this post was submitted on 22 Aug 2023
10 points (81.2% liked)
Selfhosted
59939 readers
649 users here now
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
-
Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.
-
No spam.
-
Posts here are to be centered around self-hosting. Please ensure it is clear in your post how it relates to self-hosting.
-
Don't duplicate the full text of your blog or git here. Just post the link for folks to click.
-
Submission headline should match the article title.
-
No trolling.
Resources:
- selfh.st Newsletter and index of selfhosted software and apps
- awesome-selfhosted software
- awesome-sysadmin resources
- Self-Hosted Podcast from Jupiter Broadcasting
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
They don't need to see the traffic inside the VPN. They only need to see that there's a VPN at all.
I get that - I was just confused at your "torrents would be detected" comment. I understand using a VPN would be visible and may be against whatever TOS they have.
Yeah, torrents without a VPN will be detected. Torrents inside a VPN won't be detected, but the VPN itself will.
What if VPN traffic is on a non-standard port?
It's still VPN traffic and will be detected as such.
Not really, if it's on TCP 443 it will look no different than a typical HTTPS traffic.
That's where you're wrong, bucko. A true tunnel over HTTPS, yes, but if you use IPSec on 443 it will still look like IPSec.
And if the org requires a CA cert or agent installation as part of their AUP, they can decrypt the HTTPS tunnel and see it as a VPN.