[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]
Re: [tor-bugs] #3469 [Vidalia]: Anomalous Ports in Exit Policies
#3469: Anomalous Ports in Exit Policies
---------------------+------------------------------------------------------
Reporter: atagar | Owner: chiiph
Type: defect | Status: new
Priority: major | Milestone:
Component: Vidalia | Version:
Keywords: | Parent:
Points: | Actualpoints:
---------------------+------------------------------------------------------
Comment(by atagar):
As discussed on irc this is about problems in the purpose => port
assignments. That said, it might be a good idea to switch to the reduced
exit policy in Vidalia. My suggestions for Vidalia exit policy changes
are...
- Correct the purpose => port assignments. That's what this ticket is
about. Here's the mappings that I use for arm (it differs in a few
categories and uses the reduced policy, but maps fairly well):
https://gitweb.torproject.org/arm.git/blob/HEAD:/src/settings.cfg#l836
- Start a discussion to see if we should switch to the reduced exit
policy. There's tradeoffs since this will bloat the consensus entry, but
provide exits with fewer DMCA takedown notices. I brought this up in the
'Exit-by-default Windows package' tor-assistants@ thread, but
unfortunately it didn't get any traction. Here's the policy:
https://trac.torproject.org/projects/tor/wiki/doc/ReducedExitPolicy
- Merge the IM and IRC policy check boxes, unless you see a good purpose
for having them separated.
- I'd also suggest dropping the separate 'plaintext web traffic / secure
web traffic' options since it's giving users easy check boxes to have a
configuration we'd BadExit. Rather, for arm I have a "allow plaintext
traffic" checkbox that, if unchecked, removes unencrypted ports from the
ExitPolicy:
https://gitweb.torproject.org/arm.git/blob/HEAD:/src/settings.cfg#l915
Cheers! -Damian
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/3469#comment:3>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs