Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread David Goulet
On 22 Mar (17:13:40), Mike Perry wrote: > David Goulet: > > On 22 Mar (13:46:36), George Kadianakis wrote: > > > Mike Perry writes: > > > > > > > Arguments in favor of switching to two entry guards: > > > > > > > > 1. One guard allows course-grained netflow confirmation attacks > > > > > > > > Th

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread grarpamp
On Thu, Mar 22, 2018 at 1:13 PM, Mike Perry wrote: > I strongly disagree. Dumping more traffic onto an already existing, > otherwise in-use connection is not the same as the ability to force a > new connection that is only used for a single request at a very specific > time. These are completely d

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread Mike Perry
George Kadianakis: > David Goulet writes: > > On 22 Mar (13:46:36), George Kadianakis wrote: > >> Mike Perry writes: > >> > Roger suggested that I enumerate the pros and cons of this increase on > >> > this mailing list, so we can discuss and consider this switch. So here > >> > is my attempt at

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread Mike Perry
David Goulet: > On 22 Mar (13:46:36), George Kadianakis wrote: > > Mike Perry writes: > > > > > Arguments in favor of switching to two entry guards: > > > > > > 1. One guard allows course-grained netflow confirmation attacks > > > > > > The counterargument based on #14917 above also has an additi

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread George Kadianakis
David Goulet writes: > [ text/plain ] > On 22 Mar (13:46:36), George Kadianakis wrote: >> Mike Perry writes: >> >> > [ text/plain ] >> > Back in 2014, Tor moved from three guard nodes to one guard node: >> > https://blog.torproject.org/improving-tors-anonymity-changing-guard-parameters >> > htt

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread David Goulet
On 22 Mar (13:46:36), George Kadianakis wrote: > Mike Perry writes: > > > [ text/plain ] > > Back in 2014, Tor moved from three guard nodes to one guard node: > > https://blog.torproject.org/improving-tors-anonymity-changing-guard-parameters > > https://trac.torproject.org/projects/tor/ticket/122

Re: [tor-dev] Setting NumEntryGuards=2

2018-03-22 Thread George Kadianakis
Mike Perry writes: > [ text/plain ] > Back in 2014, Tor moved from three guard nodes to one guard node: > https://blog.torproject.org/improving-tors-anonymity-changing-guard-parameters > https://trac.torproject.org/projects/tor/ticket/12206 > > We made this change primarily to limit points of obs