
The article discusses challenges with VPN tunneling and multi-WAN aggregation, particularly the TCP-over-TCP meltdown, where throughput drops due to overlapping congestion control mechanisms. Switching to UDP-based outer tunnels resolved performance issues, improving bandwidth utilization across multiple WAN links while maintaining VPN reliability. It advises employing UDP for better aggregation outcomes.
Introduction From one month ago, my ISP implemented a mechanism to throttle any encrypted traffic on TCP or UDP and that upgrade affected my ShadowSocks Proxy which i use to tunnel my VPN and escape censorship. ShadowSocks & VPN speed became very slow and connection became unstable. After some investigation for alternative, i have found Cloak. Cloak is an encrypted proxy utilize HTTPS as Transport Layer. Cloak consist of two software packages… Read More
After using OPNSense firwall for a while to tunnel my traffic throw VPN directly from the network infrastructure level, i’m really satisficed with the experience but while i’m monitoring the firewall traffic, i discovered a traffic leaking happen in some cases. VPN traffic should go to the VPN Interface, but i find a traffic on the WAN Interface which originated from the LAN to VPN and the firewall pass it and that… Read More