Page 1 of 1

SoftEther S-NAT mode gets detected by GWF

Posted: Fri Sep 05, 2014 4:42 am
by cfunk
So far, I have been testing with Bridge and S-NAT modes successfully, but I must confirm that the technology has been catched by the Great Firewall of China already. I tested both implementation ( Bridge and S-NAT ) for like 5 days, it worked good until I tested Bridge and the DNS started to malfunction. After that, I remade a new server and used S-NAT again and now it looks like for some reason the firewall has detected something and the DNS now malfunction and the connection is pretty unreliable. It is not a problem of my servers because I have destroyed and recreated the servers 5 times with new public IP's and the same thing happens.

EDIT : I just added a new user ( a friend on another location in china ) And seems that its only me who is having this DNS relay problem ???? Why ? Does the firewall keeps the MAC information of your NIC after detecting "intrusive" packets and ban you or something ? Should I spoof my MAC ?

Just wanted to report and see if you have some idea too.

EDIT: I tested on three different users and all of our connections gets detected and down.

Re: SoftEther S-NAT mode gets detected by GWF

Posted: Wed Sep 17, 2014 7:29 am
by thisjun
S-NAT or LocalBridge or your MAC address can't be detected by GFW.
GFW detects TCP port of your VPN Server.
Did you use default TCP port?

Re: SoftEther S-NAT mode gets detected by GWF

Posted: Wed Sep 17, 2014 7:52 am
by cfunk
Yes, I used TCP 443. Should I use another port ? As far as I know, using both bridge and S-NAT on port 443 is unreliable, gets detected and down.

Re: SoftEther S-NAT mode gets detected by GWF

Posted: Wed Sep 24, 2014 7:53 am
by thisjun
Yes. Please try another port.