wstunnel
streisand
wstunnel | streisand | |
---|---|---|
14 | 27 | |
3,086 | 22,450 | |
- | - | |
9.6 | 0.0 | |
4 days ago | about 3 years ago | |
Rust | Shell | |
GNU General Public License v3.0 or later | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
wstunnel
-
List of ngrok/Cloudflare Tunnel alternatives and other tunneling software and services. Focus on self-hosting.
wstunnel - Proxies over WebSockets. Focus on proxying from behind networks that block certain protocols. Written in Rust with executables provided.
-
Russia has started indiscriminately blocking all OpenVPN/WireGuard connections
Shameless plug, there is also wstunnel (i am its author) https://github.com/erebe/wstunnel/, hope you enjoy.
- Tunnel all your traffic over WebSocket protocol
-
SSH3: SSH using HTTP/3 and QUIC
If you want to tunnel UDP (WireGuard) or TCP (SSH) over WebSocket protocol, check out https://github.com/erebe/wstunnel
-
Russia starts blocking VPN at the protocol (WireGuard, OpenVPN) level
While working in an environment where VPN connections were pretty much all blocked⁰ a friend of mine had success using https://guacamole.apache.org/ to access a remote machine¹. Not quite the same as a direct VPN connection but worth a try if nothing else functions, it looks enough like normal HTTPS traffic that he got away with it.
To keep your wireguard setup more as-is, you could try https://kirill888.github.io/notes/wireguard-via-websocket/ to tunnel that via a web server. In fact https://github.com/erebe/wstunnel which that uses could be used just as well with any other UDP based VPN.
I once tinkered with https://github.com/yarrick/iodine and successfully connected to resources over the wireless on a train, bypassing its traffic capture and sign-up requirement, so that might be an option, though I think fully blocking external DNS is more common now so this is less likely to work²³.
--
[0] practically only HTTP(S) permitted, not even SSH, DPI in use that detected just using SSH or OpenVPN over port 443
[1] NOTE: be careful breaching restrictions like this, you are at risk of an insta-sacking if discovered, or worse if operating in some securiry environments!
[2] and the latency when it does work is significant!
[3] and that much traffic over port 53 might get noticed by the heuristics of data exfiltration scanner, encouraging sysadmins to notice and implement a way to block it
- Wireguard over WebSocket Tunnel
-
Requesting Help bypassing CGNAT with Wireguard - Connecting Plex to a VPS and then to a domain.
You can try with this project, https://github.com/erebe/wstunnel.
- wstunnel - Tunneling over websocket protocol
- GoodbyeDPI: Deep Packet Inspection circumvention utility
-
Wireguard over Websockets over Cloudfare Tunnel
There are projects out there (like this) which run wireguard traffic through websocket.
streisand
-
The NSA is just from taking over the internet
https://github.com/StreisandEffect/streisand
Streisand sets up a new server running your choice of WireGuard, OpenConnect, OpenSSH, OpenVPN, Shadowsocks, sslh, Stunnel, or a Tor bridge. It also generates custom instructions for all of these services. At the end of the run you are given an HTML file with instructions that can be shared with friends, family members, and fellow activists.
-
Russia has started indiscriminately blocking all OpenVPN/WireGuard connections
Unfortunately, that's to the Great Firewall of China, there has been a lot of resources put in to fingerprint VPNs and block them by state actors.
Fortunately, however, there is equally years of some of the smartest minds on the planet working to bypass Chinese censorship, so there are some great OpenVPN alternatives.
I really encourage you to look into something like Shadowsocks which Chinese people have found great success in using over the last several years.
It's quite sad that projects like Streisand[0] were archived, but I'm sure there are other alternatives that might make it just as easy to roll onto a server.
[0] https://github.com/StreisandEffect/streisand
-
Ask HN: 2023 Alternative to the Streisand Project
The Streisand Project[0] provided easy installation of well-configured certs, VPNs and various other software on cloud instances. It was great for travelling internationally: run the script and after a few minutes one had a cloud instance and everything one needed to securely access the Internet through one’s own country.
Unfortunately, it was archived in 2021. Is there anything in 2023 which approaches it? I’ve seen Algo[1], but I don’t believe it does as much to help one to avoid packet filtering. It’s also based on Ubuntu rather than Debian, which seems like a mistake with security-conscious server software.
0: https://github.com/StreisandEffect/streisand
1: https://github.com/trailofbits/algo
-
NRIs : Do you use Indian subscriptions abroad to save money?
It basically works like any normal VPN. Setting it up is quite easy, you just need a VPS and setup Streisand by following their guide.
-
I don’t want my landlord to see my website activities, any VPN recommendations? What do you think of VPN providers such as Nord, Express VPN? Is it safe to use free VPN such as Hola? I need a VPN that will not slow down my Internet speed (100M) and safe as well.
You are better off renting a cloud server and rolling your own, e.g. using Streisand, Algo or my own Edgewalker
- How to turn 256MB NAT into a VPN?
- I don't think this is much of a hacking but the internet is going to shutdown in my country and I don't know how to cross internet blockage.
-
Pivpn: Simplest Way to Setup a VPN
I currently use https://github.com/StreisandEffect/streisand which was extremely simple to set up.
What are the main advantages over Streisand?
-
How do you stay secure?
For a VPN, I use Streisand (https://github.com/StreisandEffect/streisand) running on a box in a datacenter in Iceland. I also occasionally use other VPNs. I turn off the VPN on my gaming PC when playing specific games.
- Ask HN: Which VPN provider should one use from Russia?
What are some alternatives?
docker-wireguard
algo - Set up a personal VPN in the cloud
udptunnel - It allows TCP/UDP/ICMP traffic over UDP tunneling. It's useful to avoid Internet restrictions.
docker-ipsec-vpn-server - Docker image to run an IPsec VPN server, with IPsec/L2TP, Cisco IPsec and IKEv2
udp2raw - A Tunnel which Turns UDP Traffic into Encrypted UDP/FakeTCP/ICMP Traffic by using Raw Socket,helps you Bypass UDP FireWalls(or Unstable UDP Environment)
dnscrypt-proxy - dnscrypt-proxy 2 - A flexible DNS proxy, with support for encrypted DNS protocols.
shadowsocks-rust - A Rust port of shadowsocks
openconnect - OpenConnect client extended to support Palo Alto Networks' GlobalProtect VPN
Cloak - A censorship circumvention tool to evade detection by authoritarian state adversaries
ansible-collection-hardening - This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL
outline-apps - Outline Client and Manager, developed by Jigsaw. Outline Manager makes it easy to create your own VPN server. Outline Client lets you share access to your VPN with anyone in your network, giving them access to the free and open internet.
jetson-nano-image - Create minimalist, Ubuntu based images for the Nvidia jetson boards [Moved to: https://github.com/pythops/jetson-image]