r/dumbclub

▲ 9

XHTTP's UDP handling is some actual sorcery

Set up XHTTP recently, still kept using per-game routing rules or disconnecting the proxy manually before launching games because UDP traffic with older TLS-based transports was always slow, but this time I forgot about it and somehow got lower ping than I usually get with a direct connection. Even checked outgoing connections in the router to make sure I wasn't tripping - nope, everything went into the proxy. Impressed to say the least.

If anyone's curious I'm using mihomo on the client side with XUDP enabled, stream-up mode, basic multiplexing (max concurrency 16-32). Server runs xray with XHTTP inbound behind caddy.

reddit.com
u/animorphreligion — 10 hours ago
▲ 9

Hey all,

First off, I asked Chat-GPT to help me write this post.

I’m in China and using a USA VPS (CN2 GIA connection) running VLESS. That part is solid.

I’m trying to route traffic through a second VPS in my home country for a geo-locked streaming service (idea is that it would be more stable, especially during peak hours), so:

China → VLESS → USA VPS → home country VPS → internet

I’ve tried setting up both WireGuard and Tailscale between the two VPS (not at the same time).

Here’s the weird part:

  • On the USA VPS, if I run curl ifconfig.me, it returns the home country VPS IP, so the tunnel seems to be working
  • But when I connect via VLESS from China (Shadowrocket client), everything just times out (no pages load)

So it feels like:

  • WG/Tailscale tunnel = working
  • But VLESS traffic isn’t routing through it properly (or getting dropped)

Has anyone had any experience in this? In my VLESS server config (using 3x-ui), I set outbound to UseIP, thinking this would explicitly route Xray/VLESS outbound through the WG tunnel interface to no avail. Could this be some other NAT / iptables issue on the home VPS?

Appreciate any suggestions. Is this setup even possible or is there a limitation with VLESS protocol?

reddit.com
u/SpoonMe420 — 8 days ago
▲ 4

im not a professional, i just need to know how limited my options are, anything i can while im barely connected,? can someone from the outside make something work that isn't costly like my current situation

reddit.com
u/PersonalBet8469 — 11 days ago
▲ 23

Gone are the days when VPNs were "tacitly tolerated" in China. Between the new APP filing requirements and the physical server raids at IDCs, it feels like the cat-and-mouse game just entered Hard Mode. Stay safe if you're traveling there or living there

reddit.com
u/wang4wang — 10 days ago
▲ 5

I have honeypots set up and sometimes see requests to Chinese websites on HTTPS ports with varying user agents. Whatever that is it's not legitimate traffic or a common scanning method, anyone else seen that and what do you think about it?

reddit.com
u/animorphreligion — 6 days ago
▲ 7

I live in a country where the government basically monopolized the internet service provision, so I’m stuck with a diminishing 200gb quota but I find ways around it. My biggest problem is the speed cap.

I found out the main isp here (which is affiliated with the government) has ookla speed test website whitelisted due to a contract between them. I’m basically stuck with a 30 mbps speed while my line can withhold up to 300mbps provided whenever I do a speed test specifically on ookla.

I’ve looked for ways to bypass this crawling 30mbps cap and the only way I found was through vps and tunneling, but I haven’t really been able to figure out what I actually have to do as I’m not very networking-savvy, so please any guidance would be appreciated. <3

reddit.com
u/AnxiousBug2296 — 6 days ago
▲ 13

nekoray went archived in late 2024 with a "find alternative yourself" notice. Made lurkbyte/ray. v0.7.0 went public yesterday.

What's there:

- WFP kernel-level kill switch (the one Throne rejected three times - same architecture Eddie/AirVPN and WireGuard-Win use)

- Per-app VPN bypass that actually works under both cores (sing-box `process_name` + WFP per-process permits)

- Always-On: persistent block survives crash, reboot, forced power-off. Emergency-unlock utility ships with the installer

- Xray-core upgraded 1.8.4 > 1.8.8 - `leastLoad` balancer + `burstObservatory`, so Marzban "Auto / Best server" profiles load and route correctly

- Marzban / 3X-UI / Remnawave subscription import (XRAY-JSON arrays, `internal-full` mode preserves balancers / observatory / freedom outbounds verbatim)

- Both Xray and sing-box bundled (Xray default - never dropped the way nekoray 4.0 did)

- Popup-free upgrade-with-running-RAY on Windows 11 24H2/26100 (no `0xC0000142` CSRSS cascade)

GPL-3, all 5 upstream MatsuriDayo patches credited in commit history.

Repo: https://github.com/lurkbyte/ray

Release: https://github.com/lurkbyte/ray/releases/tag/v0.7.0 - full changelog vs nekoray 3.26 inside

Windows-only for now. Linux, macOS, and AmneziaWG 2.0 are on the roadmap. Issues and PRs welcome. Going to keep maintaining this - what would you want next?

u/Sufficient-Cap-9133 — 9 days ago
▲ 9

Technically speaking, what exactly is the great firewall? How is a country about to block so much info for so many people? I feel like if I were a VPN company, I'd want every country in the world to implement their own "great firewall". Money in the bank!

reddit.com
u/CoolCukeCax — 12 days ago
▲ 3

Anyone else using obfusication methods notice insane download speeds like from 0.3-2 mbps daytime to like 50-120 mbsps at like the past midnight hours?

Why is this?... can it be explained and then like utilized in some way?

reddit.com
u/Popular_Patient7502 — 7 days ago
▲ 0

Not saying apps are useless, but most monitoring now seem network-related: PLUS
phishing
malicious ads
fake redirects
weird DNS stuff

Feels like protecting the network itself matters way more than people realize and it’s smarter to leave apps off the phone. Lets it sit at a network level at home

reddit.com
u/travel-nomad-drifter — 9 days ago
▲ 4

i hear about change to firewall for china, and i hear about change to russia. my work send me to many place, and what i need know about changes?

reddit.com
u/SurprisinglyEmployed — 11 days ago
▲ 2

Remote PC startup not working

I hosted vpn server from my router

Connected but still my PC doesn't turning on

But router show that I connected to vpn server

But when I try to turn on while using wifi on my phone it turns on

I already turned on remote start up in bios

Router - tplink BE230

reddit.com
u/Human_Ad4439 — 9 days ago