With the UK apparently floating ideas of a VPN ban it’s got me worried about the future of anonymity online. Now people have already pointed out that a VPN ban doesn’t make sense because of all the legitimate uses of one and wouldn’t even be enforceable anyway, but that got me thinking.

What if governments ordered websites (such as social media sites) to block traffic originating from a VPN node? Lots of sites already do this (or restrict your activity if they detect a VPN) to mitigate spam etc. and technically that wouldn’t interfere with “legitimate” (in the eyes of the gov) VPN usage like logging onto corporate networks remotely

It’s already a pain with so many sites either blocking you from access or making you jump through a million captchas using VPNs now. I’m worried it’s about to get a whole lot worse

  • James R Kirk ( Kirk@startrek.website ) Banned from community
    link
    fedilink
    English
    arrow-up
    19
    ·
    11 months ago

    It’s theoretically possible but difficult to actually do. China has a large central government and surveillance state, VPNs are essentially banned there, and yet a large percentage of the population uses them daily to the point where it’s commonplace.

    • Zerush ( Zerush@lemmy.ml ) 
      link
      fedilink
      arrow-up
      3
      ·
      edit-2
      11 months ago

      Snowflake or steganographic comunication, works even in North Corea, encrypted messages are not a solution, because they always cause suspicion in countries with strong surveillance and censorship. VPN are not the solution either, even in occidental coutries, there are a lot of webs which are not accesible with a VPN or Proxy, mostly streaming sites, eg. Rakuten and others.

  • artyom ( artyom@piefed.social ) 
    link
    fedilink
    English
    arrow-up
    12
    ·
    11 months ago

    Lots of places are applying that sort of regulation already. Problem is, how do you know which IPs are VPNs? There are some obvious ways, and many people block some VPNs already but you can’t block every VPN. I can spin up a VPN right now and open it up to users in other countries. It’s impossible.

    The gov could theoretically maintain a repository of “known” VPNs that they could require sites to block, though. They could even force them to be blocked at the DNS level. This would probably be fairly effective.

    But that’s also most certainly going to be abused as well.

      • Jason2357 ( Jason2357@lemmy.ca ) 
        link
        fedilink
        arrow-up
        2
        ·
        11 months ago

        Small scale version. I heard from some kids that they wanted to play Roblox at school. IT had blocked it on the Wifi. The kids advice to each other was “go on the play store, search VPN, and install whatever one is free.” - IT absolutely isn’t making those kids safer.

    • Jason2357 ( Jason2357@lemmy.ca ) 
      link
      fedilink
      arrow-up
      1
      ·
      11 months ago

      They are only interested in retail, anonymizing VPNs. If you spin up your own VPN you are still 1:1 linked to that IP address. If you use a work VPN, they fully track everything. The anonymizing ones that dont track users and share an IP between many users are a threat to mass surveilance.

      • artyom ( artyom@piefed.social ) 
        link
        fedilink
        English
        arrow-up
        1
        ·
        11 months ago

        They are only interested in retail, anonymizing VPNs

        Okay, and how will they know which ones those are?

        If you spin up your own VPN you are still 1:1 linked to that IP address

        I don’t think you read that entire sentence. I wasn’t talking about spinning one up for my personal use.

  • chaoticnumber ( chaoticnumber@lemmy.dbzer0.com ) 
    link
    fedilink
    English
    arrow-up
    11
    ·
    11 months ago

    I have moments when I think “I might get banned for this”, this is one of those moments.

    You may try to ban vpns but you can not really, people usually find ways around censorship. We are notorious for this stuff, as a species.

    Its infuriating to me when people just roll over for the powers that be. They may ban some nodes, others will pop up, those will get banned too and so the cycle of cat and mouse begins.

    You can host your own vpn with wireguard. It takes a bit of figuring out, sure, but you can literally do so with a raspberry pi. Stick it in a network of choice and voila.

    Oh they may control stuff, but this is not a game that can be won, human repression is a futile effort, it may work for a while, but there is a reason why regimes fall. See the wall of Berlin and so many other examples.

    Fret not friend, for hope dies last.

    • Auli ( Auli@lemmy.ca ) 
      link
      fedilink
      English
      arrow-up
      2
      ·
      11 months ago

      They could ban VPNs and not play cat an mouse. I always think China allows some VPN use when they could stop it completely. I always think of the Matrix with the option of leaving.

  • bl4kers ( bl4kers@lemmy.ml ) 
    link
    fedilink
    English
    arrow-up
    11
    ·
    11 months ago

    That would severely cripple remote work/collaboration, which is essential for all megacorps. Unless there’s some sort of carve out for that I don’t see it happening

  • ftbd ( ftbd@feddit.org ) 
    link
    fedilink
    arrow-up
    8
    ·
    11 months ago

    VPN technology will never be banned, as most companies rely on it heavily, e.g. for remote work. The only thing I could see is ISPs keeping a blacklist of known addresses of commercial VPN providers, but that seems like an uphill battle

    • Jason2357 ( Jason2357@lemmy.ca ) 
      link
      fedilink
      arrow-up
      1
      ·
      11 months ago

      There are already (crappy) ip blocklists available specifically for retail VPN providers. They don’t include corporate vpn providers because capitalism. Anonymizing VPN services have limited IP blocks that are easily tracked.

  • Anything can be made illegal. Enforcement is tricky. At the moment it is very easy to block Wireguard protocol at the ISP level, some even do it. But that would probably push Wireguard and others to invest more in obfuscation.

    As a sidenote, it bugs me that Wireguard does not support obfuscation out of the box, and you have to put it on top of wireguard.

    • Auli ( Auli@lemmy.ca ) 
      link
      fedilink
      English
      arrow-up
      1
      ·
      11 months ago

      That is false. Everyone says that but where where the hacks for direct TV or the Nagra 3 for dish? They never came besides massive money sitting on the table for whoever did. Or modern console jailbreaking? Have the PS5 and latest XBox have hacks?

    • Auli ( Auli@lemmy.ca ) 
      link
      fedilink
      English
      arrow-up
      2
      ·
      11 months ago

      People won’t do that as we are lazy as a species. Any sort of friction and the people who do it well drop considerably.

    • Jason2357 ( Jason2357@lemmy.ca ) 
      link
      fedilink
      arrow-up
      1
      ·
      11 months ago

      I do exactly this, but it doesn’t protect your privacy. That one IP address is literally tied to your credit card number and you are the only person using it.

      • eleitl ( eleitl@lemmy.zip ) 
        link
        fedilink
        arrow-up
        1
        ·
        11 months ago

        It takes lawful intercept by ISP out of the loop and the egress point should be in a minimally cooperative jurisdiction. You know the endpoint is known good since you’re the admin and the IP is not in a known VPN exit blocklist. Of course economically it makes sense to share tunnels with family and friends.

  • communism ( communism@lemmy.ml ) 
    link
    fedilink
    arrow-up
    2
    ·
    11 months ago

    I imagine it’d be a jurisdiction issue for what you propose. If, say, the UK mandates that websites block VPN nodes, that will affect websites served from the UK (creating a Great Firewall of Britain). But what about websites served outside the UK? Those websites can’t possibly tell if a user is from the UK and using a VPN, vs outside the UK and using a VPN, so they can’t only block UK visitors—they’d have to block all VPN traffic, which is probably not worth it from a business point of view. I suppose the UK could then deem that website illegal in the UK and block them, but then that’d only block the website for non-VPN users in the UK… But if the website owner is outside the UK they can’t be punished for violating that law.

    More probable (though I still think unlikely) is that a country could sniff for e.g. Wireguard packets and block those. But again that’s unlikely because of businesses using VPNs to let employees access company intranets at home.

    • Jason2357 ( Jason2357@lemmy.ca ) 
      link
      fedilink
      arrow-up
      1
      ·
      11 months ago

      These laws tend to effect any company that does business in the state or country. Any commercial service or company wanting to make money from UK customers will be required to implement the VPN block for all their customers.