Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-10 Thread George Hartley via tor-relays
I bought my physical own server, and colocated it in a room in a datacenter I have 24/7 access to. Also, I was not talking about KVM at any time? Maybe read my e-mail before replying, please. FDE on exits ON KVM's is discouraged because if the host has to reboot, your VM will be stuck at boot.

Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-06 Thread boldsuck via tor-relays
On Saturday, 5 October 2024 00:40 George Hartley via tor-relays wrote: > You should default to full disk / partition encryption. Apart from that FDE is _not_ recommended, especially for Tor exits. What is the point of a 24/7/365 running cloud or KVM server that the admins can copy at any time? I

Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-06 Thread George Hartley via tor-relays
No problem. You should default to full disk / partition encryption. The ArchLinux Wiki has (as usual) a great article on this: https://wiki.archlinux.org/title/Dm-crypt/Device_encryption#Encrypting_devices_with_cryptsetup Also make sure to not use the standard hash library (SHA256) but SHA512

Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-04 Thread Osservatorio Nessuno via tor-relays
Hi, thanks both for your input. On 03/10/2024 21:24, boldsuck via tor-relays wrote: But: FallbackDir can also move to another provider/host. Simply copy the Tor keys of the instance to the new host. I've done that several times. While we could, I would think it is not a great security pract

Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-03 Thread George Hartley via tor-relays
Yes, you can do this, you need to back up the following two files: > secret_id_key > ed25519_master_id_secret_key But the problem I think is that while you can move your node, the old IP and port is still hardcoded into the Tor codebase. -GH On Thursday, October 3rd, 2024 at 9:24 PM, boldsuck

Re: [tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-03 Thread boldsuck via tor-relays
On Thursday, 3 October 2024 18:59 Osservatorio Nessuno via tor-relays wrote: > We are writing this email in advance, since the node is in > the FallbackDir list and embedded in Tor. The cluster will be powered > off on 25th November. FallbackDir have been selected 'automatically' for some time no

[tor-relays] Decommissioning a FallbackDir node (punki)

2024-10-03 Thread Osservatorio Nessuno via tor-relays
Hi there, sadly after almost 6 years of good and honest service, our exit node punki[1] will be turned off. The provider is powering off the infrastructure where it is hosted, and has offered no viable alternative. We are writing this email in advance, since the node is in the FallbackDir list