Outline ·
[ Standard ] ·
Linear+
Unifi Official TM UniFi High Speed Broadband Thread V42, READ 1ST PAGE FOR RELEVANT WIFI INFO!
|
junsheng
|
Aug 7 2024, 01:16 PM
|
|
QUOTE(blacktubi @ Aug 7 2024, 11:06 AM) Yes DoT will prevent the DNS interception by the ISP/regulators. ASUS router for example will let you to use any DNS server that support DoT. I believe most if not all major public DNS providers support DoT these days. However, there's a minor performance hit on DNS resolving performance once DoT is enabled. It's mostly unnoticeable on a high-end ASUS router (BCM4908 and above). More info about this on ASUS router: https://www.asus.com/my/support/faq/1051428/actually no, i remember sometime in may and june TM did a testing basically they just block port 853 and dot was not working anymore dot over port 443 is still working but only only a few test server
|
|
|
|
|
|
junsheng
|
Aug 8 2024, 03:18 AM
|
|
QUOTE(blackbox14 @ Aug 8 2024, 02:32 AM) Just want to ask. Isn't this illegal or against the ToS of these cloud service providers? I've heard of domain fronting before and I thought it was mostly restricted. Or is that a different thing altogether? if it's discovered / reported you just get a ban then proceed to created another new account for the same thing
|
|
|
|
|
|
junsheng
|
Aug 8 2024, 03:27 AM
|
|
QUOTE(blacktubi @ Aug 7 2024, 02:36 PM) They can implement a blanket block on both DoT and DoH for public DNS if they want. But for now, DoT works. If they enforce a strict block, just get a cloud instance in SG for $5 a month and VPN everything there. yes they can, but looking at the hours of what TM did on may and june, if they decided to flip the switch with same configuration dot won't work, since majority of dot servers only do it on port 853 unless the consumers resorted to those that support dot on port 443 and get a performance hit as most of those are just small player and test server This post has been edited by junsheng: Aug 8 2024, 03:37 AM
|
|
|
|
|
|
junsheng
|
Aug 8 2024, 03:47 AM
|
|
QUOTE(blackbox14 @ Aug 8 2024, 03:35 AM) I still think the risk that you can get banned for domain fronting should be highlighted in the guide since you need to input credit card info, real name/address, etc. to register for AWS. few k/ did it neumerous times
|
|
|
|
|