Уровень 0 · материалов: 5
В кластер входят документы, описывающие технические средства и протоколы для скрытного обхода сетевых ограничений и цензуры, но не входят документы об архитектуре сети Tor или коммерческих сервисах сертифицированного VPN.
Общие признаки: обход блокировок, маскировка трафика, стелс-протоколы, туннелирование, инструменты XRay, VLESS, XHTTP
Группа выше: Инструменты обхода цензуры: обзор и выбор
Смысл: The main idea is to explain the technical architecture of the TrustTunnel protocol and demonstrate how it achieves a balance between stealth (evading censorship) and performance by utilizing standard HTTP/2 and QUIC stream multiplexing.
TrustTunnel is a new open-source VPN protocol that mimics standard HTTPS traffic using HTTP/2 and QUIC streams to bypass blocking while avoiding the performance pitfalls of traditional TCP-based VPNs.
Смысл: The main idea is to introduce GOST as a 'Swiss Army knife' for network tunneling, demonstrating how its modular combination of protocols and transports can be used to create stealthy, resilient connections to bypass sophisticated internet blocks.
A detailed technical overview of GOST, a versatile tunneling tool that allows users to combine various protocols and transports to bypass internet censorship and create secure VPNs.
Смысл: The main idea is that while TLS-masking (Reality) is no longer sufficient due to behavioral analysis by DPI systems, combining it with a behavioral-masking transport like XHTTP creates a robust defense by mimicking real HTTP traffic patterns.
As DPI systems evolve to detect VLESS+Reality via behavioral analysis, XHTTP emerges as the critical next step to mask traffic patterns and avoid blocking.
Смысл: The main idea is to introduce XHTTP as a versatile transport layer for VLESS that enhances anonymity and resilience against sophisticated censorship by masking traffic as standard HTTP/HTTPS/QUIC and enabling asymmetrical routing of data streams.
XHTTP is a transport mechanism for XRay/VLESS that bypasses censorship by masquerading as standard web traffic and allowing separate, customizable paths for upload and download data.
Смысл: The main idea is to demonstrate how XRay's reverse proxy feature can be used to make hosts behind NAT accessible from the internet and to route traffic through an internal network to bypass IP-based restrictions.
A technical guide on using XRay reverse proxy to enable port forwarding and remote access to devices behind NAT and firewalls.