Is China's Control of the Internet Slipping?
Garp writes "According to the BBC news site the Chinese governments grip on the internet is slipping. Ever since they allowed use of the internet, the Chinese have been monitoring the information that has been flowing (jokingly referred to as the great fire-wall of china), in an attempt to ensure 'bad' philosophies don't infect their people. However, the internet is having a much more profound affect, out of the control of the government ..."
If you have -any- way access an outside machine that is relatively in your control (ie: shell access, which can be bought for a few dollars a month) then you can get by any protection.
Here's an article I wrote not too long ago about how to do it:
- - - -
Breaking Through Any Firewall or Proxy
There's different reasons for breaking through firewalls/proxies.
1) Get completely unfiltered access to the internet.
2) Get unmonitored, or secure, access to the internet.
3) Access services normally disallowed by the firewall.
The article will demonstrate various ways to get by most implementations of firewalls/proxies. In absolutely no way am I responsible if you do anything you're not supposed to, or even supposed to, be doing. If you get caught and fired, tough shit. If you access illegal information, tough shit. If you open up a hole and somebody breaks into your computer, tough shit. I'm not responsible. (This is for the lawsuit-happy bastards out there.)
Anyways, lets begin:
For all methods, it is expected that you have access to a machine on the other side of the firewall, and that it has access to whatever you need.
Your machine will be the CLIENT, and the machine on the other side of the firewall will be the TUNNEL. The accessed machine will be the SERVER.
Furthermore, this article also assumes you a basic knowledge of your browser's configuration, installing software on your CLIENT and TUNNEL machines, and logging in via SSH.
A Linux/Unix box is preferable for the TUNNEL, but not required by any means. The software is freely available for any system.
1) HTTP Tunneling Through SSH
Often, only some ports will be firewalled (80, 21, etc) for caching, filtering, and monitoring purposes. However, they leave direct access available for other ports (25, 23, etc).
If your browser must use a proxy to access the web, but you don't require a proxy to get mail, this is probably the implementation.
If you have direct access to non-popular ports, you can access almost any service as long as you change the port. Generaly, the main purpose of bypassing this firewall is to have unfiltered and/or unmonitored web access. The method can of course be modified to meet your needs.
Install a proxy server (ie: tinyproxy) on the TUNNEL machine. For security purposes, set the listening port to an odd port (ie: 8999, REMOTE_PROXY_PORT) or set access rights to only localhost. Install an SSH (ie: sshd) server on the TUNNEL. For security purposes, set the listening port to an odd port. Do NOT set access rights to only localhost because you'll access the proxy through ssh.
Install an SSH client on the CLIENT machine. Select a random port (LOCAL_PORT) and then set the browser's proxy to localhost:LOCAL_PORT.
Run SSH with LOCAL_PORT forwarded to REMOTE_HOST:REMOTE_PROXY_PORT.
(CLI ssh: ssh -L LOCAL_PORT:REMOTE_HOST:REMOTE_PROXY_HOST -l USERNAME REMOTE_HOST)
Once connected and logged in, if the proxy and the tunnel are working correctly, you've got completely unfiltered web access.
(NB: Using a SOCKS5-compliant proxy would offer an almost completely unfiltered and unmonitored connection, as long as the application supported SOCKS proxies.)
2) SSH Tunneling Through HTTP
Some implementations allow only HTTP access, while blocking all other ports.
Check out Corkscrew at http://www.agroman.net/corkscrew/
Corkscrew is a tool to allow full SSH access through a strict HTTPS session. Then through the SSH access, you can create another tunnel to allow access to all other programs.
Conclusion)
Hopefully this allows some of the people out there to worry a little less about getting caught doing things they're not supposed to. The reason for using SSH in both cases is because it's encrypted. In the event you are caught, at least you're only caught for breaking teh rules, there's nothing additionally criminalizing.
SSH can also be used for a lot more interesting things. Using Windows, you can instal Cygwin, ssh into a *Nix box and tunnel over X connections, and end up working as if you were actually at the machine.
Anyways, that's my story, and I'm sticking to it.
--unformed
In the West, about 90% of all internet activity goes through 9 portals which are controlled by a tiny cadre of huge media conglomerates, each run nearly as the singular expression of one person's ego.
We will not be forced into oppression, but seduced by it and ultimately the internet will become a weapon of tyranny.
A history teacher I once took some courses from in High School (Military History and US History) subscribed to an interesting theory; The fall of Russian Communism resulted from McDonalds.
The fact that there were McDonalds restaurants in Russia fed the public there the image of how Americans live, and with that as a model, it became increasingly obvious that Communism was failing to fulfill it's mission of Utopia. In 1984, Orwell realized that as long as the government asserted that everything was improving, people would not be too inquisitiveabout the subject. In Russia, this became impossible, and the people lost faith in their government.
In China, it seems as though a similar evolution is occuring; The alter-ego of Soviet Commuism, Chinese Communism, is being exposed to it's antithesis. Russian Communism focused, as I understand, mainly on supression and communitization of materialism, but was then faced with the holy grail of materialism, McDonalds. Chinese Communism, now that they have seen how materialism works, focuses on supression of intellectualism among their masses, and is now faced with intellectualism's holy grail, the internet, which allows the masses to see the intellectual side of Democracy.
Obviously, the Orwellian Prophecy has come partially true in this part of the world.
"Inside an imposing building in Beijing is the Ministry of Information Industry, where a hi-tech police force keeps watch over the internet 24 hours a day. Its job is to keep ordinary Chinese people from accessing unhealthy information. That could be anything from Playboy to the BBC." -BBC News, China Loses Grip on Internet.
"The Misistry of Truth -- Minitrue, in Newspeak -- was startlingly different form any other building in sight. It was an enormous Pyramidal structure of glittering white concrete, soaring up, terrace after terrace, three hundred meters into the air... [it] concerned itself with news, entertainment, education, and the fine arts, [anything from Playboy to the BBC]" -1984, by George Orwell.
The only difference between Oceania and China is an external one, and it is essential. China has no external enemy to pour material into to prevent it's citizen's rising standard of living. Instead, it has Europe, the United States, and many other regions of the world that have accepted democracy and capitalism.
I'm a concientious
Radio-Free Europe. I think the USA should set up very high end wi-fi along the borders and broadcast DHCP into china. Smuggle in cards, and repeaters...it would be fun for the whole family!
America would be loved...err. hated because of porn, er loved because of porn..err..shit what was my point!
Neck_of_the_Woods
#/usr/local/surf/glassy/overhead
The point which is missed in 90% of the posts on this board is that the information most damaging to the communist party comes from inside china, not from outside. External events have a much lesser effect on a country the size of China than internal.
The Soviet Union did not fall because of Reagan, or any policy of the West. It fell because its own people rejected it, first in the satelite states, finally in Moscow. Solidarity, the Polish trade union brought down the USSR in the end. The Berlin wall fell when a bunch of students attacket it en masse and the guards in the watch towers disobeyed orders and refused to shoot.
The issues in China are complex, they are no longer a Stalinist communist regime, they are not democratic, they have adopted a 19th century model of capitalism in which the actual role of the state is to protect the oligarchs and exploiters. The gerantocracy that runs the country is largely in its 80s and their principle driving principle is fear. In particular fear of a return to the days of the cultural revolution of Mao and fear of partition into separate states that are dominated by foreign powers as happened at the turn of the century when the US, Germany, France, Britain and Japan each carved out spheres of influence.
China is rapidly industrializing and output is rising fast. Economically China will be one of the maor powers within ten years. Already the Chineese middle class is larger than the US middle class. As with India, China is a first world power whose strength is obscured by a vast third world hinterland.
Change is comming, but it isn't going to be driven by external forces. In fact external forces are more likely to be counterproductive. The critical mistake made by the Tiannanen Square protesters was building the statue of liberty. Up to that point the communist party was affraid to crush the protests, in particular they were affraid that the soldiers would refuse to fire. However the statue of liberty was a symbol of an alliance with a foreign power and the troops could be sent in to crush that.
Looking for an Information Security student project suggestion?
Try http://dotcrimeManifesto.com/
Mesa say yousa not worry so much bout speakin chinese, worry more bout speakin english
-Jar Jar
Well they let the cat out of the bag and now they can't get it back in.
My favorite metaphor for this comes from a book by Peter S. Beagle:
"You ever try to put birdshit back into the bird?"
Someone you trust is one of us.
The CIA's venture capital company, In-Q-Tel, has funded a project called Triangle Boy:
m ity.software.idg/
http://www.cnn.com/2001/TECH/internet/02/15/anony
This CNN article from Feb. 2001 talks a little about it. But at that time it supposedly hadn't been deployed. Since then I've heard that Chinese Internet users are using Triangle Boy for secure connections to the outside world, bypassing the government firewalls.
If it is ideas that you want to measure then remember that Karl Marx wrote Das Capital in the Reading room of the British Library.
What you appear to be unable to grasp is that whatever was done from the outside had mush less effect than what went on on the inside. The attempt by the idiotic right to claim the credit for destroying the Soviet Union is pure self delusion. The people of Eastern Europe took their own freedom, whatever we did amounted to a small effect on the margins.
That is why there has been little change in the example you cite - Saudi Arabia and Eastern Africa. Those areas have been exposed to Western ideas for far longer than Russia ever was, including the experience of British colonial rule.
The BBC World Service is certainly an effective propaganda tool. I can't say the same for Voice of America which is all propaganda all the time and about as interesting to listen to as Radio Moscow was and for about the same reason.
If you want to effect change then there are much more effective ways to do so than by puffing yourself up with self importance. The US claim to be the torchbearer of human rights is not generally accepted in the rest of the world. The practice of seggragation was only recently abolished in the south, during the cold war the US regularly conived to replace democratically elected regimes with brutal murderers who would do Washington's bidding. It is a great pity that the current administration cheered on the attempted coup in Venezuela rather than condemning it instantly as the rest of the free world did.
Looking for an Information Security student project suggestion?
Try http://dotcrimeManifesto.com/