[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: another DirPort DoS attacker

John Brooks schrieb:
> This definitely needs some limits added (why would one IP ever need
> more than a couple directory connections to one location?)
NAT - Network Address Translation - comes to mind. It is also possible
to run multiple Tor instances on one multi-user machine. The requests
in both cases are completely legitimate, especially in case of
high-bandwidth mirrors or relays.
That probably won't produce hundreds of simultaneous connections, but
be careful with limiting conns/IP.