[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: DNS leak check




On Fri, 10 Mar 2006, Paul Syverson wrote:
If you're seeing this in your logs, DNS requests is being leaked.

[warn] fetch_from_buf_socks(): Your application
(using socks5 on port xxxxxx) is giving Tor only an IP address.
Applications that do DNS resolves themselves may leak information.
Consider using Socks4A (e.g. via privoxy or socat) instead.  For more
information, please see
http://wiki.noreply.org/noreply/TheOnionRouter/TorFAQ#SOCKSAndDNS

It could be worthwhile to include an option to block IP-only connection requests. Paul could leave it turned off so he can still connect by numeric IP, but more paranoid users who never do such things could turn it on as a safety feature.


						-J