Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

"TLS + Vision + Fallback" vs "REALITY with steal oneself" #2578

Closed
AmirHosseinCV opened this issue Sep 19, 2023 · 7 comments
Closed

"TLS + Vision + Fallback" vs "REALITY with steal oneself" #2578

AmirHosseinCV opened this issue Sep 19, 2023 · 7 comments

Comments

@AmirHosseinCV
Copy link

There is a new tutorial mentioned in the README, titled "Xray REALITY with 'steal oneself' (English)".
I would like to know that what is the difference between this approach and using TLS + vision + fallback directly.

@chika0801
Copy link
Contributor

Using REALITY to Steal Yourself

1 Requires the client to use uTLS to emulate a fingerprint. (Requirements from REALITY)
2 Stealing yourself is using your own ssl certificate that you applied for and put on top of your vps locally. It's easier to control yourself than just using REALITY DEST to fill in someone else's URL. (e.g. certificate expired, someone else's url malfunctioned)

@AmirHosseinCV
Copy link
Author

AmirHosseinCV commented Sep 19, 2023

Yes, I'm using this approach now, but using "TLS + Vision + Fallback" seems to be faster. I would like to know why I shouldn't use "TLS + Vision + Fallback" instead of reality with my own domain. I mean, is reality with my own domain more censorship-resistant than "TLS + Vision + Fallback"?

@chika0801
Copy link
Contributor

As for the 2 combinations there is no difference in speed when I use them myself.

If you are not in mainland China and not looking for something very new. Your vps proxy node you use for 1 person yourself not for many friends (your region is not blocked badly). Based on this logic, you don't need to have to steal yourself with REALITY (and you said you feel slower with it)

@AmirHosseinCV
Copy link
Author

Thanks for your response. I live in Iran, which has the worst censorship ever (they even block legal websites with high traffic). So, based on your description, reality with 'steal yourself' is the best choice.

@chika0801
Copy link
Contributor

I've heard that in your country, you use different ISPs to access the internet, and that the blocking is different for each one. I can't advise you which protocol combination is the best (will last longer).

Let's say the protocol combination you are using now, after 1 month, the ip address (or port) of the vps is blocked by your carrier (or other carriers included).

The port can still be changed. ip is blocked you can only buy a new vps again.(same in mainland china, ip is blocked either buy a new vps or use xxx ws/grcp tls + cdn(cloudflare))

Our side pure tcp no tls have ss/vmess + tcp

with tls
vless/trojan tcp tls

cdn-capable
vmess ws vmess ws/grpc tls

or xray this way and vless vision tls/reality

There's also a category for udp.

hysteria 1 / 2 tuic juicity.

@AmirHosseinCV
Copy link
Author

I will certainly give them a try. Your assistance is greatly appreciated, and I wish you the best of luck! ❤️

@chika0801
Copy link
Contributor

net4people/bbs#277

You can refer to what is discussed in this one link

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants