Re: [tor-dev] Different trust levels using single client instance

2016-11-06 Thread teor
> On 6 Nov. 2016, at 02:30, ban...@openmailbox.org wrote: > > On 2016-11-05 01:36, teor wrote: >>> On 5 Nov. 2016, at 11:26, Patrick Schleizer >>> wrote: >>> Thank you for your answers! >>> teor: * Caching of DNS, HS descriptors, preemptive circuits, etc. >>> Can you please elaborate on 'e

Re: [tor-dev] Different trust levels using single client instance

2016-11-05 Thread bancfc
On 2016-11-05 01:36, teor wrote: On 5 Nov. 2016, at 11:26, Patrick Schleizer wrote: Thank you for your answers! teor: * Caching of DNS, HS descriptors, preemptive circuits, etc. Can you please elaborate on 'etc.'? I am asking because stream isolation for DNS already has a ticket: https://

Re: [tor-dev] Different trust levels using single client instance

2016-11-04 Thread teor
> On 5 Nov. 2016, at 11:26, Patrick Schleizer > wrote: > > Thank you for your answers! > > teor: >> * Caching of DNS, HS descriptors, preemptive circuits, etc. > > Can you please elaborate on 'etc.'? > > I am asking because stream isolation for DNS already has a ticket: > https://trac.torpr

Re: [tor-dev] Different trust levels using single client instance

2016-11-04 Thread Patrick Schleizer
Thank you for your answers! teor: > * Caching of DNS, HS descriptors, preemptive circuits, etc. Can you please elaborate on 'etc.'? I am asking because stream isolation for DNS already has a ticket: https://trac.torproject.org/projects/tor/ticket/20555 HS cache isolation also has a ticket: htt

Re: [tor-dev] Different trust levels using single client instance

2016-10-31 Thread Michael Rogers
On 21/10/16 21:38, ban...@openmailbox.org wrote: > Cons: > *Some unforeseen way malicious VM "X" can link activities of or > influence traffic of VM "Y" > **Maybe sending NEWNYM requests in a timed pattern that changes exit IPs > of VM Y's traffic, revealing they are behind the same client? > **May

Re: [tor-dev] Different trust levels using single client instance

2016-10-21 Thread teor
> On 22 Oct. 2016, at 07:38, ban...@openmailbox.org wrote: > > Summarized question: > > Do you recommend allowing Workstation VMs of different security levels to > communicate with the same Tor instance? Note that they connect via separate > internal networks to the Gateway and have different

[tor-dev] Different trust levels using single client instance

2016-10-21 Thread bancfc
Summarized question: Do you recommend allowing Workstation VMs of different security levels to communicate with the same Tor instance? Note that they connect via separate internal networks to the Gateway and have different interfaces & controlports so inter-workstation communication should not