logoalt Hacker News

tptacekyesterday at 5:42 PM2 repliesview on HN

It's trivial to make WireGuard look like a regular TLS stream. It's probably not worth a 15 year regression in security characteristics just to get that attribute; just write the proxy for it and be done with it. It was a 1 day project for us (we learned the hard way that a double digit percentage of our users simply couldn't speak UDP and had to fix that).


Replies

eptcykayesterday at 6:39 PM

It is, we did the same. It is a shame that only Linux supports proper fake TCP though.

show 1 reply
mmoossyesterday at 6:52 PM

I don't suppose you'd release it, please?

show 1 reply