|
|
|
|
|
by alias_neo
610 days ago
|
|
That doesn't work unfortunately. I specifically DNAT addresses like those to my own local DNS on my home network to prevent apps with hard-coded DNS from hitting them. If it can be done at a home network level, you bet it can be done at ISP/government level. The only safe/working option is to tunnel everything down a VPN somewhere outside of the problem region, and go out from there. The VPN connection implicitly provides a cryptographic verification that the connection isn't being intercepted or redirected (when done right). |
|