logs archiveIRC Archive / Oftc / #tor / 2010 / January / 15 / 1
zulipot
ok
arma: still here
so i want to connect to a virtual private network through tor, ist that possible?
edeca_
zulipot: If it is TCP and you can find an exit node that allows the port, yes
zulipot
i want to connect to the universities net form home, normaly i use the cisco vpn client
but i dont know if that is possible wiht tor?
so how to use it?
normaly the ciso vpn client will connect directly to the universities IP
pde
openvpn appears to default to UDP, but you can change the configuration file so that it uses TCP
zulipot
so how to use it through tor. i hope you understand my question
pde
once you've changed the configuration file, try running openvpn through torify
zulipot
you mean through an tool which torifies the connection
like torsock
socat or which is the best tool?
Ageusia
I think OpenVPN supports proxies by itself in the configuration, too.
zulipot
realy
         

Ageusia
I would recommend you to check the OpenVPN documentation for that, though.
zulipot
if so, is it better to set polipo as http proxy or directly the SOCKS Pory tor?
Proxy*
arma
i'd say socks if it can do socks directly
zulipot
and how to check the DNS leaks?
Ageusia
Hmm, I think OpenVPN may only support HTTP proxies though.
I remember making use of an HTTP proxy with it once.
Not very sure though. It has been ages ago since I have touched OpenVPN.
zulipot
and it works?
Ageusia
It worked with that specific HTTP proxy. Tor is not a HTTP proxy, though.
zulipot
but that proxy forwarded the taffic to tor?
Ageusia
No, through the VPN. I'm afraid I have never used OpenVPN in combination with Tor.
zulipot
understand
so nobiody have tried it here?
nobody
Mitar
how could i limit number of connections a tor is maing?
BarkerJr
decrease the advertised bandwidth
Mitar
hmm
there is no limit option?
like for bandwidth?
what if i limit file descriptors?
BarkerJr
that works, too
Mitar
but it works gracefully?
BarkerJr
you can limit the actual bandwidth used
Mitar
i am limiting bandwidth
but this is not a problem
i have plenty to spare
BarkerJr
why do you want to limit connections?
Mitar
but my router is just failing now with 10000 connections
BarkerJr
ok, so this is why you should limit the advertised bandwidth
         

Mitar
because router cannot handle more
BarkerJr
it'll still allow tor to use more, but fewer users will choose you
Mitar
buh
this is sad
bandwidth to spare
but cannot use it fully
No current certificate known for authority dannenberg; launching request.
Got a certificate for dannenberg that we already have. Maybe they hav
en't updated it. Waiting for a while.
BarkerJr
I guess ya gotta get a better router :(
arma
dir-key-published 2009-01-14 22:20:11
dir-key-expires 2010-01-14 22:20:11
oops. looks like it did expire.
(Action) puts it on his ever-growing todo list
MoiraA
(Action) back
Sebastian
saeftl: The Tor git repository is restored. If anything breaks, please let me know. It will still be awhile until the git.torproject.org checkout works again.
saeftl: we might have some service outage as we fix new things that come up, but otherwise this should work again.
BarkerJr
does that mean 0.2.2.7 is on the way?
Sebastian
Hopefully yes :)
BarkerJr
and it has ipv6 support?
Sebastian
no
BarkerJr
Sebastian: https://git.torproject.org/ is down
phobos
yes, it is
but git://git.torproject.org is online
murb
probably dead webserver.
phobos
webserver isn't setup yet
one thing at a time
murb
ah
so it isn't down :)
is the plan to migrate everything to git?
phobos
no, what was git, stays git
other stuff stays svn for now
Fred_
question, does tor allow exiting on torrenting ports?
phobos
define torrenting ports
Fred_
ports used by torrenting servers to distribute the info
phobos
https://wiki.torproject.org/noreply/TheOnionRouter/TorFAQ#DefaultPorts
by default yes, but many torrenting apps use port 80, 22, 443, or any port they find open
Fred_
tor doesnt forcibly block them however
murb
yeah, when ISPS started messing with tor traffic, it started to look more like normal http etc.
Fred_: yeah, but it is considered antisocial to use tor for your torrenting.
phobos
tor can't look into content
it can only look at ports
Fred_
it could forcibly block certain ports upon exit
murb
Fred_: that is what an exit policy is for.
Fred_
but if i run an exit node that exits torrenters, i'm enabling
murb
Fred_: if you open any useful ports you'll probably have some bittorrent traffic.
phobos
all torrentors aren't criminals
BarkerJr
even if you don't... there are trackers in hidden services
phobos
lots of torrenters use tor to get versions of software that aren't compromised with censorship or weak encryption algorithms
or linux distributions that don't have special mods to them for the domestic market
SwissTorExit
morning to everyone, why the new ip are abnned for git ?
it's a "BAyTSP" rang and will sure make problem for a few peoples :/
well anyway i don't think ready :)
Kailash
Expiration of the key for dannenberg seems to be causing unprecedented connections spikes in the number of connections.
SwissTorExit
yeah, i have the same problem yesterday with Dannenberg
mete888
hmmh
09:52:09 [WARN] Got a certificate for dannenberg that we already have. Maybe they haven't updated it. Waiting for a while.
09:52:07 [NOTICE] No current certificate known for authority dannenberg; launching request.
is this normal?
dr|z3d
mete888: It's not so unusual; I've seen that from time to time. No need to panic!
Kailash
dr|z3d: it is causing massive load on my onion router.
SwissTorExit
hi dr|z3d, it is really the true : git.torproject.org[0: 38.229.70.17] ? because it look very strange for me
dr|z3d
I wonder if StrictExitNodes 1 and ExcludeExitNodes {dannenberg} might address the situation for now, as a workaround?
Kailash
dr|z3d: I'll give it a try but I suspect it will not help. The problem is the lack of directory authorities.
dr|z3d
Kailash: Let us know how you get on!#
Kailash
OK.
SwissTorExit
dr|z3d: how can i control a fingerprint for my git repo ? i mean to be sure that's the same as on Tor page
dr|z3d
SwissTorExit: I'm not the best person to say. Ask nickm perhaps, when he's around.. I think he's our git specialist #1. Sebastian also has knowledge.. and likely many others.
SwissTorExit
okie dokie dr|z3d, thanks for your answer :P
i am suspicious on a few things
Kailash
I can not use the ExcludeExitNodes trick: [warn] Failed to parse/validate config: Invalid nickname '{dannenberg}' in ExcludeNodes line
papul
hi guys. i want to setup a relay. i am using tor in ubuntu
Kailash
That's running Tor version 0.2.0.35.
calwig
ah finally
Good Day everyone
papul
hi guys. i want to setup a relay. i am using tor in ubuntu
calwig
so I heard Roger at the end of the conference in Berlin speaking loudly about becoming a bridge
to help the tor network
How can I do this from a linux platform (ubuntu) with a non-cooperating Vidalia
meaning that Vid doesnt start
redarrow
calwig: I guess you can install tor vie apt-get and than you neet to edit the torrc
calwig
can anyone post an https:// over how to set up a bridge
ah
I thought so, I just dont know which parameters to enter
redarrow
there should be an example torrc
papul
hi guys. i want to setup a relay. i am using tor in ubuntu
someone please help
calwig
redarrow: will the bridge be similar to the relay? because the provider I use will immediately block me if Im a relay
redarrow
the bridg usually has less traffic
but if I remember right it is like a relay
calwig
thats what i thought hearing on what roger said
redarrow
but only if you cannot connect to the tor relay directly you will need a bridge
calwig
oh, well I thought he meant become a bridge for others
mete888
hmmh, not one want to use my bridge -.-
redarrow
https://www.torproject.org/bridges.html.en calwig papul
calwig
thx
Runa
mete888: someone will eventually :)
SwordAngel
Can somebody get me a bridge relay address please?
Runa
SwordAngel: can't you use the website? bridges.torproject.org
mete888
SwordAngel: 91.121.26.35 port 443
SwordAngel
Runa: chicken and the egg. :)
Runa
SwordAngel: hehe :)
redarrow: a bridge is pretty much a relay, yes, just a bit secret :)
papul
hi guys. i want to setup a relay. i am using tor in ubuntu
Runa
papul: http://www.torproject.org/docs/tor-doc-relay.html.en
redarrow
Runa: I'm not sure in this stuff so I say what I think it is - that it is secure I found out aswell
calwig
Runa: redarrow : everything on the bridge is encrypted? and is there a lot of traffic or not much
Runa
calwig: everything is encrypted, just like with relays. There is less traffic on bridges than relays.
redarrow
calwig: that depends on the use who has added your bridge
calwig
I heard roger saying it was small bits of kb
redarrow
s/use/user
but usually there is less in a monthly term
I have had both and the bridge traffic was very low
SwordAngel
oops, I forgot about the Gmail method
meh
calwig
ok
SwordAngel
Thanks for the address, mete888
it's still taking forever to load relay info.
:(
I hate GFW.
calwig
redarrow: good to know, i want to stay as low-profile as possible and help out
mete888
I want to get 2-3tb traffic or more, but not one is using my bridge xD
calwig
a few months ago I relayed and worked sweet, then was blocked a few days later and was told i had a virus
Runa
mete888: you could become a relay? :)
calwig
(Action) tackles mete888 and steals his tb/s of traffic
mete888
yeah I can Runa ;) can you provide me with a tut?
calwig
open ports on the firewall for bridging?
papul
i want to setup a relay in ubuntu
please help
hi. i want to setup relay in ubuntu. please help
calwig
hard to connect thru tor in here
redarrow
calwig: maybe your university is blocking needed ports?
calwig
but i connected a few mins ago
I dont think they would but of course anything is possible
in our pseudo civilized society
papul
tor slows irv
tor slows irc
redarrow
calwig: you are so right :-(
papul
tor slows down irc
calwig
brb
papul
redarrow, if i use https thru tor will i be safe?
redarrow
papul: If the certificate is correct and you trust the authority ...
dr|z3d
papul: Yes, unless you hit a malicious exit node that attempts to MITM you.
(unlikely, but not impossible).
redarrow
papul: but using https is many times better than surfing without s
dr|z3d
https is what we recommend for end-to-end encryption; Tor can't provide that itself without the final destination being encrypted.
superjet_busy
htpps is no use when using ip block method
mete888
#BridgeRelay 1
ExitPolicy reject *:*
I'm a bridge now, right?
redarrow
mete888: you will need to delet the # in front of 'BrideRelay 1' than you are one
mete888
then I'm a relay?
^^
not a bridge
« prev 1 2 3 next »