logs archiveIRC Archive / Oftc / #tor / 2010 / January / 24 / 1
iaefai
I seem to be getting a warning 'TLS error: unexpected close while renegotiating' on both stable and unstable versions of the vidalia bundle on osx. Both also show notices about no current certificate known for authority moria1 and gabelmoo, but launches a request for it. Any ideas what might be wrong?
jr_
there is some indication that openssl was recently broken with respect to Tor on OS X
the OS X package may need to be rebuilt to link against its own openssl
iaefai
If I were to recompile tor myself and put it in place of vidalia's tor would it likely work?
jr_
it should
you would need to link against the openssl in macports or your own
iaefai
I have the source code extracted already, so I can do that, just need to reconfigure the platform
calwig
You people here talk way too fast, Im getting fed up just trying to keep up with you
iaefai
calwig: fast?
calwig
iaefai: -.-
dr|z3d
iaefai: You need to update to the latest release, indicated in the topic.
         

iaefai
dr|z3d: Both versions indicated there I have tried
dr|z3d
iaefai: The issues with moria1 and gablemoo should be fixed with the latest releases.
iaefai
dr|z3d: Just to make sure we are on the same page, I have downloaded and tried both the stable and unstable from this page: http://www.torproject.org/download.html.en
calwig
dr|z3d: the issues -should be- or -are- fixed?
iaefai
When I do a make test with tor, at crypto/pk: it slows my entire system down to a crawl
atagar
calwig: *are* fixed
calwig
atagar: I will hold you to that
:]
atagar
calwig: the new version includes information for the new incarnations of those authorities (for more information see https://blog.torproject.org/blog/tor-project-infrastructure-updates)
calwig
ok
thank you
nsa
or: Nick Mathewson <nickm@torproject.org>: 2010-01-24 01:46:38 [tor/maint-0.2.1]: Fix two rare leaks spotted by rieo.
or: Nick Mathewson <nickm@torproject.org>: 2010-01-24 01:46:38 [tor/master]: Fix two rare leaks spotted by rieo.
or: Nick Mathewson <nickm@torproject.org>: 2010-01-24 01:46:57 [tor/master]: Merge remote branch 'origin/maint-0.2.1'
or: Nick Mathewson <nickm@torproject.org>: 2010-01-22 21:32:15 [tor/master]: Avoid a possible crash in tls_log_errors.
calwig_
well its been good, thank you all for coming
QPrime
any suggestions for free/slack space sterilization on *mounted* ext3 volumes?
iaefai
QPrime: Create a file progressively larger that is written with zeros?
That does seem to be what disk utility does for me
QPrime
grrr... sounds painful :(
iaefai
QPrime: dd if=/dev/zero of=file might work, eventually it will be end up with an empty disk I should think
QPrime
true, just before I run out of space :(
looking for something that is a little more 'controlled'
sfill might do it perhaps - playing with it now.
sfill sounds like it does as you suggest in a 'managed' way.
and adds some /dev/urandom into the mix.
iaefai
I am not familiar with sfill
QPrime
neither was I, I'm letting it chew on a test fs now - we'll see if it eats my test box.
well its writing (at about 2MB/s)
nickm
The urandom business may be overkill. Are you trying to defend against somebody who steals your drive and plugs it in, or somebody who steals your drive, disassembles it in a clean room, and uses an elecron microscope on it?
For the former case, overwriting blocks with zeros is enough. For the latter, you really need hardware support, since modern drives have been known to move failing blocks around on you whether you like it or not.
(Action) personally likes the approach suggested by Garfinkel and Malan in "One Big File Is Not Enough", but I'm not aware of any OS that implements it
Tas
only write encrypted secrets to disk, doesn't matter what happens with it then
         

nickm
that works too
jr__
nickm: I'm not real worried about the electron microscope scenario
if someone has those sorts of resources you're toast anyway
coderman
debian 5 / ubuntu 9.10 alternates finally do disk encryption i like. (that is, read-only bootloader and /boot on USB or CDROM and single FDE partition in box)
writing your own key management / bootloader for loop-aes or dm_crypt or $whatever_that_doesn't_suck is tedious :( ...
nsa
or: phobos committed revision 21488 (/website/trunk): Add the latest mirror in russia
or: phobos committed revision 21489 (/website/trunk/include): update the mirrors table.
TopQuark
anyone have expereince with tor & zonealarm?
i keep getting a msg 'can not find firewall'
sorry the actual msg is 'Firewall: Unable to connect to firewall'
r1eo
geoip_add_entry() wrongly playing with idx, first existen country set idx: "ent->country = idx" to 0, so geoip_get_country_by_ip() returns 0 for existen country but caller count 0 as unresolved.
as dumbest hack need to change to "ent->country = idx+1;" or change all increments and decrement and add new increment.
oh no, ignore all it, sorry. not my day.
nsa
or: Christopher Davis <chrisd@mangrin.org>: 2010-01-24 09:24:53 [polipo/master]: Change proxyPrivacy to dontIdentifyToClients; restore local hostname detection.
or: Christopher Davis <chrisd@mangrin.org>: 2010-01-24 09:24:07 [polipo/master]: Document dontIdentifyToClients in the manual.
QPrime
nickm: urandom is very much overkill in this case. at this point just wondering what existed for sanitizing a mounted volume, and the options seem pretty slim.taking a look at the Garfinkel/Malan paper now - interesting, thanks.
mete888
is it possible to reduce memory usage?
weasel
nickm: is there a way to have --enable-gcc-warnings without -Werror?
steve
just saw the posts about tor dirserv compromise
any idea how they got on in the first place?
zhxk`
hello, how to get latest windows version of tor buddle?
OFFShare
http://www.torproject.org/easy-download.html.en
zhxk`
well, i want get it buy email, i cant reach any tor webpage as you know
dr|z3d
zhxk`: Try a mirror, perhaps.
zhxk`
show me a mirror
calwig
aargh! im angry...
at myself
dr|z3d
zhxk`: Try: http://trak.tor.hu/dist/
zhxk`
it work, thank you
calwig
I have now defaulted all the tsocks, privoxy and torrc settings. I have now tried several times to start vidalia therefore to gain control or access without success
I remove the tor.pid, start vidalia, see on firestarter that vidalia starts tor, then vidalia freezes, (although tor started fine and works)
any idea what could be causing Vidalia to just freeze?
zhxk`
well, i dont want tor, i want windows buddle
vidalia buddle?
calwig
Windows, gives me hemorroids
:]
MissAlyx
windows, gives me a huge sense of importance that i dont feel for anyone who uses vista or mac ^-^.
meaning, XP and W7 are the best :(
atari_
MissAlyx: it's all the same ;) (http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0346.html)
BarkerJr
mete888, it probably has some relation to the number of users you have, so decreasing advertised bandwidth should decrease ram usage
zhxk`
greenland is melting!
goodell
Real estate opportunities!
calwig
good, spring is coming
zhxk`
seawater level is lifting?
raising
goodell
"China's internet is open. China is a country with the most vibrant internet development."
http://www.theaustralian.com.au/news/world/china-fires-back-at-hillary-clinton-on-internet-restrictions/story-e6frg6so-1225823030263
phobos
indeed
completely open
free even
http://www.flickr.com/photos/44368850@N02/4208444146/
dererk
(Action) rotfl
phobos
I believe that statement is correct if you simply s/internet/intranet/
dererk
I've run some servers on .cn, and once I've an altercate with non-friendly content, and the goverment simple cut my routing IPs down
simply like that, no warns, no calls, they just cut them down :)
phobos
that's openness in action
they are open to do as they please
dererk
pretty funny, one would say
of course, not me :)
phobos
and you are open to run content as you please
dererk
(Action) rotfl
Shvibzik
is anyone willing to help me set up tor for mirc?
BarkerJr
in options, connect, firewall, set it to socks 5, localhost, 9050
Shvibzik
thank you....do i need to use privoxy or something like that?
BarkerJr
I don't think so
Shvibzik
thank you....i'll give that a try
BarkerJr
np
Tas
hm, strange, my Tor 0.2.2.7-alpha running as bridge stopped working, with this in the log: Jan 24 02:04:40.904 [err] find_dl_schedule_and_len(): Bug: directory.c:3391: find_dl_schedule_and_len: Assertion 0 failed; aborting.
everything else in the log is as usual
ha, and I just tried to restart it, and it stops again right away with: Jan 24 16:13:06.529 [err] routerlist_assert_ok(): Bug: routerlist.c:4714: routerlist_assert_ok: Assertion sd->routerlist_index == sd_sl_idx failed; aborting.
before this version did run for a day or two without problems
but I did run a ports update, which included Openssl... might be the cause
:/
hm, the new openssl binary is two hours newer than the first Tor error in the log though
so the first error was before the openssl opgrade
upgreade*
so far Tor runs again after the next restart
no error so far this time
biathasho
Hi. If you have firefox portable/tor and regular firefox running at the same time, any conflicts for security/privacy?
Tas
a few warnings which are marked "Bug" though: http://pastebin.ca/1764093
looks a bit to me as if there's a newline too much after "couldn't find end of hashed material"
or rather the relevant part in some file
biathasho
Firefox portable for tor can't play youtube videos so I need to run another browser, but if I run ff/tor and ff/non tor at same time is there some concerns?
futureworld
log_warn(LD_DIR,"couldn't find end of hashed material \"%s\"",end_str);
Tas
hm, is there a " too much?
hm no
r1eo
Tas: it's bug 1208. you can subscribe there and write something.
Tas
ah ok
I can't make Tor run anymore though now
r1eo
can you look at stats subdir
and backup bridge-stats file
Tas
sure
biathasho
Hi. If you run firefox(no tor) at the same time you are running firefox(tor enabled) is this a concern for the security on the firefox(tor enabled)? I mean since the firefox(no tor) has lower security settings.
calwig
How frustrating is it, to try to participate in the bridge project, but vidalia seems to be uncooperative
phobos
which OS?
calwig
Ub8.04
Ive run vidalia before plenty of times
thats not the issue, seen the tabs and all, but the app doesnt want to continue to start, it just hangs.
is there a config file for vidalia?
phobos
~/.vidalia/vidalia.conf
calwig
<_<
:]
futureworld
CB3ROB registered in NL..
calwig
I've only got vidalia.pid,torrc
phobos: TorK does make a connection to 9051 successfully
I see the network view, hosts, connections, etc everything that TorK offers, just not vidalia
phobos
ok
then tork probably sets a password on the control port
and vidalia doesn't know what the password is, so it hangs or fails to connect
nsa
or: pootle committed revision 21490 (/translation/trunk/projects/website): updated files from pootle
or: runa committed revision 21491 (/website/trunk): updated website translations
jnbptst
hi everyone
a noob needs help
anyone here?
G-Lo
ask your question, maybe someone will answer
jnbptst
ok
i am trying unsuccesfully to use tor in firefox and i am very confused
whenever I activate the TOR button
i get "the proxy server is refusing connections"
so i installed vidalia to initiate a tor link
restarted firefox and it is still not working
i read on the FAQ that it might have something to do with Polipo but i have no idea if it is installed at all, and how to configure it
Runa
jnbptst: which operating system?
jnbptst
i am using Ubuntu 9.10
Runa
jnbptst: ok, does vidalia say that it's connected to the network?
jnbptst
yes
i am connected to the network
Runa
did you download Tor from the torproject repository?
jnbptst
i downloaded vidalia from the ubuntu software add/remove menu
and the firefox TOR button from firefox add on catalogue
Runa
how did you install tor? :)
jnbptst
yes
it is running in my list of processes
when i lookup system monitor
Runa
but how? did you compile from souce or did you use the torproject repository or?
jnbptst
hum, let me figure out; i actually installed tor like 3 months ago and haven't tried to use it until now
TopQuark
anyone have expereince with Tor & ZoneAlarm?
Runa
jnbptst: ok, see if the log files say anything
jnbptst
it's in my repository list in synaptics
so i probably installed it through synaptics
TopQuark
i keep getting a msg that MIRC can coonnect to the firewall
jnbptst
Runa: the logfiles from Vidalia?
Runa
jnbptst: from Tor
jnbptst
ok where do i find the logs?
Runa
they should be in /var/log/tor/
jnbptst
Jan 24 09:17:43.084 [notice] Tor has successfully opened a circuit. Looks like client functionality is working.
Jan 24 09:17:43.084 [notice] Bootstrapped 100%: Done.
Jan 24 14:20:08.453 [notice] Your system clock just jumped 3643 seconds forward; assuming established circuits no longer work.
Jan 24 14:36:34.630 [notice] Your system clock just jumped 798 seconds forward; assuming established circuits no longer work.
Jan 24 14:46:44.889 [notice] Our IP address has changed. Rotating keys...
Jan 24 19:02:11.731 [notice] Interrupt: exiting cleanly.
those are the latest lines
notice that it is 19:29:00 right now for me
Runa
jnbptst: please use pastebin.ca next time :)
jnbptst
these lines are from the "log" file, but there are other files in that folder: "log.1", "log.2.gz", etc
?
« prev 1 2 3 next »