所以不用考虑fq的问题啊 wireshark 都能直接区分出是不是wg的流量 墙肯定也能。。。。。
复制代码 //———— err := peer.SendBuffer(elem.packet) |
udp就卡斯特罗,刚刚出来时用k2跑过,轻松跑满百兆,诶,强国梦 |
https://lists.zx2c4.com/pipermail/wireguard/2016-July/000185.html
Generally speaking, WireGuard does not aim to evade DPS, unfortunately. There are several things that prevent this from occurring: a) The first byte, which is a fixed type value. b) The fact that mac2 is most often all zeros. c) The fixed length of handshake messages. d) The unencrypted ephemeral public key. |
https://wiki.wireshark.org/WireGuard |
看下这篇邮件,里面有提到为什么wireguard容易被识别
https://lists.zx2c4.com/pipermail/wireguard/2018-September/003289.html |