Oskar Wendel writes:

> Seth David Schoen <schoen@xxxxxxx>:
> > As I said in my previous message, I don't think this is the case because
> > the correlation just requires seeing the two endpoints of the connection,
> > even without knowing the complete path.
> Is it possible to be sure that one of these connecting clients is in fact 
> a client and not just intermediate relay in the circuit?

As a guard node (or someone observing a guard node) trying to locate the
operator of a hidden service, you can use the IP address of the inbound
connection and the Tor directory to see if it's another Tor node or not.
I guess the hidden service operator could use a bridge to create more
ambiguity about what's happening; I don't know for sure if a guard node
has a way to distinguish an inbound connection from a bridge from an
inbound connection directly from a client.

