Replying to an earlier post

https://github.com/erebe/wstunnel seems like the obvious solution.

Or maybe OpenVPN over normal TLS on port 443.

You could try to run Wireguard on a different port which would be otherwise used by some very common service, maybe there’s some general exemption for port 21, 22, 53, 80, 443…

Tunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary available  - erebe/wstunnelGitHubGitHub - erebe/wstunnel: Tunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary availableTunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary available - erebe/wstunnel
Edited ⁨⁨Aug⁩ ⁨21⁩, ⁨2026⁩, ⁨12:38⁩⁩en