The Great Firewall of China

eccieuser9500's Avatar
China is now blocking all encrypted HTTPS traffic that uses TLS 1.3 and ESNI


https://www.zdnet.com/google-amp/art...-1-3-and-esni/


The Chinese government has deployed an update to its national censorship tool, known as the Great Firewall (GFW), to block encrypted HTTPS connections that are being set up using modern, interception-proof protocols and technologies.

The ban has been in place for at least a week, since the end of July, according to a joint report published this week by three organizations tracking Chinese censorship -- iYouPort, the University of Maryland, and the Great Firewall Report.

China now blocking HTTPS+TLS1.3+ESNI

Through the new GFW update, Chinese officials are only targeting HTTPS traffic that is being set up with new technologies like TLS 1.3 and ESNI (Encrypted Server Name Indication).

Other HTTPS traffic is still allowed through the Great Firewall, if it uses older versions of the same protocols -- such as TLS 1.1 or 1.2, or SNI (Server Name Indication).

For HTTPS connections set up via these older protocols, Chinese censors can infer to what domain a user is trying to connect. This is done by looking at the (plaintext) SNI field in the early stages of an HTTPS connections.

In HTTPS connections set up via the newer TLS 1.3, the SNI field can be hidden via ESNI, the encrypted version of the old SNI. As TLS 1.3 usage continues to grow around the web, HTTPS traffic where TLS 1.3 and ESNI is used is now giving Chinese sensors headaches, as they're now finding it harder to filter HTTPS traffic and control what content the Chinese population can access.

Per the findings of the joint report, the Chinese government is currently dropping all HTTPS traffic where TLS 1.3 and ESNI are used, and temporarily banning the IP addresses involved in the connection, for small intervals of time that can vary between two and three minutes.

Some circumvention methods exist... for now


For now, iYouPort, the University of Maryland, and the Great Firewall Report said they were able to find six circumvention techniques that can be applied client-side (inside apps and software) and four that can be applied server-side (on servers and app backends) to bypass the GFW's current block.

"Unfortunately, these specific strategies may not be a long-term solution: as the cat and mouse game progresses, the Great Firewall will likely to continue to improve its censorship capabilities," the three organizations also added.


ZDNet also confirmed the report's findings with two additional sources -- namely members of a US telecommunications provider and an internet exchange point (IXP) -- using instructions provided in this mailing list.


Article updated to clarify some technical terms.

I don't know what all this fuckin' technical jargon, mubo jumbo, nerdy computer language means, but I bet it has something to do with the whole Tik Tok and parent company situation.

I've been putting seemingly unrelated stories together since I regularly read the newspaper in High School. I thought this article that came across my feed to be pretty damn interesting. For as much as I can understand it.

Wacky? Your nerdy communications input? Or maybe one of the Mods or Admins? I'm talkin' info exchange here!








All I get is blocking encryption.
eccieuser9500's Avatar
Bill Gates calls Microsoft’s TikTok deal a poisoned chalice


https://www.theverge.com/2020/8/8/21...ents-interview


Asked if Gates is wary of Microsoft getting into the social media game, he suggests that Facebook having some more competition is “probably a good thing” but that “having Trump kill off the only competitor, it’s pretty bizarre.”

Gates seems as confused as the rest of us about how this potential TikTok deal is proceeding, especially with President Trump suggesting the US Treasury will need some type of cut from any acquisition. “I agree that the principle this is proceeding on is singly strange,” says Gates. “The cut thing, that’s doubly strange. Anyway, Microsoft will have to deal with all of that.”









I beleive intellectual property

should play a big role in the debate.
The_Waco_Kid's Avatar
Bill Gates calls Microsoft’s TikTok deal a poisoned chalice


https://www.theverge.com/2020/8/8/21...ents-interview



I beleive intellectual property

should play a big role in the debate. Originally Posted by eccieuser9500



it will. and only one person in the debate can claim he's actually taking China to task on it. let me give you a hint. it's not Biden.


BAHHAAAAAAAA
eccieuser9500's Avatar
Thank you, sir.
HoeHummer's Avatar
  • oeb11
  • 08-09-2020, 06:36 PM
9500- any comment on the Canadians china sentenced to death this past week???
From the mind capable of connecting the tendrils of multiple State Crimes committed to keep the 'cultural revolution' intact for the Ruling Class.

The class u serve????
matchingmole's Avatar
I can't wait till the debates when Joe Biden says to Donald Trump "Donald, if you hate China so much, why did you have your clothing line from Macy's and your campaign merchandise all made in China? And all those *CHINESE* patents your daughter Ivanka got?




The_Waco_Kid's Avatar
I can't wait till the debates when Joe Biden says to Donald Trump "Donald, if you hate China so much, why did you have your clothing line from Macy's and your campaign merchandise all made in China? And all those *CHINESE* patents your daughter Ivanka got? Originally Posted by matchingmole

Trump's reply .. "How Hunter's Chinese investment deal doing?"


BAHHAAAAAA
HoeHummer's Avatar
9500- any comment on the Canadians china sentenced to death this past week???
From the mind capable of connecting the tendrils of multiple State Crimes committed to keep the 'cultural revolution' intact for the Ruling Class.

The class u serve???? Originally Posted by oeb11
https://www.youtube.com/watch?v=RbM2F-cfN0A
rexdutchman's Avatar
Chinas the main reason for the start of VPNs the only way some information gets out ( other then big brother disinformation , they want joey to keep up the "china shock "