Page MenuHomeFreeBSD

vova_fbsd.ru (Vladimir Grebenschikov)
User

Projects

User does not belong to any projects.

User Details

User Since
Dec 19 2017, 5:09 PM (432 w, 1 d)

Recent Activity

Dec 5 2025

vova_fbsd.ru added a comment to D20468: if_vether, ported from OpenBSD.

phylosophically this interface more like L2 loopback, right?
can be emulated by ng_ether somehow?

Dec 5 2025, 9:41 AM

Dec 2 2025

vova_fbsd.ru added a comment to D47396: syscons(4): add deprecation notice.

vt has serious flow if compare with sc: it is not possible to switch it to any mode except 80x25 in some virtual environments

Dec 2 2025, 2:32 PM

Aug 2 2025

vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

As this review was closed, I've submitted the fixed version as 288599

Aug 2 2025, 9:16 AM

Jul 26 2025

vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.
Jul 26 2025, 9:40 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

(for what it's worth, "amneziavpn-" would seem like a fine name that ties back into the website better anyways)

Amnezia-VPN project provides support for multiple VPN protocols, and only one of them is amneziawg, the port support only that protocol, and does not support others.
In case of "amneziavpn" - such name will misslead users.

You can check, for example how they name relative repos in their github -
about amneziawg:

https://github.com/amnezia-vpn/amneziawg-tools
https://github.com/amnezia-vpn/amneziawg-linux-kernel-module

Can you please answer on my question about motivation to not name it "amneziawg"?

Because you were asked not to, and that's clearly a pretty thin line to be dancing around..

Jul 26 2025, 8:27 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

(for what it's worth, "amneziavpn-" would seem like a fine name that ties back into the website better anyways)

Jul 26 2025, 8:09 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

Drop the 'wg' from the name and any description/advertising materials. That's just another spelling for 'WireGuard'.

Jul 26 2025, 7:53 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

Obviously nothing stops them from using if_wg as the basis and that's
all fine, but the upstream WireGuard project has already expressed their
concern and have been completely ignored. Just re-brand the damn thing
as Amnezia and an Amnezia tunnel, fix the docs to avoid calling it
WireGuard. We'll get it into review and commit it, then then let's
perhaps chat on the list (as already requested) about how we could
integrate other ideas that can improve WireGuard as a whole.

Jul 26 2025, 7:21 PM
osa awarded D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks a Like token.
Jul 26 2025, 5:43 PM
vova_fbsd.ru added reviewers for D51563: v1.0.7 of driver, adopt current and stable/14 recent changes: eugen_grosbein.net, osa.
Jul 26 2025, 4:20 PM
vova_fbsd.ru requested review of D51563: v1.0.7 of driver, adopt current and stable/14 recent changes.
Jul 26 2025, 4:20 PM

Jul 24 2025

vova_fbsd.ru updated the diff for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

use awg0/awg1 in rc.conf example

Jul 24 2025, 8:23 PM
vova_fbsd.ru updated the diff for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

v1.0.6 of upstream driver, only cosmetic changes

Jul 24 2025, 7:28 PM
vova_fbsd.ru added reviewers for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks: markj, jhb, osa.
Jul 24 2025, 5:09 PM
vova_fbsd.ru updated the diff for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.
  • remove not used any more rc.d file
Jul 24 2025, 4:01 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

Do you think it’s a bad idea to extend the existing WireGuard driver with Netgraph hooks or custom UDP stream processing? (Similar to how mpd handles PPP streams in flexible ways.) — just a side question. Would that be a question better suited for the mailing list?

That sounds pretty intriguing to me. I'd be interested to learn how this would work on Linux too, and maybe even user space implementations, and what a generic library api for accessing this would be like. What sorts of events would bubble up? And would this be better suited as an in-kernel eBPF hook? I am definitely interested in kernel hooks for efficiently plugging in different obfuscators or encapsulators. If you've got a big idea about this, indeed the mailing list would probably be a good venue, especially if you CC in Kyle & folks from here whose feedback are really valuable.

Jul 24 2025, 3:42 PM

Jul 23 2025

vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

Sad to hear that ...

Jul 23 2025, 9:25 AM

Jul 22 2025

vova_fbsd.ru retitled D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks from net/wireguard-amnezia-kmod: WireGuard implementation with Amnezia support
Jul 22 2025, 11:06 PM
vova_fbsd.ru updated the diff for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

net/amneziawg-kmod and net/amneziawg-tools

Jul 22 2025, 10:59 PM
vova_fbsd.ru added a comment to D51239: Support for DPI-bypassing extension on top of WireGuard protocol.

Can you elaborate on this a little bit? You don't seem to have really changed the ioctl interface in a way that isn't compatible with if_wg (we would just ignore the new nvlist elements you've added), and requests get routed to the correct ioctl handler based on the interface named in the request passed to ioctl(2).

Jul 22 2025, 7:47 PM

Jul 14 2025

vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

Any attempts of upstreaming?

Jul 14 2025, 8:35 AM

Jul 13 2025

vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.

I'm uncomfortable with you calling this "wireguard" in any way shape or form.

Jul 13 2025, 8:30 PM
vova_fbsd.ru added a comment to D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.
Jul 13 2025, 7:38 PM

Jul 12 2025

vova_fbsd.ru updated the diff for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.
  • bump wireguard-amnezia-kmod-v1.0.4
Jul 12 2025, 11:39 PM

Jul 11 2025

vova_fbsd.ru added a comment to D51239: Support for DPI-bypassing extension on top of WireGuard protocol.

Can you elaborate on this a little bit? You don't seem to have really changed the ioctl interface in a way that isn't compatible with if_wg (we would just ignore the new nvlist elements you've added) and requests get routed to the correct ioctl handler based on the interface named in the request passed to ioctl(2).

Jul 11 2025, 8:57 PM
vova_fbsd.ru added a comment to D51239: Support for DPI-bypassing extension on top of WireGuard protocol.

well, then kmod as port - https://reviews.freebsd.org/D51265

Jul 11 2025, 5:51 PM
vova_fbsd.ru added reviewers for D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks: kevans, jason_zx2c4.com.
Jul 11 2025, 5:50 PM
vova_fbsd.ru requested review of D51265: net/amneziawg-kmod and net/amneziawg-tools: ports for fast, modern and secure AmneziaWG VPN with anti-detection tweaks.
Jul 11 2025, 5:48 PM
vova_fbsd.ru added a comment to D51239: Support for DPI-bypassing extension on top of WireGuard protocol.

probably become rapidly obsolete as soon as it’s deployed and profiled

Jul 11 2025, 5:12 PM

Jul 10 2025

vova_fbsd.ru updated the diff for D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
  • better compatibility with original if_wg code (accomodate recent changes)
Jul 10 2025, 10:45 PM
vova_fbsd.ru updated the test plan for D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:37 PM
vova_fbsd.ru updated the test plan for D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:37 PM
vova_fbsd.ru updated the test plan for D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:37 PM
vova_fbsd.ru updated the summary of D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:36 PM
vova_fbsd.ru updated the test plan for D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:35 PM
vova_fbsd.ru requested review of D51239: Support for DPI-bypassing extension on top of WireGuard protocol.
Jul 10 2025, 10:33 PM

Apr 27 2025

vova_fbsd.ru added a comment to D49993: bridge(4): allow member interface vlan to be configured.

Thank you for explanation ... now I better understand the "boundaries" of the problem -

Apr 27 2025, 12:11 PM

Apr 25 2025

vova_fbsd.ru added a comment to D49993: bridge(4): allow member interface vlan to be configured.

thanks a lot for explaining,

Apr 25 2025, 7:54 AM

Apr 24 2025

vova_fbsd.ru added a comment to D49993: bridge(4): allow member interface vlan to be configured.

if an tagged incoming frame does not patch the port's pvid, it will be dropped.

should be read as "if an tagged incoming frame does not match the port's pvid, it will be dropped.", right?

Apr 24 2025, 1:43 PM

Dec 6 2024

vova_fbsd.ru updated the diff for D47926: sysutils/podman: fix build dependancy for ggrep.
Dec 6 2024, 10:51 PM
vova_fbsd.ru added a reviewer for D47926: sysutils/podman: fix build dependancy for ggrep: osa.
Dec 6 2024, 9:40 PM

Dec 4 2024

vova_fbsd.ru updated the diff for D47926: sysutils/podman: fix build dependancy for ggrep.
Dec 4 2024, 9:52 PM
vova_fbsd.ru added a reviewer for D47926: sysutils/podman: fix build dependancy for ggrep: dfr.
Dec 4 2024, 9:50 PM
vova_fbsd.ru requested review of D47926: sysutils/podman: fix build dependancy for ggrep.
Dec 4 2024, 9:47 PM

Dec 19 2017

vova_fbsd.ru added a comment to D13502: security/tor: Unbreaking on systems without timingsafe_memcmp(3).

Come on

Dec 19 2017, 5:14 PM