Re: [tor-dev] Tor Friendliness Scanner

2019-03-18 Thread Kevin Gallagher
lated to the Tor Browser, since the network level issues are already very well studied. For this project, only the Tor Browser is being considered. I suppose, then, that I should call it the "Tor Browser Friendliness Scanner," but I didn't give that much thought to the name. Sor

Re: [tor-dev] Tor Friendliness Scanner

2019-03-16 Thread Kevin Gallagher
ping a method for determining if content is dynamically generated (and therefore different every time), or broken. I hope this addressed all concerns, and if not, or if there is more feedback, please let me know! Thanks, Kevin -- Kevin Gallagher Ph.D. Candidate Center For Cybersecurity NYU Tandon Sc

[tor-dev] Tor Friendliness Scanner

2019-03-04 Thread Kevin Gallagher
Hello tor-dev! My name is Kevin and I'm a PhD student at NYU. Recently I've been working on creating a "Tor Friendliness Scanner" (TFS), or a scanner that will measure what features of a given website are broken (non-functional) when accessed on the Tor Browser (TB), al

Re: [tor-dev] log: ORPort/DirPort address does not match descriptor address

2017-01-23 Thread Kevin Beranek
> Is the Address option set on this relay? Address is not set because it is generated from this template, which does not set Address: https://github.com/nusenu/ansible-relayor/blob/dev/templates/torrc. > Maybe we need to change this part of the warning: >> If you have a static public IPv4 address

Re: [tor-dev] log: ORPort/DirPort address does not match descriptor address

2017-01-23 Thread Kevin Beranek
I can answer your questions because I'm the one that filed the issue previously referenced by nusenu. > What are the exact torrc lines? One relay where I see these log messages has a public address of 51.15.48.254 while the relevant torrc lines are as follows: ORPort 10.8.169.135:443 ORPort [200

Re: [tor-dev] OnionView : A GUI to view circuits & streams

2016-09-15 Thread Kevin Steen
I hadn't found that - thanks! -Kevin On 15/09/16 20:26, spriver wrote: > Hi, > you may have a look at (maybe you already did) at OnionCircuits[0], > which does sort of the same job. > > Cheers! > spriver > > [0] https://git-tails.immerda.ch/onioncircuits/ > >

[tor-dev] OnionView : A GUI to view circuits & streams

2016-09-15 Thread Kevin Steen
, so I thought I'd put it out there in case someone else finds it useful. OnionView uses the excellent Stem library, so make sure you have that installed. It works with Python 2 and 3. All feedback and advice welcome! -Kevin ___ tor-dev mailing lis

Re: [tor-dev] fteproxy depends on obfsproxy...

2015-09-09 Thread Kevin P Dyer
I think we should (1) make pyptlib easier to use but (2) wait until the new PT spec. is settled upon. Let's pick this back up when the spec. is complete. -Kevin On Tue, Sep 8, 2015 at 5:56 PM, isis wrote: > George Kadianakis transcribed 1.4K bytes: > > Kevin P Dyer writes: &g

Re: [tor-dev] fteproxy depends on obfsproxy...

2015-09-07 Thread Kevin P Dyer
The background: I've been trying to get the fteproxy package into debian. In the code review process, the dependency on obfsproxy was flagged as a not-so-great thing. I agree, and was hoping there's an easy solution... -Kevin On Mon, Sep 7, 2015 at 5:03 PM, Kevin P Dyer wrote:

Re: [tor-dev] fteproxy depends on obfsproxy...

2015-09-07 Thread Kevin P Dyer
Response inline. On Mon, Sep 7, 2015 at 3:29 PM, Yawning Angel wrote: > On Mon, 7 Sep 2015 14:37:07 -0700 > Kevin P Dyer wrote: > > > ...and it shouldn't. > > > > Fortunately, the dependency is isolated to a single file. See [1]. > > > > My un

[tor-dev] fteproxy depends on obfsproxy...

2015-09-07 Thread Kevin P Dyer
...and it shouldn't. Fortunately, the dependency is isolated to a single file. See [1]. My understanding is that pyptlib [2] is no longer maintained. wiley/asn/etc. - What's the proper way to remove this dependency, but make it easy for fteproxy to be a PT? -Kevin [1] https://

Re: [tor-dev] "Seeing through Network-Protocol Obfuscation"

2015-08-22 Thread Kevin P Dyer
On Sat, Aug 22, 2015 at 12:43 AM, Yawning Angel wrote: > On Fri, 21 Aug 2015 17:51:20 -0700 > Kevin P Dyer wrote: > > > On Wed, Aug 19, 2015 at 11:58 AM, Yawning Angel > > wrote: > > > > > [snip] > > > > > > The FTE semantic attack they pr

Re: [tor-dev] "Seeing through Network-Protocol Obfuscation"

2015-08-21 Thread Kevin P Dyer
id something silly. (Even though I tested it against bro, wireshark, etc.) How is it pathologically malformed? > [snip] > -Kevin ___ tor-dev mailing list tor-dev@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-dev

Re: [tor-dev] "Seeing through Network-Protocol Obfuscation"

2015-08-21 Thread Kevin P Dyer
Finally, we’ll be working on a full version of this paper with additional results. If anyone is interested in reviewing and providing feedback, we’d love to hear it. (Philipp - do you mind if I reach out to you directly?) -Kevin [1] https://github.com/liangw89/obfs-detection

Re: [tor-dev] Tor Project proposal for GSoC 2015

2015-03-08 Thread Kevin P Dyer
Hi Juro, Thanks for your interest in working on fteproxy this summer! Unfortunately, as Fred highlighted [1], Tor won't be a host organization this year. I'll send you an email directly. We'll figure something out. -Kevin [1] https://lists.torproject.org/pipermail/tor-dev/20

Re: [tor-dev] Bridge users by transport is broken

2015-01-12 Thread Kevin P Dyer
Hi Karsten, Still looks like the graphs aren't automatically updating. Just a friendly reminder to have a look at them, when you have a moment to spare. (These graphs have been helpful to identify FTE-related issues!) -Kevin On Wed, Dec 31, 2014 at 8:01 AM, Karsten Loesing wrote: > --

[tor-dev] Bridge users by transport is broken

2014-12-29 Thread Kevin P Dyer
The "Bridge users by transport" [1] graph on metrics.torproject.org abruptly stops at Dec. 12 for all transports. Has anyone had an opportunity to troubleshoot this issue? -Kevin [1] https://metrics.torproject.org/userstats-bridge-transport.html?graph=userstats-bridge-transport&st

Re: [tor-dev] Gitian Build Issue - Tor Browser

2014-09-17 Thread Kevin P Dyer
Hi SiNA, Can you provide the last few lines of output from var/build.log? -Kevin On Wed, Sep 17, 2014 at 8:03 PM, SiNA Rabbani wrote: > Dear Team, > > I need some help getting gitian-build to work for the Tor Browser. Can > anyone help with this error please? > > ./m

Re: [tor-dev] Temporary decrease in FTE users in late August?

2014-09-17 Thread Kevin P Dyer
hould have been the case that failover worked properly. So, my guess is that (1) some of the FTE bridges listed in the Tor Browser are not properly reporting stats or (2) failover isn't working properly. It's on my TODO list to investigate this further. -Kevin On Tue, Sep 16, 2014 at 2:

Re: [tor-dev] (meek|flashproxy)+(obfs3|fte|scramblesuit|...)

2014-07-26 Thread Kevin P Dyer
On Sat, Jul 26, 2014 at 5:30 PM, David Fifield wrote: > On Sat, Jul 26, 2014 at 03:08:38PM +0100, Kevin P Dyer wrote: > > Are there any roadblocks that prevent us from doing the following? > > > > 1. Remove the hard-coded bridge_prefs.js in the TBB. > > 2. Set me

[tor-dev] (meek|flashproxy)+(obfs3|fte|scramblesuit|...)

2014-07-26 Thread Kevin P Dyer
acquired bridge_prefs.js to connect to Tor as normal. Ostensibly, this doesn't do a better job of hiding bridge addresses. However, it allows us to modify bridge addresses without releasing a new TBB. -Kevin ___ tor-dev mailing list to

Re: [tor-dev] What little-t-tor bridge features/issues we should address?

2014-07-14 Thread Kevin P Dyer
I would like to be able to bind to privileged ports when running a PT-enabled bridge in managed mode --- will any changes to little-t-tor be required for this feature? -Kevin On Fri, Jul 11, 2014 at 9:51 AM, George Kadianakis wrote: > Hello Roger and Nick, > > as far as I know, bridg

Re: [tor-dev] wfpadtools: comments about primitives

2014-05-30 Thread Kevin P Dyer
that explains where your work will live in the network stack? (Doesn't need to be fancy, even a pencil+paper diagram scanned.) Specifically, is it your goal to build a link-padding PT that's composable with other PTs? -Kevin On Fri, May 30, 2014 at 9:05 AM, Marc Juarez < marc.j

[tor-dev] fteproxy 0.2.14 released (resolves ticket #11629)

2014-05-10 Thread Kevin P Dyer
there is a correspond tor-browser update. Hopefully, this should resolve the issue of fteproxy breaking the nightly TBB build. Thanks! -Kevin [1] https://github.com/kpdyer/fteproxy/releases/tag/0.2.14 [2] https://github.com/kpdyer/tor-browser-bundle [3] https://trac.torproject.org/projects/t

Re: [tor-dev] Version bump of obfsproxy to 0.2.8 in TB breaks FTE

2014-04-28 Thread Kevin P Dyer
On Mon, Apr 28, 2014 at 11:06 AM, George Kadianakis wrote: > Kevin P Dyer writes: > > > Hi Mike, > > > > It looks like [1] broke FTE [2]. > > > > Can you hold off on pushing any releases public, until we resolve #11629? > > > > George - Can we re

[tor-dev] Version bump of obfsproxy to 0.2.8 in TB breaks FTE

2014-04-28 Thread Kevin P Dyer
Hi Mike, It looks like [1] broke FTE [2]. Can you hold off on pushing any releases public, until we resolve #11629? George - Can we revert obfsproxy back to 0.2.4, to give me time to sort this out? -Kevin [1] https://gitweb.torproject.org/builders/tor-browser-bundle.git/commit

Re: [tor-dev] GoSC - Website Fingerprinting project

2014-03-18 Thread Kevin P Dyer
[3] from [4], which wasn't reported on in [1], I believe. -Kevin [1] https://kpdyer.com/publications/oakland2012-peekaboo.pdf [2] https://github.com/kpdyer/website-fingerprinting [3] https://github.com/kpdyer/website-fingerprinting/blob/master/classifiers/ESORICSClassifier.py [4] http://dl.acm.or

Re: [tor-dev] Release Candidate: TBB 3.6 + fteproxy 0.2.6

2014-02-13 Thread Kevin P Dyer
ed from me to merge these changes upstream? -Kevin [1] https://trac.torproject.org/projects/tor/ticket/10362 [2] https://trac.torproject.org/projects/tor/ticket/10362#comment:21 [3] https://github.com/kpdyer/tor-browser-bundle/tree/fte On Wed, Feb 5, 2014 at 1:51 PM, David Fifield wrote: > O

[tor-dev] Release Candidate: TBB 3.6 + fteproxy 0.2.6

2014-02-04 Thread Kevin P Dyer
Hi all, Please see [2] for a patch that integrates fteproxy into dcf's 3.6-beta branch [3] of the TBB. This integration targets version v0.2.6 of fteproxy [1]. asn/mikeperry - What do you need from me to merge this patch to master? -Kevin [1] https://github.com/kpdyer/fteproxy/releas

Re: [tor-dev] Projects to combat/defeat data correlation

2014-01-16 Thread Kevin P Dyer
have a look at [1] and [2]. They explore the related setting of website fingerprinting attacks and defenses (including the one you suggest.) -Kevin [1] https://kpdyer.com/publications/oakland2012-peekaboo.pdf [2] http://cacr.uwaterloo.ca/techreports/2013/cacr2013-30.pdf ___

Re: [tor-dev] Small FTE question

2014-01-04 Thread Kevin P Dyer
Hi George, On Sat, Jan 4, 2014 at 7:12 AM, George Kadianakis wrote: >> On Fri, Jan 3, 2014 at 6:20 AM, George Kadianakis >> wrote: >>> Hello Kevin, >>> >>> I saw your recent changes to the FTE codebase. The code looks nice! >>> >>> I then

Re: [tor-dev] Small FTE question

2014-01-03 Thread Kevin P Dyer
On Fri, Jan 3, 2014 at 6:20 AM, George Kadianakis wrote: > Hello Kevin, > > I saw your recent changes to the FTE codebase. The code looks nice! > > I then tried to test it, but I got a bit confused by the CLI. I wanted to > try the good ol' ncat test, where I put FTE

[tor-dev] fteproxy v0.2.2

2013-12-16 Thread Kevin P Dyer
/output of our (un)ranking algorithms. I look forward to feedback on v0.2.2! -Kevin [1] https://trac.torproject.org/projects/tor/ticket/10362#comment:2 [2] https://github.com/kpdyer/fteproxy/tree/384a4b0ba5a5 ___ tor-dev mailing list tor-dev@lists.torp

[tor-dev] Gitian Build Failure (pt branch only?)

2013-12-12 Thread Kevin P Dyer
ing $ sudo apt-get --reinstall install linux-image-generic >>> I did not encounter this problem when building [2] last week. When the failure occurs, var/build.log contains the "invalid instruction suffix" errors as reported in [3]. -Kevin [1] https://gitweb.torproject.org/us

[tor-dev] fteproxy v0.2.1

2013-12-10 Thread Kevin P Dyer
that has logic for building the pluggable transports? Or is that still an open task? -Kevin [0] http://eprint.iacr.org/2012/494 [1] https://gitweb.torproject.org/builders/tor-browser-bundle.git [2] https://gitweb.torproject.org/builders/gitian-builder.git

[tor-dev] FTE v0.2 Release Candidate

2013-11-25 Thread Kevin P Dyer
egrate FTE into the PTTBB. My fork is available at [3]. The source code [4] for fteproxy is available on github. -Kevin [1] https://trac.torproject.org/projects/tor/ticket/9941 [2] https://git.torproject.org/pluggable-transports/bundle.git [3] https://github.com/kpdyer/bundle [4] https://github.

Re: [tor-dev] Development of an HTTP PT

2013-11-25 Thread Kevin P Dyer
? -Kevin On Sun, Nov 17, 2013 at 6:22 AM, dardok wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA512 > > George Kadianakis: >> dardok writes: >> >>> Hi, I am quite new in here but I am interested to help and >>> improve the TOR system. I am interested i

Re: [tor-dev] Transport composition

2013-11-19 Thread Kevin P Dyer
e PT standup on Friday. To get my head around the current design, it would be great if we could discuss a few use cases beyond obfsproxy+flashproxy. -Kevin [1] https://trac.torproject.org/projects/tor/ticket/7167 On Sun, Nov 10, 2013 at 3:43 AM, George Kadianakis wrote: > Hello Kevin, > &g

Re: [tor-dev] Pluggable Transport TBB Build

2013-10-09 Thread Kevin P Dyer
On Wed, Oct 9, 2013 at 12:22 PM, David Fifield wrote: > On Wed, Oct 09, 2013 at 12:02:20PM -0400, Kevin P Dyer wrote: >> On Sun, Oct 6, 2013 at 3:30 PM, David Fifield wrote: >> This is a good start and goes a long way towards automating the build >> process. However, I&#

Re: [tor-dev] Pluggable Transport TBB Build

2013-10-09 Thread Kevin P Dyer
Hi David! Thanks for the detailed response. My thoughts are inline. On Sun, Oct 6, 2013 at 3:30 PM, David Fifield wrote: > On Sat, Oct 05, 2013 at 11:08:40AM -0400, Kevin P Dyer wrote: >> Sorry I missed the most recent Pluggable Transport bi-weekly meeting. >> >> In regar

[tor-dev] Pluggable Transport TBB Build

2013-10-05 Thread Kevin P Dyer
ut I don't have a better solution. I anticipate this will be a non-trivial effort to get working correctly. So, it would be great if you could help me adjust my plan to minimize headache! Thanks! -Kevin ___ tor-dev mailing list tor-dev@lists.

Re: [tor-dev] Torperf implementation considerations

2013-09-30 Thread Kevin Butler
heir intended schedule with potential inaccuracies caused, or the 2 minute interval is not a 2minute interval. I think we should aim for the latter and warn the user when they have made schedules like the above. - Another option is to break up experiments into chunks, where overall only one

Re: [tor-dev] Torperf implementation considerations

2013-09-25 Thread Kevin
rf being a > bunch of scripts. I'd rather not want to write a single script for > Torperf to do what it's supposed to do, but design it in a way that it > can already do all the things we want it to do. Accumulating results > and presenting them is part of these things. "Torperf should just measure performance and display data", displaying aggregate data is displaying data! :P But, surely if Torperf just achieves this by wget'ing stuff, and the user doesn't have to worry about anything other than setting a remote server and an interval to poll, that would be considered done? (Torperf handles the scheduling and managing of the data files) >>>>> results database Store request details, retrieve results, periodically >>>>> delete old results if configured. >>>> >>>> Not sure if we really need a database. These tests look pretty simple to >>>> me. >>> >>> Rephrased to data store. I still think a database makes sense here, but >>> this is not a requirement. As long as we can store, retrieve, and >>> periodically delete results, everything's fine. >>> >> >> Cool! I don't think we need a database for the actual results (but a flat file structure is just a crap database! :). I do however think, once we start to provide the data visualisation aspects, it will need a database for performance when doing queries that are more than simple listings. regards, Kevin ___ tor-dev mailing list tor-dev@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-dev

Re: [tor-dev] Torperf implementation considerations (was: Torperf)

2013-09-17 Thread Kevin Butler
attached changes. :) > Well, thanks for your input! As I said above, it would help a lot if > you added these ideas to the appropriate sections of the design document. > > Please see attached. Regards, Kevin 0001-Added-some-ideas-on-ex

[tor-dev] Torperf implementation considerations (was: Torperf)

2013-09-16 Thread Kevin Butler
e are new clients available to run as latest? Would it be useful to be able to specify that some experiments should be run on 'master' or a gitref and that it would be pulled between runs? That's probably not practical. Apologies for the length and lack of order! Kevin ___ tor-dev mailing list tor-dev@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-dev

Re: [tor-dev] Pluggable transport weekly meeting

2013-09-12 Thread Kevin P Dyer
Hi all, Will we be having the first Pluggable Transport Weekly tomorrow? I'm working towards getting a build environment setup for the PTTBB and would like to chat about it, to ensure I'm not duplicating previous efforts. Thanks, Kevin On Fri, Sep 6, 2013 at 1:58 AM, Vmon wrote:

Re: [tor-dev] Thoughts on Proposal 203 [Avoiding censorship by impersonating a HTTPS server]

2013-09-12 Thread Kevin Butler
Hey Jeroen, Thanks for your feedback, please see inline. On 12 September 2013 09:03, Jeroen Massar wrote: > On 2013-09-12 09:25 , Kevin Butler wrote: > > [generic 203 proposal (and similar http scheme) comments] > > - HTTPS requires certificates, self-signed ones can ea

[tor-dev] Thoughts on Proposal 203 [Avoiding censorship by impersonating a HTTPS server]

2013-09-12 Thread Kevin Butler
(This email got way out of hand from a basic 'I'll bounce an idea here', here's to hoping I haven't made some huge oversight.) I've been thinking about the https frontend after reading the basic problem when I started looking into Tor dev but never took the time to read the actual proposal. When I

Re: [tor-dev] Pluggable Transport Browser Bundle FTE Integration

2013-09-01 Thread Kevin P Dyer
[Taking this discussion to tor-dev.] On Sun, Sep 1, 2013 at 6:32 AM, George Kadianakis wrote: > Kevin P Dyer writes: > > > Hi George/David, > > > > Hi Kevin, > > > I spoke with Roger at USENIX. He said you're the pluggable transport (PT) > > gateke

Re: [tor-dev] Format-Transforming Encryption Pluggable Transport

2013-07-27 Thread Kevin P Dyer
he 32-bit/64-bit linux binaries were compiled on RHEL6.4 with GLIBC 2.12. Please let me know if this resolves the issue you encountered. -Kevin On Wed, Jul 24, 2013 at 10:51 PM, Kevin P Dyer wrote: > Hi George, > > Thanks for trying FTE! > > Apologies, this is my fault. I built

Re: [tor-dev] Format-Transforming Encryption Pluggable Transport

2013-07-24 Thread Kevin P Dyer
lease new binaries ASAP. -Kevin On Wed, Jul 24, 2013 at 7:44 PM, George Kadianakis wrote: > Hi Kevin, > > I tried the bundles in https://kpdyer.com/fte/ . > > For some reason, when I fire up 'start-tor-browser' I don't get > 'fte_relay' listener to bi

[tor-dev] Format-Transforming Encryption Pluggable Transport

2013-06-09 Thread Kevin P Dyer
onth, we've successfully tunneled Tor through the Great Firewall of China, using FTE to make our traffic "look like" HTTP. We're eager for feedback on this alpha release, so please do not hesitate to contact us with questions. -Kevin P Dyer (and his co-authors) [1] https://lis

Re: [tor-dev] Format-Transforming Encryption for Censorship Circumvention

2012-09-11 Thread Kevin P Dyer
On Thu, Sep 6, 2012 at 3:30 PM, David Fifield wrote: > On Thu, Sep 06, 2012 at 09:25:58AM -0700, Kevin P Dyer wrote: >> Following my email to this list, dated 29/07/2012, I direct your >> attention to the IACR eprint document http://eprint.iacr.org/2012/494, >> "Form

[tor-dev] Format-Transforming Encryption for Censorship Circumvention

2012-09-06 Thread Kevin P Dyer
igned to detect HTTP traffic. We consider this preliminary technical report on a work-in-progress. In fact, we can already do more than what is reported (e.g. greater variety of languages, better system performance), but we will save these advances for a future release. Cheers, Kevin P Dyer (and

Re: [tor-dev] Brainstorming about steganographic transports

2012-07-29 Thread Kevin P Dyer
eport and I'll point you guys to it. At that point ---should be just a couple of weeks--- I'll be happy to explain more details about our work, share code, etc. There will, of course, be lots of interesting questions remaining about practical deployme

Re: [tor-dev] hide my site in clearweb

2012-07-22 Thread Kevin Evans
You can only allow the site to be accessed 127.0.0.1. On Sun, Jul 22, 2012 at 4:08 AM, Salva . wrote: > Hello, I have launched a website in TOR and I can access it through the > .onion address and also typing the ip of my server in my brower. > I want my site was only accessible from TOR and not

Re: [tor-dev] Ports with hidden/rend services?

2012-07-17 Thread Kevin Evans
D'oh! I hope this wasn't the wrong place to ask this. I couldn't seem to find anywhere else to ask this. ___ tor-dev mailing list tor-dev@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-dev

[tor-dev] Ports with hidden/rend services?

2012-07-17 Thread Kevin Evans
I am utterly dumbfounded by this (it's probably because I'm really tired), but in rendservice.c in the rend_service_t structure, there is a smartlist_t for the ports. How exactly are the [source and destination] ports stored in there? Tha

Re: [tor-dev] Gsoc 2012 Project Proposal.. Feedback please!!

2012-04-01 Thread Kevin Bauer
> By the way, where can I find the md5 or sha digests for the Experimentor? You can find the ExperimenTor tools and optional virtual machine instances at this link: http://crysp.uwaterloo.ca/software/exptor/download.html We don't publish any digests for these downloads.

Re: [tor-dev] Browser-based proxies for circumvention

2012-01-03 Thread Kevin Dyer
ction. >>> 5. The proxy connects to a Tor relay, then begins copying data between >>>its two sockets. >> >> Where is the list of all facilitators? > > There is only one (not that there couldn't be more), and its address is > hardcoded into the pro

Re: [tor-dev] Proposal: Optimistic Data for Tor: Client Side

2011-06-04 Thread Kevin Bauer
> Assuming you mean "stream" instead of "circuit" here, then, as above, I > think most HTTP connections would be in this category. It might be > interesting to examine some HTTP traces to see, though. target="Kevin">Kevin, you were looking at s