[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]
Re: Single-hop (or unknown relay) attempts in 0.2.3
- To: or-dev@xxxxxxxxxxxxx
- Subject: Re: Single-hop (or unknown relay) attempts in 0.2.3
- From: coderman <coderman@xxxxxxxxx>
- Date: Thu, 2 Dec 2010 14:52:46 -0800
- Delivered-to: archiver@xxxxxxxx
- Delivered-to: or-dev-outgoing@xxxxxxxx
- Delivered-to: or-dev@xxxxxxxx
- Delivery-date: Thu, 02 Dec 2010 17:52:55 -0500
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:received:received:in-reply-to :references:date:message-id:subject:from:to:content-type; bh=07wN6/80VpK5syZErxTTwVDDc8gJtonbsOz6oiovVMY=; b=YNA3KVDTNdTzXr1PJd3eWm3o49HD7zspDM7Ld15z0B+r5VY8XSFN8mc3v7AYMMbYf+ pbbyXx8oIenJtXihh2t0IpO3ZaSn0QDAbWb/Cmq8skWKRd1LZJWfUiJpAOEHYxHPVtLw UjHpuzJBxSzq13QU9OvfpDaLvovFIPUf150q0=
- Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; b=NrrKzQdOJ4tmI2uRWw2BcGikrF/C2SL4f9m8rrKtp1g+TXCyMxWDuuKOJNqFG4VjLR WySzYibMNyy6jus9CASDnFGL2KXRXTG9atQ7ttmehdVnqbeOxq7LcasdfKUc9p1GAk3/ 1TapC7F4sOlmLfrh1GwDkmaY2jtdcZFEWZ9oE=
- In-reply-to: <20101202131128.GA16045@xxxxxxxxxxxxxxxxxxxxx>
- References: <20101202131128.GA16045@xxxxxxxxxxxxxxxxxxxxx>
- Reply-to: or-dev@xxxxxxxxxxxxx
- Sender: owner-or-dev@xxxxxxxxxxxxx
On Thu, Dec 2, 2010 at 5:11 AM, Ian Goldberg <iang@xxxxxxxxxxxxxxx> wrote:
> ...
> every 3-6 hours, I see a group of entries like this in my log:
>
> Dec 02 05:08:17.000 [notice] Attempt by [scrubbed] to open a stream from
> unknown relay. Closing.
> ...
> Any idea what this might be?
i can only speculate; however, back when looking into
https://trac.torproject.org/projects/tor/ticket/1160 someone was using
single hops for malicious exit node checking, other periodic requests.
$0.02