4 ms·
As a man in a country where constant censoring is performed by the government this movement at least make it harder for the gov censor/monitor people.
by chunsj 8y ago
As a man in a country where constant censoring is performed by the government this movement at least make it harder for the gov censor/monitor people.
- theclaw 8y agoUntil the TRR endpoint is blocked.
- telmich 8y agoWhich country is that?
- anticensor 8y agoVHVya2V5IGhhcyBsZWdhbGlzZWQgY2Vuc29yc2hpcCBvZiBhbGwgcmFkaW8sIFRWIGFuZCBJbnRl cm5ldCBhcyBhbiAiYWRtaW5pc3RyYXRpdmUgbWVhc3VyZSIgaW4gbWlkIDIwMTcgKGxhd2xpa2Ug ZGVjcmVlIDY5MCkuIEFsbCByYWRpbyBhbmQgVFYgdHJhbnNtaXR0ZXJzIChldmVuIG9uZXMgdHJh bnNtaXR0aW5nIHByaXZhdGUgY2hhbm5lbHMpIGFyZSBvd25lZCBieSBhIGdvdmVybm1lbnQtbWFq b3JpdHkgY29tcGFueSBhbmQgYWxsIG5vbi1MQU4gbmV0d29yayB0cmFmZmljIGdvZXMgdGhyb3Vn aCBjZW50cmFsIGdhdGV3YXlzLiBFcmRvxJ9hbiBjYW4gZWFzaWx5IHJlcGxhY2Ugb3IgY2Vuc29y IGNvbW11bmljYXRpb24uCg==
- LinuxBender 8y agoIf they can MitM you to see your post, base64 will just draw more attention. Consider checking SSL fingerprints from trusted and untrusted locations instead. openssl s_client -servername news.ycombinator.com -connect news.ycombinator.com:443 < /dev/null 2>/dev/null | openssl x509 -fingerprint -noout -in /dev/stdin SHA1 Fingerprint=BB:DD:64:6F:EB:11:0C:D5:EC:CF:57:D1:F7:52:AA:99:50:1B:44:FD I would also suggest browser addons that will alert you when SSL fingerprints change, but they don't work in FF any more, so you will have to do it manually understanding that they can swap out certs based on tcp packet size. You can also pin the cert, understanding you will have to update it if HN changes out their certs or they expire.
- anticensor 8y agoSHA1 Fingerprint=BB:DD:64:6F:EB:11:0C:D5:EC:CF:57:D1:F7:52:AA:99:50:1B:44:FD HN is not replaced by MiTM in Turkey. They cannot read HTTPS unless it is using TÜBİTAK certificate (all .gov.tr and some other .tr domains use this). There are more layers of censorship till central gateway, which is inferior to, but structurally more robust than GFWoC.
- mrighele 8y agoThey will just block cloudflare's DNS servers [1] [1] https://turkeyblocks.org/2018/04/02/new-cloudflare-dns-service-filtered-turkey/ https://turkeyblocks.org/2018/04/02/new-cloudflare-dns-servi...