What about surveillance with the help of ISPs? What about banning tunneling-techniques for private end-users?
That hasn't worked so well with
I2P &
Tor - and those are just the two most popular darknets. Deep packet inspection isn't effective for detecting properly encrypted tunnels, and is incapable of operating outside of its own network reach. Encrypted traffic can be made to look like HTTPS and a direct connection can be avoided by adding proxies.