Re: [tor-dev] Request for comments: patch to mark exit traffic for routing and statistical analysis

2016-09-28 Thread teor
> On 26 Sep 2016, at 05:43, René Mayrhofer wrote: > > That is exactly what we have patched our local Tor node to do, although with a different (slightly hacky, so the patch will be an RFC type) approach by marking real exit traffic with a ToS flag to leave the decision of wh

Re: [tor-dev] Constraining Ephemeral Service Creation in Tor

2016-09-28 Thread teor
> On 28 Sep 2016, at 07:59, ban...@openmailbox.org wrote: > > Hello, We are working on supporting ephemeral onion services in Whonix and > one of the concerns brought up is how an attacker can potentially exhaust > resources like RAM. CPU, entropy... on the Gateway (or system in the case of >

Re: [tor-dev] Reducing initial onion descriptor upload delay (down to 0s?)

2016-09-28 Thread teor
> On 27 Sep 2016, at 09:37, Ivan Markin wrote: > > Hi tor-dev@, > > Ivan Markin: >> IMO an onion service should publish its first descriptor instantly. If >> something happens afterwards and one has to fix the descriptor - deal >> with it with backoff/delay to prevent DoS on HSDirs. >> I think

Re: [tor-dev] prop224: Ditching key blinding for shorter onion addresses

2016-09-28 Thread Jesse V
On 09/27/2016 11:15 AM, Jeff Burdges wrote: > There were a couple reasons I stopped the work on integrating > GNS with Tor, which Christian asked me to do : First, I did not like > that users could confirm that a particular subdomain exists if they know > the base domain's public key. Second, I d

Re: [tor-dev] Paper on how DNS affects Tor's anonymity

2016-09-28 Thread Jesse V
On 09/28/2016 11:35 AM, Philipp Winter wrote: > My colleagues and I published a (not yet peer-reviewed) research paper > on how DNS affects Tor's anonymity. The key parts of our work are: > > - We measure the DNS setup of exit relays over time, showing that at > times Google got to see almost 4

Re: [tor-dev] Onioncat and Prop224

2016-09-28 Thread grarpamp
On Wed, Sep 28, 2016 at 11:30 AM, dawuud wrote: > Are you aware of Tahoe-LAFS? Don't know if they are, or if they are here, all we have is their short post. If they just need an insert and retrieve filestore for small user bases, there are lots of choices. If they need the more global and random

Re: [tor-dev] Onioncat and Prop224

2016-09-28 Thread dawuud
OK I'm replying inline; > https://www.reddit.com/r/TOR/comments/54rpil/dht_syncthing_bitsync_over_tor/ > > Hi we would like to integrate DHT Bittorrent Syncing over Tor for our > open source encrypted obfuscated media rich notepad app. Why Bittorrent? It's fun to think about using various comp

[tor-dev] Paper on how DNS affects Tor's anonymity

2016-09-28 Thread Philipp Winter
My colleagues and I published a (not yet peer-reviewed) research paper on how DNS affects Tor's anonymity. The key parts of our work are: - We measure the DNS setup of exit relays over time, showing that at times Google got to see almost 40% of DNS requests coming out of Tor. - We show how web

[tor-dev] Constraining Ephemeral Service Creation in Tor

2016-09-28 Thread bancfc
Hello, We are working on supporting ephemeral onion services in Whonix and one of the concerns brought up is how an attacker can potentially exhaust resources like RAM. CPU, entropy... on the Gateway (or system in the case of TAILS) by requesting an arbitrary number of services and ports to be

Re: [tor-dev] Onioncat and Prop224

2016-09-28 Thread grarpamp
https://www.reddit.com/r/TOR/comments/54rpil/dht_syncthing_bitsync_over_tor/ Hi we would like to integrate DHT Bittorrent Syncing over Tor for our open source encrypted obfuscated media rich notepad app. This app will have for main objective to provide a secure information gathering and sharing t