13. BusyBox v1.19.4 (2013-09-08 04:33:11 UTC) built-in shell (ash)
Enter 'help' for a list of built-in commands.
!
_______
________
__
|
|.-----.-----.-----.| | | |.----.| |_
|
|| _ | -__|
|| | | ||
_||
_|
|_______||
__|_____|__|__||________||__| |____|
|__| W I R E L E S S
F R E E D O M
----------------------------------------------------BARRIER BREAKER (Bleeding Edge, r37917)
----------------------------------------------------* 1/2 oz Galliano
Pour all ingredients into
* 4 oz cold Coffee
an irish coffee mug filled
* 1 1/2 oz Dark Rum
with crushed ice. Stir.
* 2 tsp. Creme de Cacao
——————————————————————————
root@OpenWrt:~#
16. •
Block Ads
•
Multiple dials to boost your bandwidth
•
IPv6 tunnel
•
Web server
•
Remote wake up your computer
•
Remote access network files
•
Dynamic DNS and remote control from outside
•
VPN Client + Policy route
•
AirCrack
17. •
3G Router
•
Tethering over your phone
•
Connect to HDD
•
•
Share storage
•
•
Download Movie
Remote backup
Connect to USB Audio
•
Play Music
•
AirPlay
•
Connect to webcam
•
…
22. •
Modify hosts - DNS filtering X
•
HTTP Proxy - IP blocking X
•
SSL Proxy - browser doesn’t support X
•
Tor - tor directory and bridge blocked X
•
VPN (PPTP, OPENVPN, L2TP, …) - partially work
•
SSH Port forwarding - sniffer
•
FreeGate, UltraSurf, Psiphon - need frequent upgrade
•
GoAgent - SSL problem
•
ShadowSocks - TCP only
23. •
Very slow! especially access domestic sites
•
Needs switch on/off frequently
•
Auto Route Traffic!
24. •
Auto route traffic
•
Domain/URL based: PAC
•
•
gfwlist
IP based: route table
•
chnroute: all china IP ranges
•
geoip: query geo DB
•
DNS pollution/hijacking!!
25. •
DNS pollution/hijacking
•
block ISP bogus IP (Ads)
•
Modify hosts - Manual work
•
use open abroad DNS server (Google DNS,
OpenDNS) - Still hijacked
•
Encrypt DNS connection to abroad DNS server
(DNScrypt) - not optimized
•
block bogus IP
26. •
My Solution running on OpenWrt!
•
•
iptables geoip module
•
•
Shadowsocks (VPS in US)
Domestic DNS + Abroad DNS + Bogus IP
blocking
Backup solution
•
PPTP VPN
27. •
Corp Network
•
•
VPN -> US/Korea/…
•
SSH -> US servers
•
•
official proxy: rhv-entbc-001:3128, maa-entbc-001, etc
SSH -> US servers -> SSH your own server
eBay Guest
•
•
no way
ChinaUnicom
31. OpenWrt Development
•
Port OpenWrt to new hardware
•
Port app in C to OpenWrt
•
Write app code in Perl/Python/Lua/etc
•
Write app code in C
•
Write Kernel Extensions