i've been considering that in the Tor network, end-users deserve the
"anonymity by design", but that's not a requirement for Tor Relay operators.

So, assuming that any Tor Relay that does bad-things is anonymous
(providing un-traceable or difficult-to-be-traced identifiable
information), why don't we increase a bit the complexity and costs to
stay anonymously unidentified as Tor Relay operators?

Actually a Tor relay do have a Contact information, with untrustuctured
data in it where i can type "Hello, i'm mikey mouse, write me to

Now, we know that inside the Tor networks the Tor relays may have
different roles and different responsibilities.

I would like to propose the topic of introducing a certain degree of
verification, in order to obtain certain responsibilities:
- Email validation (Email based check)
- Phone number validation (SMS based check)

Based on those elements, enable for example to become Guard Nodes, or
HSDir or Tor DA Mirror, making sybil attacks *much harder* because it's
much harder to do Email and SMS validation with many different identities.

The Tor Consensus may have those information publicly available,
facilitating contacts and coordination also in case of abuse-detection
by the many way abuses get identified.

This would facilitate both Tor Project activities in detecting and
handling Tor Relays abusers and third party that would like to provide
reporting to the Tor Relay operator, rather than going to his ISPs
(causing him to get a takedown notice).

I know that this trigger a lot of criticism because it's a topic of
"identifying", but it's not about "Identifying Tor Relay Operators" but
"Identifying Tor Relay Operators Reliable Contact Information" that
would provider a lot of benefit for Tor Network and for Tor Relay
operators themselves.

Fabio Pietrosanti (naif)
HERMES - Center for Transparency and Digital Human Rights
http://logioshermes.org - https://globaleaks.org - https://tor2web.org -
