Re: [tor-relays] DDOS alerts from my provider

2024-07-11 Thread Scott Bennett via tor-relays
"Rafo \(r4fo.com\) via tor-relays" wrote: > More specifically, I?m running a middle relay on Debian 12 > On Tue, 09 Jul 2024 13:46:51 +0200 > li...@for-privacy.net wrote On Montag, 8. Juli > 2024 19:34:51 CEST Rafo (r4fo.com) via tor-relays wrote: > But this week I?ve

Re: [tor-relays] Hardware sizing for physical exit node

2024-07-11 Thread eff_03675549
Hi, my personnal experience with many many instances on never redundant hardware (I know diversity in hardware, locations...): This is Exit specific: 1) never more than 4GB ram per core and never less than 2 cores per IP, let me explain: a) most people will tell you that instances run per

Re: [tor-relays] DDOS alerts from my provider

2024-07-11 Thread boldsuck
On Donnerstag, 11. Juli 2024 09:38:34 CEST Scott Bennett via tor-relays wrote: > My understanding is that LINUX systems do not have pf, but rather have > a less flexible filter called iptables. Whether iptables or any other > packet filter that may be available on LINUX systems has synproxy or a

Re: [tor-relays] DDOS alerts from my provider

2024-07-11 Thread boldsuck
On Mittwoch, 10. Juli 2024 18:34:26 CEST Toralf Förster via tor-relays wrote: > > https://www.petsymposium.org/foci/2024/foci-2024-0014.php Very interesting, thanks. > After reading that paper I do wonder if a firewall rule would work which > drops network packets with destination to the ORport i

Re: [tor-relays] Tor Metrics 'Running' flag is back for bridges who don't publish the OrPort

2024-07-11 Thread boldsuck
On Montag, 8. Juli 2024 16:49:04 CEST Hiro wrote: > I do not want to declare victory too soon, but I think this issue should > be resolved. There was a configuration option hidden in collector that > was making it process bridgestrap tests every 8 hours. I have now > changed it to every hour. This