On Tue, Dec 20, 2016 at 9:50 PM, Jan Just Keijser <janj...@nikhef.nl> wrote:
> It does *NOT*, however, result in OpenVPN
> traffic looking the same as regular TLS/HTTPS traffic.
>
How about my suggestion of supporting HTTPS proxy servers? (see:"feature
request: HTTPS proxy support"). This is simply an extension of an existing
feature, and would allow server providers to (say) have squid running on
port 443, and the client would "CONNECT same.ip.address:1194" through it as
normal. That way the outside world only sees TLS traffic on port 443 - it
would hide the openvpn traffic and look "legit"
--
Cheers
Jason Haar
Information Security Manager, Trimble Navigation Ltd.
Phone: +1 408 481 8171
PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users