RPRX
RPRX
@PoneyClairDeLune 不过 pin 这件事其实很难推动,我认为更根本的解决方案是不应继续将 TLS / QUIC 视为可靠的加密方式 https://github.com/net4people/bbs/issues/526 *However, pinning is actually quite difficult to implement. I believe the more fundamental solution is to stop treating TLS/QUIC as reliable...
“识别时序特征”也不是新闻了,多一层加密对此几乎没有帮助,对于 Trojan 这样的无需深度学习就能识别 TLS in TLS:[Trojan-killer](https://github.com/XTLS/Trojan-killer) 更值得关注的是“网站/App 指纹识别”,这个要做到精准可用挺难的(无 SNI 时),根据 GFW 对 ECH 的态度,可能进展不多,这也是业界继 ECH 之后着力解决的下一个问题,一个比较有意义的现实事件是“ChatGPT padding”,不过它的前提也是针对了特定的 SNI *“Identifying temporal patterns” is hardly news anymore, and adding another layer of...
> Xray currently has this feature, but it's for domains with proxy functionality. > > This method doesn't actually require a proxy server and is very suitable for browser plugins....
当然可能你得先用 HTTP 入站然后过一遍路由筛选出 CF 的域名再转到 Tunnel/Dokodemo 入站,如果你弄出了完整配置可以分享出来 就像 https://github.com/XTLS/Xray-examples/tree/main/Serverless-for-Iran *Of course, you might need to first use HTTP inbound traffic, then filter out CFe's domain through routing before redirecting to...
热知识:在中国,有一些“没有墙”的“专线”供政府、学术机构(比如大学)、愿意出高价的人(比如大型企业)使用 *Hot Knowledge: In China, there are "private lines" without walls for the government, academic institutions (e.g., universities), and those willing to pay high prices (e.g., large corporations).*