

I’d argue it’s not a question of intelligence but of network equipment. In many countries ISPs are private companies and there which complicates measures that require specialised equipment. Blocking DNS is basically free, routers can void IPs and IP ranges, broad checks for sequences in package payload are more expensive (scanning for Wireguard) and approaches to distinguish OpenVPN from other SSL even more.


Arming the people is the right response, I hope it is enough.