From North America, and I’m going on vacation in china for a few weeks. I wonder if anyone knows if I’ll be able to access any of my self-hosted services over zerotier while I’m abroad?
Edit: To be specific, I’m hoping to ssh into my machine over zerotier in case I need to fix something and back up some photos to my home NAS via rsync or something
tailscale worked some times, but seemed to depend on the location of the moon relative to the air speed of a nearby sparrow and it was really slow.
I wouldn’t access anything nor would I take any tech with you.
Don’t risk it
What are the risks, if you aren’t intending on doing anything illegal?
They can load in spyware that follows you outside the country. Also the whole “if you aren’t intending to do anything illegal” bit really reads like all the piece of shit bootlicking conservatives after George Floyd.
China isn’t exactly know for rule of law. They could simply decide you are a criminal. When traveling international it is better to play it safe.
If you really need a service I would either bring a disk drive with you or setup limited remote access for yourself that has minimal access. Remember they can force you to hand over things like passwords.
Doesn’t the USA do the exact same thing?
I wouldn’t recommend travelling to the USA either
I unironically think the USA’s security might be worse than China. Everyone in China was quite friendly and patient.
Competent, too, I bet.
Yep. Pretty efficient most of the time
Bringing non-disposable technology to China is a mistake in most circumstances.
What you’re asking is illegal where you’re going
Best of luck to you
Is it illegal to backup my photos to the NAS in my house? I’m not even attempting to access banned services
Bypassing the GFW is illegal
People posting here don’t realize that CN gov IDs and allows certain traffic to get rerouted through a certain VLAN so they can do DPI and record every packet through a beefy expensive tap device to analyze the telemetry later, and potentially build a case against you. If they so choose. And they likely have the capability to trivially decrypt TLS.
Don’t bring in any tech, don’t access your personal net back home, don’t expect any level of actual privacy or good intentions. Just do your business and keep your digital digital persona minimal while there.
they likely have the capability to trivially decrypt TLS
Whoa. Anywhere to read more about this? Had not been paying close attention, didn’t realise that was so starkly the case.
China blocks newer TLS and forces a TLS downgrade of a version they have decryption capabilities of - https://www.f5.com/labs/articles/threat-intelligence/the-2021-tls-telemetry-report
More info - https://gfw.report/publications/usenixsecurity23/en/
Chinese cryptography law mandates packet inspection and supervison of all foreign telemetry - https://link.springer.com/chapter/10.1007/978-3-031-11252-2_4
https://en.m.wikipedia.org/wiki/Cryptography_lawIf you are truly skeptical of one of the world’s largest cyber threat actors with an enormous economy and large population of cyber security experts is or isnt capable of trivially decrypting TLS, I don’t know how else I can convince you that they are capable.