Actually, some DPIs just straight-up reject UDP (and since DNS and NTP are UDP-based*, just straight-up interception-and-redirect).
* TCP DNS exists but practically not used for most "normal" tasks, and at this point the censor is trying to block anything anyways.
Actually, some DPIs just straight-up reject UDP (and since DNS and NTP are UDP-based*, just straight-up interception-and-redirect).
* TCP DNS exists but practically not used for most "normal" tasks, and at this point the censor is trying to block anything anyways.