Sunday, September 22, 2019

How do airlines usually sandbox in flight network traffic?

I was recently offered 'basic' internet access on a flight which disallowed 'social media' and 'streaming' sites. Since I was bored, I was playing around and found they did a fairly effective job as blocking access. I am curious how they were able to do this.

I have multiple browsers. Some are set up with DNS over HTTPS (DoH) and others with DNS over TLS (DoT) pointed at Cloudflare. I also tried using encrypted-SNI. None of this made it through the sandbox. I didn't have any issues connecting to Cloundflare services, so they weren't blocking the nameserver itself.

Just curious if anyone knew how they were able to block access.



No comments:

Post a Comment