▲ 105 ▼ EU calls VPNs “a loophole that needs closing” in age verification push (cyberinsider.com) submitted 4 months ago by whatdoiputhere12@hexbear.net to c/europe@hexbear.net 19 comments fedilink hide all child comments nice to see the EU is also going all in with fucking over vpns too, glad to see we aren’t alone! sauce tweet https://nitter.net/EP_EPRS/status/2051959573917929731?
[–] gayspacemarxist@hexbear.net 20 points 4 months ago (13 children) so what's the new vpn? permalink fedilink source hideshow 13 child comments replies: [–] kleeon@hexbear.net 42 points 4 months ago (11 children) vless+reality is the current state of the art for censorship bypass. It hides VPN traffic by making it appear like regular https traffic and there are currenly no reliable ways of detecting it. Internet will get much more censored everywhere so I'd recommend you to start preparing right now permalink fedilink source parent hideshow 11 child comments replies: [–] gayspacemarxist@hexbear.net 7 points 4 months ago (8 children) Oh yeah I've seen those repos before. Do you know any providers? permalink fedilink source parent hideshow 8 child comments replies: [–] kleeon@hexbear.net 11 points 4 months ago (7 children) Providers that I do know of probably don't work in your country. Personally I run my own VPN servers. You just buy a cheap VPS in some country with not too much censorship (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans), then you can use something like X-UI panel to easily make a VPN server. X-UI also supports a bunch of other VPN protocols, including more common ones like Wireguard, so you could start with making your own Wireguard VPN before moving on to something more advanced permalink fedilink source parent hideshow 7 child comments replies: [–] whatdoiputhere12@hexbear.net [S] 8 points 4 months ago (1 child) (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans) if it gets to that would the non eu balkan countries be a safe bet for getting a vps server? (like albania bosnia serbia etc) permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent [–] BountifulEggnog@hexbear.net 7 points 4 months ago* (last edited 4 months ago) (3 children) And you don't have IP issues or anything like that? Like getting blocked or anything? I just assumed websites etc would take issue with being connected to a data center IP permalink fedilink source parent hideshow 3 child comments replies: [–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago ICIC thanks for the info permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago (1 child) Do you know any side by side comparisons with something like shadowsocks or obfsproxy? I'm curious to see how these technologies could be compared. permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 2 points 4 months ago* Can't name something from the top of my head but this article seems to provide pretty decent rundown, though I think the info might be a bit outdated now when it comes to protocol detection rates - they are probably way higher now I know shadowsocks is not gonna be usable once some serious DPI tools start getting rolled out. It's already not usable in China, Russia and Iran. The problem with shadowsocks is that unlike vless+reality, it doesn't attempt to disguise itself as normal website browsing (at least by default), so newer firewalls can detect it pretty easily. I don't have any experience with obfs but I'm pretty sure it has the same problem. The traffic doesn't look like anything in particular, so firewall just drops it permalink fedilink source parent [–] segfault11@hexbear.net 11 points 4 months ago logging off permalink fedilink source parent
[–] kleeon@hexbear.net 42 points 4 months ago (11 children) vless+reality is the current state of the art for censorship bypass. It hides VPN traffic by making it appear like regular https traffic and there are currenly no reliable ways of detecting it. Internet will get much more censored everywhere so I'd recommend you to start preparing right now permalink fedilink source parent hideshow 11 child comments replies: [–] gayspacemarxist@hexbear.net 7 points 4 months ago (8 children) Oh yeah I've seen those repos before. Do you know any providers? permalink fedilink source parent hideshow 8 child comments replies: [–] kleeon@hexbear.net 11 points 4 months ago (7 children) Providers that I do know of probably don't work in your country. Personally I run my own VPN servers. You just buy a cheap VPS in some country with not too much censorship (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans), then you can use something like X-UI panel to easily make a VPN server. X-UI also supports a bunch of other VPN protocols, including more common ones like Wireguard, so you could start with making your own Wireguard VPN before moving on to something more advanced permalink fedilink source parent hideshow 7 child comments replies: [–] whatdoiputhere12@hexbear.net [S] 8 points 4 months ago (1 child) (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans) if it gets to that would the non eu balkan countries be a safe bet for getting a vps server? (like albania bosnia serbia etc) permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent [–] BountifulEggnog@hexbear.net 7 points 4 months ago* (last edited 4 months ago) (3 children) And you don't have IP issues or anything like that? Like getting blocked or anything? I just assumed websites etc would take issue with being connected to a data center IP permalink fedilink source parent hideshow 3 child comments replies: [–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago ICIC thanks for the info permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago (1 child) Do you know any side by side comparisons with something like shadowsocks or obfsproxy? I'm curious to see how these technologies could be compared. permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 2 points 4 months ago* Can't name something from the top of my head but this article seems to provide pretty decent rundown, though I think the info might be a bit outdated now when it comes to protocol detection rates - they are probably way higher now I know shadowsocks is not gonna be usable once some serious DPI tools start getting rolled out. It's already not usable in China, Russia and Iran. The problem with shadowsocks is that unlike vless+reality, it doesn't attempt to disguise itself as normal website browsing (at least by default), so newer firewalls can detect it pretty easily. I don't have any experience with obfs but I'm pretty sure it has the same problem. The traffic doesn't look like anything in particular, so firewall just drops it permalink fedilink source parent
[–] gayspacemarxist@hexbear.net 7 points 4 months ago (8 children) Oh yeah I've seen those repos before. Do you know any providers? permalink fedilink source parent hideshow 8 child comments replies: [–] kleeon@hexbear.net 11 points 4 months ago (7 children) Providers that I do know of probably don't work in your country. Personally I run my own VPN servers. You just buy a cheap VPS in some country with not too much censorship (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans), then you can use something like X-UI panel to easily make a VPN server. X-UI also supports a bunch of other VPN protocols, including more common ones like Wireguard, so you could start with making your own Wireguard VPN before moving on to something more advanced permalink fedilink source parent hideshow 7 child comments replies: [–] whatdoiputhere12@hexbear.net [S] 8 points 4 months ago (1 child) (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans) if it gets to that would the non eu balkan countries be a safe bet for getting a vps server? (like albania bosnia serbia etc) permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent [–] BountifulEggnog@hexbear.net 7 points 4 months ago* (last edited 4 months ago) (3 children) And you don't have IP issues or anything like that? Like getting blocked or anything? I just assumed websites etc would take issue with being connected to a data center IP permalink fedilink source parent hideshow 3 child comments replies: [–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago ICIC thanks for the info permalink fedilink source parent
[–] kleeon@hexbear.net 11 points 4 months ago (7 children) Providers that I do know of probably don't work in your country. Personally I run my own VPN servers. You just buy a cheap VPS in some country with not too much censorship (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans), then you can use something like X-UI panel to easily make a VPN server. X-UI also supports a bunch of other VPN protocols, including more common ones like Wireguard, so you could start with making your own Wireguard VPN before moving on to something more advanced permalink fedilink source parent hideshow 7 child comments replies: [–] whatdoiputhere12@hexbear.net [S] 8 points 4 months ago (1 child) (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans) if it gets to that would the non eu balkan countries be a safe bet for getting a vps server? (like albania bosnia serbia etc) permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent [–] BountifulEggnog@hexbear.net 7 points 4 months ago* (last edited 4 months ago) (3 children) And you don't have IP issues or anything like that? Like getting blocked or anything? I just assumed websites etc would take issue with being connected to a data center IP permalink fedilink source parent hideshow 3 child comments replies: [–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent [–] gayspacemarxist@hexbear.net 2 points 4 months ago ICIC thanks for the info permalink fedilink source parent
[–] whatdoiputhere12@hexbear.net [S] 8 points 4 months ago (1 child) (Netherlands is a pretty good one but it might not be in the future due to EU shenanigans) if it gets to that would the non eu balkan countries be a safe bet for getting a vps server? (like albania bosnia serbia etc) permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent
[–] kleeon@hexbear.net 8 points 4 months ago would definitely be an improvement if/when the Netherlands starts cracking down on privacy. General rule of thumb for picking a VPN exit node is you should try crossing legal boundaries. So for example if you are living in the EU, prefer some country outside of the EU that won't enforce EU laws and is less likely to cooperate with EU/western intelligence services. The thinking is that even if those countries don't respect your privacy, at least they are less likely to rat you out to your own government permalink fedilink source parent
[–] BountifulEggnog@hexbear.net 7 points 4 months ago* (last edited 4 months ago) (3 children) And you don't have IP issues or anything like that? Like getting blocked or anything? I just assumed websites etc would take issue with being connected to a data center IP permalink fedilink source parent hideshow 3 child comments replies: [–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent
[–] kleeon@hexbear.net 6 points 4 months ago (2 children) The only site I noticed blocking me is reddit, everything else works fine. I think blocking data center IPs would probably break a bunch of shit permalink fedilink source parent hideshow 2 child comments replies: [–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent
[–] eldavi@lemmy.ml 3 points 4 months ago (1 child) Did you learn of vless from Reddit? permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent
[–] kleeon@hexbear.net 3 points 4 months ago I think I learned about it from habr.com permalink fedilink source parent
[–] gayspacemarxist@hexbear.net 2 points 4 months ago ICIC thanks for the info permalink fedilink source parent
[–] gayspacemarxist@hexbear.net 2 points 4 months ago (1 child) Do you know any side by side comparisons with something like shadowsocks or obfsproxy? I'm curious to see how these technologies could be compared. permalink fedilink source parent hideshow 1 child comment replies: [–] kleeon@hexbear.net 2 points 4 months ago* Can't name something from the top of my head but this article seems to provide pretty decent rundown, though I think the info might be a bit outdated now when it comes to protocol detection rates - they are probably way higher now I know shadowsocks is not gonna be usable once some serious DPI tools start getting rolled out. It's already not usable in China, Russia and Iran. The problem with shadowsocks is that unlike vless+reality, it doesn't attempt to disguise itself as normal website browsing (at least by default), so newer firewalls can detect it pretty easily. I don't have any experience with obfs but I'm pretty sure it has the same problem. The traffic doesn't look like anything in particular, so firewall just drops it permalink fedilink source parent
[–] kleeon@hexbear.net 2 points 4 months ago* Can't name something from the top of my head but this article seems to provide pretty decent rundown, though I think the info might be a bit outdated now when it comes to protocol detection rates - they are probably way higher now I know shadowsocks is not gonna be usable once some serious DPI tools start getting rolled out. It's already not usable in China, Russia and Iran. The problem with shadowsocks is that unlike vless+reality, it doesn't attempt to disguise itself as normal website browsing (at least by default), so newer firewalls can detect it pretty easily. I don't have any experience with obfs but I'm pretty sure it has the same problem. The traffic doesn't look like anything in particular, so firewall just drops it permalink fedilink source parent