this post was submitted on 06 Jul 2023
57 points (98.3% liked)
Asklemmy
43812 readers
882 users here now
A loosely moderated place to ask open-ended questions
Search asklemmy π
If your post meets the following criteria, it's welcome here!
- Open-ended question
- Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
- Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
- Not ad nauseam inducing: please make sure it is a question that would be new to most members
- An actual topic of discussion
Looking for support?
Looking for a community?
- Lemmyverse: community search
- sub.rehab: maps old subreddits to fediverse options, marks official as such
- [email protected]: a community for finding communities
~Icon~ ~by~ ~@Double_[email protected]~
founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I would say the same about the entire china firewall.
Unfortunately, China's firewall is a extremely robust technology. It is much more than just a DNS sink hole.
For example, it can block IP addresses (probably dynamically), like digital ocean or AWS. It can even block internet protocols, like TLS1.3 https://www.zdnet.com/article/china-is-now-blocking-all-encrypted-https-traffic-using-tls-1-3-and-esni/ . It can even block tor, a inernet protocol designed for anonymity and prevent censorship https://www.technologyreview.com/2012/04/04/186902/how-china-blocks-the-tor-anonymity-network/
It is truely disheartenng to see talented engineers working on this piece of oppressive technology. I imagine if they want to, it would be rather trivial to block most activitypub instance.
Yeah I mean, deep packet inspection at that scale is certainly an impressive feat. But that doesn't change the fact that it's a game of whack-a-mole. Tor entry relays get detected? Tor devs change the handshake or use purified to reach the entry nodes: https://support.torproject.org/censorship/connecting-from-china/
A friend of mine was able to bypass the firewall there a few years ago using unlisted VPN endpoints he got from his VPN provider.
They can block most things for most uninformed users. But they'll never be able to make it impenetrable without cutting off access to the larger internet completely.