[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #18142 [Tor]: Anti-Automated-Scanning: Support "marking" with iptables TCP connections differently "for each circuits"



#18142: Anti-Automated-Scanning: Support "marking" with iptables TCP connections
differently "for each circuits"
-------------------------+---------------------
 Reporter:  naif         |          Owner:
     Type:  enhancement  |         Status:  new
 Priority:  Medium       |      Milestone:
Component:  Tor          |        Version:
 Severity:  Normal       |     Resolution:
 Keywords:               |  Actual Points:
Parent ID:               |         Points:
  Sponsor:               |
-------------------------+---------------------

Comment (by cypherpunks):

 This feature probably has very limited value. It's trivial for any scanner
 to simply use more circuits. Many targets likely have some anti-scanning
 defenses anyway, so scanners need to distribute scanning in the first
 place.

 Is there any evidence that this would be useful?

 This feature will expose Tor state to the rest of the system and enable
 new and easier ways for attackers with system access to perform circuit
 tracking.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18142#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs