WarOnCrypto: Russia Banning TLS DoH DoT ESNI
https://www.zdnet.com/article/russia-wants-to-ban-the-use-of-secure-protocol... Same initiatives going on in most western countries, and worldwide... " The Russian government is working on updating its technology laws so it can ban the use of modern internet protocols that can hinder its surveillance and censorship capabilities. According to a copy of the proposed law amendments and an explanatory note, the ban targets internet protocols and technologies such as TLS 1.3, DoH, DoT, and ESNI. Moscow officials aren't looking to ban HTTPS and encrypted communications as a whole, as these are essential to modern-day financial transactions, communications, military, and critical infrastructure. Instead, the government wants to ban the use of internet protocols that hide "the name (identifier) of a web page" inside HTTPS traffic. "
On Tue, Sep 22, 2020 at 05:13:38PM -0400, grarpamp wrote:
https://www.zdnet.com/article/russia-wants-to-ban-the-use-of-secure-protocol...
Same initiatives going on in most western countries, and worldwide...
" The Russian government is working on updating its technology laws so it can ban the use of modern internet protocols that can hinder its surveillance and censorship capabilities. According to a copy of the proposed law amendments and an explanatory note, the ban targets internet protocols and technologies such as TLS 1.3, DoH, DoT, and ESNI. Moscow officials aren't looking to ban HTTPS and encrypted communications as a whole, as these are essential to modern-day financial transactions, communications, military, and critical infrastructure. Instead, the government wants to ban the use of internet protocols that hide "the name (identifier) of a web page" inside HTTPS traffic. "
It's all a bit silly since eventually, if this takes root, everything will just get tunnelled through some HTTPS variant with fake headers. Note to alt-net wanna bees: keep the focus of your exit/entry/vpn points on banking and other essential services, every such node should be a DNS proxy, pretend to censor deepstate "proscribed" domains - as long as banking words, any twisted black tunnel disappears a la Tor firewall hopping plugins etc. IOW, make such multi protocol tunnelling and faux header stuff become ubiquitous. In certain circumstances, e.g. many 'tubes that get "not allowed in your jurisdiction" (Australia in this case), should be instantly accessible via a one-hop proxy - which pretty much everyone should auto run. This is on the cards ... stay tuned or get cracking, as per your capacity.
participants (2)
-
grarpamp
-
Zenaan Harkness