Use SSH as a SUPER SNEAKY VPN!

Поделиться
HTML-код
  • Опубликовано: 21 ноя 2024

Комментарии • 40

  • @greenmanreddog
    @greenmanreddog 2 года назад +5

    sshuttle is just what I need to get occasional remote access to all machines on my home network. I already have remote ssh access set up and don't want the hassle of setting up OpenVPN or Wireguard. Thanks for your time and effort with these great videos Shawn.

    • @shawnp0wers
      @shawnp0wers  2 года назад +2

      Thank you for the kind words! And yeah, it's not something I'd rely on for a regularly-used connection, but boy is it nice in a pinch.

  • @hosseinshamloo
    @hosseinshamloo 2 года назад +2

    as a Cisco instructor, I enjoyed how you present your knowledge, easy to understand, Regards from IRAN :)

    • @shawnp0wers
      @shawnp0wers  2 года назад +1

      Thank you! I got to teach a Cisco Academy in a high school years ago, it was pretty great. I miss working with kids. (maybe that's why I often act like one, lol!)

    • @k1tajfar714
      @k1tajfar714 8 месяцев назад +1

      Excuse me i have a question. He says there is no encryption in this "socks proxy" or at least i understood that from his sayings. But isn't SSH a secure encrypted tunnel?? So when we route the traffic over that tunnel, it should be all encrypted shouldn't it?

  • @vladislavkaras491
    @vladislavkaras491 5 месяцев назад

    Wow! The dynamic port forwarding is already cool, but this sshuttle seems even better!
    I wonder though, this program is needed to be installed locally only? Nothing needs to be setup remotely on ssh servers?
    Thanks for the video!

  • @diskoboi3342
    @diskoboi3342 Год назад +1

    Thanks, learnt some cool new tricks!

  • @isaacoboenimil7954
    @isaacoboenimil7954 7 месяцев назад

    Traffics through SSH tunnel is always encrypted.
    This is because the SSH is a secured protocol hence it encrypts all Traffics through it

  • @youruleyourlife
    @youruleyourlife 2 года назад +1

    Can you make more videos related to mail servers (exim, powermta , postfix , postal etc) how to setup, how to config and optimize ?

    • @shawnp0wers
      @shawnp0wers  2 года назад

      So, the reason I've been scarce this month is that I'm finalizing the equipment and connectivity changes so I can create a little datacenter at my farm with commercial internet service and redundant power, etc, etc. A big motivation for that is to set up email servers to host my domains. :)

  • @jehster
    @jehster 2 года назад

    I’ve never heard of sshuttle before, that’s pretty cool. I’ve been using OpenVPN for years, but I’ll have to check it out.

    • @shawnp0wers
      @shawnp0wers  2 года назад +2

      It's one of those things that I don't use often, but when I need it, it's SO useful. :)

  • @Hidden_Lights
    @Hidden_Lights 2 года назад

    Hello! Thank you for your work! I wonder what would be the steps for routing the traffic from a home webserver to a remote VPS, just to hide my home IP address. I am running a few websites, radio station and some little Telegram bots, but I am not happy that everyone is connecting to my home IP. Would a DigitalOcean Ubuntu/Debian cheap droplet do the job? There is not much traffic, so I am not worried about the performance.

    • @shawnp0wers
      @shawnp0wers  2 года назад +1

      Oh, a cheap droplet would certainly do the trick. It doesn't take much horsepower to do something like you describe. And yeah, the hit would be on performance, but if that's not crucial -- I'd say give it a try! :D

  • @peterhoneyman
    @peterhoneyman 2 года назад

    Thanks, man, for making it so easy.

    • @shawnp0wers
      @shawnp0wers  2 года назад

      Thank YOU for watching, let letting me know it was useful! :)

  • @MrMehi-hw3mq
    @MrMehi-hw3mq 2 года назад

    welcome back!

  • @mehdikhosravi9675
    @mehdikhosravi9675 Год назад

    can i do the exact same thing on windows? i really need a poor man one on windows

  • @MrMehi-hw3mq
    @MrMehi-hw3mq 2 года назад +1

    Shawn, please make a video about tunneling (different types of tunneling if possible) and proxy, please. I just cannot understand them :D

    • @shawnp0wers
      @shawnp0wers  2 года назад +3

      Yes!!! That’s my next SSH video. Forward and reverse tunnels. They’re SUPER useful. (And can be a sneaky way to get past a firewall, mwahahahaaaa)

    • @MrMehi-hw3mq
      @MrMehi-hw3mq 2 года назад

      @@shawnp0wers Awesome! Cannot wait! Hope you will go deeper as I find it really difficult to grasp.

    • @shawnp0wers
      @shawnp0wers  2 года назад +3

      @@MrMehi-hw3mq I’ll do my best to explain, likely with lots of poor drawings. :)

  • @abdirahmann
    @abdirahmann 2 года назад +1

    beautiful 🙂

  • @sm7udb
    @sm7udb 2 года назад

    Brilliant 🤩

  • @youruleyourlife
    @youruleyourlife 2 года назад +2

    MAKE MORE VIDEOS RELATED TO DOCKER + mail server .. examples: 1) setup mail server postfix + dovecot + postfix admin , 2) postal smtp only with web gui, 3) haproxy , 4) CrowdSec, 5) fail2ban .. thanks

    • @shawnp0wers
      @shawnp0wers  2 года назад

      I'll do my best to cover as many of those types of things as I can! Thanks for the ideas!

  • @wywlf6912
    @wywlf6912 2 года назад

    good video
    learned a lot

  • @majidmahzarnia9672
    @majidmahzarnia9672 2 года назад

    Man you are awesome Thanks

  • @Mohammadreza-rp8oh
    @Mohammadreza-rp8oh 9 месяцев назад

    Excellent🎉 🇮🇷🇺🇸

  • @jirensan828
    @jirensan828 2 года назад

    Why don't they automatically exclude the SSH endpoint? It sounds redundant for you to have to exclude it yourself

    • @shawnp0wers
      @shawnp0wers  2 года назад

      It’s gotten REALLY finicky since the last time I used it. Kinda sad, actually.

  • @thejonte
    @thejonte 2 года назад

    Protip: Don't expose your public IP on RUclips.

    • @shawnp0wers
      @shawnp0wers  2 года назад +2

      Yeah, that is a good policy. My Austrian server is static and publicly visible to anyone who visits my website, and my home IP is very dynamic. The home IP is obviously the more disconcerting one to expose, but the local infrastructure is changing drastically soon.
      tl;dr - you are 100% correct, but I opted to be lazy in the short term, as it will be moot soon. :)

  • @mahdi-pr2hl
    @mahdi-pr2hl Год назад

    Hi, Thanks for the perfect video
    I have a v2ray VPN server and use its client app on my family's and my phone to connect to it. but recently my connection directly to my server has abrupted because of geo-restriction. I used a VPS from not restricted location as an intermediate to tunnel all traffic through it to my VPN server using iptables like the below:
    sysctl net.ipv4.ip_forward=1
    iptables -t nat -A PREROUTING -p tcp --dport 22 -j DNAT --to-destination (intermediate-server ip)
    iptables -t nat -A PREROUTING -j DNAT --to-destination (vpn-server ip)
    iptables -t nat -A POSTROUTING -j MASQUERADE
    after a while, the data center banned using this method. could I use sshuttle to cross all traffic from multiple ports through that intermediate server?
    (the clients connect to server using different ports.)
    for example use this command on intermediate server:
    sshuttle -r (intermediate-server ip) 0/0
    or any other recommendations instead?
    thanks, in advance.