Please help How I do block ISP send me TCPflag rst connection reset
-
@cmb:
The RST isn't what's blocking the connection, that's just the "Great Firewall" being kind and letting the client know it killed its connection so it doesn't hang. A VPN tunnel out to a different country that doesn't do such blocking is the only way around that.
now I have try use VPN , but new version "Great Firewall" still can block visit. The new version is about to start a week. when I visit sites, show connect reset. and I try use opera turbo, these ways can't To solve this problem.
Fortunately, I can access this pf site. but the pf site can't show any block keywords,Otherwise it will be blocked.Therefore, I am very worried.
-
@cmb:
The RST isn't what's blocking the connection, that's just the "Great Firewall" being kind and letting the client know it killed its connection so it doesn't hang. A VPN tunnel out to a different country that doesn't do such blocking is the only way around that.
if use your these words input in googel.com,then google.com will be blocked now. I have try. ;)
-
I think new version GRW find IP head informations has any blocked keywords,then internet connect will blocked or reset. before version is block ip, then I can use ipv6 network or use VPN bypass. but now all these ways Has failed.
-
If you're truly tunneling all your traffic out via a VPN to a country that doesn't employ such filtering, it's impossible for your country to accomplish any kind of content filtering or inspection on your traffic.
-
@cmb:
If you're truly tunneling all your traffic out via a VPN to a country that doesn't employ such filtering, it's impossible for your country to accomplish any kind of content filtering or inspection on your traffic.
I discuss with other people really some ways VPN failure.
-
As mentioned in a previous post, the best way around this is by using VPN. The VPN server has to be located in another country. Be sure to redirect all the traffic through the VPN (like the DNS etc.).
But they could detect that you're using VPN and they could reset/cut the connexion.
-
As long as they are allowing out any traffic there will be ways to tunnel through. Clearly that is getting more difficult though.
Steve
-
this is visit xijie.wordpress.com, use Wireshark tool get this:
-
..
-
..
-
Yes, they're RSTing your connection. But again, that's not what blocks it, that's just the great firewall being nice and letting the client know they've killed their connection. The RST gets through PF because it's a legit part of an established connection. Short of hacking the kernel source and breaking normal functionality required for a properly functioning network, you can't do anything about it. Besides, blocking it would accomplish nothing but leave your client hanging, not realizing the connection is dead. The connection won't magically start working because you're ignoring the RST.
-
I want to find a solution. the great firewall not block ip for some sites, it is should find block keyword domain address. like wordpress.com.
Because I have use DNS64/NAT64 system point Virtual IPv6 address or use other country proxy server,and use PPTP VPN still be reset connect. just use ip address still open destination web server.
So I think maybe has an Method hide destination domain address.
-
find some news about this. I hope PF Increased encryption capabilities within the network.
https://www.schneier.com/blog/archives/2012/12/china_now_block.html