[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-talk] Blocking STUN Requests at Firewall?




In case anyone is interested I managed to block STUN requests using an application level firewall on the router. Probably not 100%, but definitely an improvement...

On 08/02/15 12:00, Bill Berry wrote:
Hi all,

I've setup a Tor transparent proxy, as per the instructions here https://trac.torproject.org/projects/tor/wiki/doc/TransparentProxy (I'm aware of the security risks of not using the Tor Browser)

It's working well except it is vulnerable to STUN requests (as per http://ipleak.net/). Does anyone have experience of blocking these requests? Based on the spec they can be TCP or UDP, so just blocking non DNS UDP doesn't seem to help. Maybe it could be achieved using DPI? Not much info on the net.

Thanks,

Bill



--
--
High quality Shiba Inu at the right price! Quality dogs for over 15 years!

--
tor-talk mailing list - tor-talk@xxxxxxxxxxxxxxxxxxxx
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk