemy@lemmy.nz

Proxy Information
Original URL
gemini://mastogem.picasoft.net/thread/113062906845437743
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
295.942212 milliseconds
Gemini-to-HTML Time
2.155826 milliseconds

This content has been proxied by September (3851b).