172
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 26 Nov 2025
172 points (99.4% liked)
Technology
84354 readers
249 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 2 years ago
MODERATORS
Ok, so basically when your computer uses a VPN it just connects to a VPN server over the Internet using an encrypted TCP/IP or UDP/IP connection. On your computer side all your connections to the Internet just get shoved into that encrypted tunel instead of going directly into the whole wide world from your own network connection - so nobody but that server sees those connections - whilst on the VPN server side they're recieved from that encrypted tunel and then exit to the whole wide world from that VPN server as if they're connections initiated by that server not by your own machine, so to the whole world they look like connections coming from the VPN server machine.
Nations with nation-wide firewalls can try and block VPN by blocking the actual encrypted network connections to VPN servers (there are ways to recognize those, but there also ways to disguise them), but for websites to block them (which is what this legislation demands) the websites have to block the actual VPN servers since the websites can only see connections to them which seem to originate in those servers, not traffic elsewhere on the Internet such as the encrypted connections from VPN customers to VPN servers.
Now, there are lists of the IP addresses of the exist points of VPN providers, which are the IP addresses were the traffic of somebody using that VPN enters the Internet, so to try to comply with this legislation those sites would start by blocking all traffic from any of those IP addresses - remember those websites don't know were the traffic coming from a VPN server to that website really comes from, so they can't tell traffic from people in Wisconsin from traffic from people elsewhere hence have to block everything to catch everybody from Winsonsin.
This would affect everybody anywhere in the World using those exit points of those VPN providers since those sites can't really tell where exactly in the World is somebody whose traffic is coming from those VPN exit points.
Then there's the problem that the legislation applies to all VPNs, not just commercial VPN providers, meaning that the websites would also theoretically have to block VPN servers from business VPNs (and given how the networks of many large companies work, that might mean blocking the entire company) as well as thing like schools using VPNs and, even more entertaining, VPNs set up by individuals by, for example, renting a Virtual Private Server and installing a Linux there running their own VPN server or even installing the VPN server software on something like Amazon AWS or Microsoft Azure, which mean they might have to block every single IP address of any provider of VPS servers anywhere in the World (as any Wisconsian could, theoretically, over the Internet rent a chea VPS in, say, Malasia, and install a Linux with a VPS server there) as well as of all AWS and Azure servers since again any Wisconsian could theoretically run their own personal VPS server there.
So this legislation is totally insane in several ways.