is there a way to bypass DPI on my entire LAN as opposed to installing a rewriter on each device

@munir
Run it on the router and add a rule to the mangle table to pass all outgoing traffic through it? 🤔

Follow

@munir
Here is a readme file for a popular set of tools to bypass Russian DPI that you can run on OpenWRT routers: github.com/bol-van/zapret/blob
It covers a few DPI circumvention techniques and traffic routing in general, I think you might find a useful recipe or two in it.

@m0xee any router you would suggest? i dont wanna use consumer trash anymore, i want switches, routers, APs separated in my new home

@munir
I'm actually not against integrated solutions, when my olde NetGear WNDR3800 got fried recently, I ended up getting exactly same model. I was using separate devices in the meantime and found it… messy, if you don't enjoy playing around with complex network configurations, I won't recommend it — simply not worth it.

@munir
I would recommend WNDR3800, but it's quite old and hard to find, might also have limited coverage by today's standards — might be a problem if you have a big house, get WRT1900ACS by Linksys instead, or WRT3200ACM — which is even better: openwrt.org/toh/linksys/wrt320
But not older models, check OpenWRT wiki and see if it's supported by the latest version and whether there are any caveats in terms of hardware support.

@m0xee im thinking of getting a server at home for funsies, that's why

@munir
That's not a problem even when using a router, my Pelorma instance is also a print server, a web server, and a torrent seedbox and that's a separate machine from the one that hosts my Gemini capsule, acts as a proxy and a VPN box — this doesn't prevent me from using an OpenWRT router, which provides the basic networking and acts as a wireless AP for phones and laptops.

@munir With OpenWRT you can have all the advanced routing/filtering you want, just forward the ports of your externally available IP-address to your server or just any machine on your network — much more secure this way and with powerful enough router gives you little to no overhead, at least this was never a problem for me and I'm using a setup like this for more than a decade.

Sign in to participate in the conversation
Librem Social

Librem Social is an opt-in public network. Messages are shared under Creative Commons BY-SA 4.0 license terms. Policy.

Stay safe. Please abide by our code of conduct.

(Source code)

image/svg+xml Librem Chat image/svg+xml