Reddit on ACT Fibrenet

georgemp

Newbie
Messages
175
Location
NA
Hi,

Haven't been able to access reddit.com all day on ACT (in Chennai - static ip if it makes a difference). Anybody else facing this? Thanks

Edit:
1. DNS seems to be resolving correctly
2. traceroute seems to be getting dropped at static-chennai.vsnl.net.in (at this point it seems to go to some carrier grade private NAT network), and drops off...
 
yup. reddit is being blocked by ACT, Jio and some times by airtel. I contacted act and they said court order. I asked them which one and they said they dont know. blame supreme court .

nothing cant be done except using VPN
 
I haven't faced any issue using Reddit on Jio. For a popular website, Reddit is very shitty and often suffers from down times.
 
these big social platforms really need to switch on ESNI and stuff. have been reading about how russians are switching to firefox because of esni support which enables them to access domains blocked by government but have turned on esni.
 

Yeah I read this one, I don't know what was the case earlier but since I have been using I haven't faced issue using reddit on jio gigafiber.
 


these big social platforms really need to switch on ESNI and stuff. have been reading about how russians are switching to firefox because of esni support which enables them to access domains blocked by government but have turned on esni.
I don’t think switching to esni can get around ISP website block. Your ISP will still see which site you visited (without VPN). It merely prevents man-in-the-middle attacks and someone snooping your data. ISPs can still block at their whims. Please correct me if wrong.
 
ESNI would basically completely hide what domains you are visiting from the isp. that's what it is designed to do. https does not hide the domain from the isp. esni fixes that.

Encrypting SNI: Fixing One of the Core Internet Bugs

plus if the domain is on cloudflare... the best isp can do is to block access to the cloudflare ip. which means they would end up blocking a LOT of domains hosted by cloudflare.

i assume that if the isp knows of the parent ip, the site could logically be blocked. but that would mostly affect small independent sites which uses shared hosting and such. @vedantlath might be able to clarify that.
 
even security agencies are pissed.

Similarly, the GCHQ, Britain's intelligence service, has also criticized both Google and Mozilla, claiming the new protocol would impede police investigations and that it could undermine its existing government protections against malicious websites.
The Internet Watch Foundation (IWF), a British watchdog group with a declared mission to minimize the availability of online child sexual abuse content, also criticized both Google and Mozilla, claiming the browser makers were ruining years of work in protecting the British public from abusive content by providing a new method for accessing illegal content.
 
this is also going to become a nightmare for corporates. if they are unable to restrict these technologies on their network, their IT guys would have no way to monitor and control what their employees are doing.
 
But enabling ESNI and passing all 4 tests on cloudflare website still doesn’t unblock any of those blocked sites on Jio or on Hathway or even on MTNL for that matter.
 
ESNI needs to be enabled by the domain. i believe all domains hosted on cloudflare have esni turned on by default.
and your browser needs to support esni. firefox supports it but you have to turn it on manually.

as a user, you can only enable doh/dot at your end. rest the web host has to do. (https, hsts, dnssec, esni). once this becomes widespread... it should basically nullify a lot of blocking strategies by ISPs.


fr6FqDG.png
 
i have not tried it myself. but find a domain on cloudflare that is blocked on your isp.
try accessing it on firefox after enabling ESNI and doh in firefox.
it should logically become accessible.
 

Top