Re: [tor-relays] Best bandwidth setup for exit node

2016-07-14 Thread Moritz Bartl
t service. The relay will not accept any new connections, and thus slowly "fade out" for the period. There is no one valid answer to this question. I would say limiting it so it stays around for 15-20 days per month is a good compromise. --

Re: [tor-relays] Got a visit from the police this morning..

2016-07-31 Thread Moritz Bartl
most of the time they request information via fax. They never came to the address(es) of the board members, just to the formal address of the association. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torpro

Re: [tor-relays] Tor abuse complaints (per MBit/s)

2016-09-28 Thread Moritz Bartl
as "origin" of complaints, even though they send zero abuse complaints -- they are just two of our largest and very friendly ISPs, and they show up because all of that are complaints they forward to us. [1] https://collector.torproject.org/ -- Mori

Re: [tor-relays] Tor abuse complaints (per MBit/s)

2016-09-29 Thread Moritz Bartl
; share the report. > > Being a fan of "release early, release often" I prefer the current > alternative. Totally agreed. Just for the record, Sadia reached out to me to ask before she posted here what they have so far. -- Moritz Bartl https://www.torservers.net/

Re: [tor-relays] Intrusion Prevention System Software - Snort or Suricata

2016-10-04 Thread Moritz Bartl
od, and it won't be able to reliably detect *and block* bad behaviour. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] numtcpsock prevents relay from working properly.

2016-10-07 Thread Moritz Bartl
when the customer asks. You don't necessarily have to mention Tor in your request. > IMHO this kind of knowledge should be spread more "pro-actively", which > is why I'm posting this on a public list. Always a good idea to remind people. Maybe this encourages someone to s

Re: [tor-relays] ISP, Abuses , Intrusion Prevention etc.

2016-10-11 Thread Moritz Bartl
stem Number and IP space, the place to go to depends on _your_ jurisdiction: ARIN (US/CAN), RIPE (EU), APNIC (Asia), LANIC (Latin America), AFRINIC (Africa); IP ranges and ASNs can then be announced by any hosting provider. For examples, see https://apps.db.ripe.net/search/query

Re: [tor-relays] LLC vis-à-vis Nonprofit

2016-10-27 Thread Moritz Bartl
LLCs) Which guide is that? You might like https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines . It does not mention LLCs, but instead mentions non-profits. :-) And what Nick said. :-) -- Moritz Bartl https://www.torservers.net/ ___ tor-r

Re: [tor-relays] Network scan results for CVE-2016-5696 / RFC5961

2016-12-11 Thread Moritz Bartl
On 12/10/2016 09:52 PM, pa011 wrote: >> btw, it would be awesome to give away t-shirts or something for running >> diverse relays. > that was a least a promise the year ago (its not any more) > - and I believe one should stand to his promises I don't know where this idea is coming from that it's n

Re: [tor-relays] 'MyFamily' .... torworld.org

2017-01-10 Thread Moritz Bartl
So they are not setting MyFamily properly or someone else is using their >> contactInfo. This is correct; our MyFamily settings are very out of sync. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.o

Re: [tor-relays] Shutdown of TorLand1

2017-02-15 Thread Moritz Bartl
- in a positive sense. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Aggressive abuse report

2017-03-14 Thread Moritz Bartl
be hard to argue why a scan does not automatically mean that it is "illegal" these days, but it might help in certain discussions. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Aggressive abuse report

2017-03-14 Thread Moritz Bartl
simply blocking all Tor users right away. In many cases, ISPs are OK if you explain your options, they just want to see you "dealt with it" within a reasonable timespan (~24 hours) and are in touch with the sender of the complaint. -- Moritz Bartl https://www.torservers.net/ __

Re: [tor-relays] Relay installation instructions

2017-03-19 Thread Moritz Bartl
ecode. > If I'm missing something about that, I'd > happily submit a bug, or even try to fix this myself if I can be pointed > at where the website code is (if it's open for contributions). https://gitweb.torproject.org/project/we

Re: [tor-relays] 22% of bridges run by a single entity?

2017-03-29 Thread Moritz Bartl
e who wanted to be part of the grant didn't do it. I don't think they ever worked well anyway, and weren't supposed to be used in that way. We should just shut them down finally. -- Moritz Bartl https://www.torservers.net/ ___ t

Re: [tor-relays] Some n00b questions about exits

2017-04-14 Thread Moritz Bartl
On 14.04.2017 19:27, Mirimir wrote: > For exits, speed is better than persistence, right? There is no scientific answer to that, but I would say aim for at least 10 days per month. > Also, I can choose VPS in UK vs DE vs US. Which is needed most? And am I > right that a DE exit will generate the

Re: [tor-relays] torservers.net: some exits became guards? (deanonymization risk)

2017-06-10 Thread Moritz Bartl
next week. We had to temporarily disable some of our exits due to ongoing negotiations with the provider. Thank you nusenu for watching out! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.

Re: [tor-relays] torservers.net: some exits became guards? (deanonymization risk)

2017-06-11 Thread Moritz Bartl
move within the next few weeks, I definitely will take you up on that offer. We have our own AS and v6 space already (AS60729). -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torpr

[tor-relays] IP space for Tor exits - any takers?

2017-06-12 Thread Moritz Bartl
have actual use for a /24, please contact me off-list and explain what exactly you would like to do with it. If we have three other organizations (or reliable individuals) and a couple of good use cases, we're willing to apply for the /22. -- Moritz Bartl https://www.torservers.net/ _

Re: [tor-relays] torservers.net relays still putting tor users at risk

2017-06-24 Thread Moritz Bartl
pt. Should be good now -- all relays that we directly have control over are in one family now. (There are a bunch of 3rd party relays that contain our contact info without us being responsible for them...). Thanks nusenu for watching out. -- Moritz Bartl https://

Re: [tor-relays] Multiple relay instances, debian + systemd

2017-07-03 Thread Moritz Bartl
: > Do you change the number of maximum file descriptors? In most cases this should not be necessary. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

[tor-relays] Two-step abuse management?

2017-09-13 Thread Moritz Bartl
use one or two more hands, it's fun, and it teaches you a lot about Tor exit operation. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Two-step abuse management?

2017-09-13 Thread Moritz Bartl
sharing that configuration, and maybe even the filters you already set up? -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Feedback wanted: letter to my university's library

2017-10-01 Thread Moritz Bartl
t should be pretty straightforward: Here also, I would suggest to first (without making a lot of noise about it) to find out what the rules around Internet usage are, and just set one up. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays maili

Re: [tor-relays] Looking for a 34C3 Voucher

2017-10-09 Thread Moritz Bartl
. See you there! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Looking for a 34C3 Voucher

2017-10-09 Thread Moritz Bartl
ome minutes (!) for each of the announced times. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] torservers.net MyFamily Configuration

2018-02-14 Thread Moritz Bartl
tching! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] torservers.net DNS failure rate

2018-02-19 Thread Moritz Bartl
s check again in a day or so if the problem persists. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Is it possible to run a Web server and tor ORPort on the same port?

2018-02-21 Thread Moritz Bartl
On 21.02.2018 20:38, pikami wrote: > I was wondering if it's possible to run a Web server and tor ORPort on > the same port. Not easily. There is sslh, a "port multiplexer", but I have no experience with it: https://github.com/yrutschle/sslh -- Moritz Bartl https

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-03-03 Thread Moritz Bartl
t was seized (it goes back into the provider pool, so some other customer might be in for a surprise...). In that case, a relay operator may decide to use disk encryption for integrity reasons: They at least have to ask you for the decryption key and cannot silently copy content or easil

Re: [tor-relays] tor-instance-create vs. /etc/tor/torrc

2018-03-22 Thread Moritz Bartl
(I have not seen this happening ever) than to have outdated packages/kernels. See https://torservers.net/wiki/setup/server for some references. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] How to handle an abuse report

2014-05-14 Thread Moritz Bartl
True, but the location of the server defines the legal territory for the data center, not your own. Even if you rent a server in a foreign country, you must still conform and know about your local laws. Then, in addition, you can take the foreign country's laws into account as well. --

Re: [tor-relays] How to handle an abuse report

2014-05-14 Thread Moritz Bartl
hite, Regardless, you should _always_ ask the ISP _beforehand_ if they're ok with a Tor exit. For more information, see https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines -- Moritz Bartl https://www.torservers.net/ ___ to

Re: [tor-relays] hardening a tor relay

2014-05-21 Thread Moritz Bartl
eed to open for incoming TCP connections is 443 (besides SSH). The problem with selective filters for outgoing traffic is that Tor needs to be able to connect to all other Tor relays, some of which use non-standard ports. -- Moritz Bartl https://www.tor

[tor-relays] Please help profile Tor 0.2.5.4

2014-05-27 Thread Moritz Bartl
use cypherpunks/writecode as login if you don't want to create a user). Thanks! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] VPS for tor exit nodes

2014-06-03 Thread Moritz Bartl
is lowendbox.com. What you can do is collect 50 or so sales@ email addresses of various providers, and email each of them to ask if they are ok with Tor exits, that you will quickly deal with all abuse mails, etc. Then, add your results to the GoodBadISPs page. -- Moritz Bartl https://www.torservers.

Re: [tor-relays] Torservers herngaard issues

2014-06-12 Thread Moritz Bartl
appens there. Will investigate, thanks for the notification. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Debian relay Puppet module

2014-06-15 Thread Moritz Bartl
SD and Solaris! And FreeDOS! :) -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Debian relay Puppet module

2014-06-17 Thread Moritz Bartl
tion systems helps against single points of failure (like the Debian OpenSSL issue, or even the 1.x Heartbleed). -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] bitcoin adopt a node idea

2014-06-26 Thread Moritz Bartl
o combine this with would be a billboard where you can compete with other relay operators, reach GruntMaster 6000 level etc. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

[tor-relays] gazduire.ro

2014-07-04 Thread Moritz Bartl
ge servers is located at m247, which are very friendly, but I don't know if they allow exits, and they're a subsidiary of a UK company: https://www.m247.ro/ -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@

Re: [tor-relays] UK Exit Node

2014-07-06 Thread Moritz Bartl
P will not forward abuse complaints or even tell you about them, so there is no way for you to explain yourself. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Relay not making connections.

2014-07-06 Thread Moritz Bartl
ds are live. [7 similar message(s) suppressed in last 3600 > seconds] What bandwidth rate did you set? Mind sharing the fingerprint? It can take a while for relays to attract more traffic, be patient. -- Moritz Bartl https://www.torservers.net/ __

Re: [tor-relays] "excessive bounces" on tor-relay list

2014-07-09 Thread Moritz Bartl
On 07/09/2014 02:07 PM, Kali Tor wrote: > Is there any reason why something like this would happen? I use yahoo mail You're using a shitty mail provider. https://lists.torproject.org/pipermail/tor-relays/2014-June/004752.html https://startpage.com/do/search?query=yahoo+mailman -- Mori

Re: [tor-relays] Exits behind a next-gen firewall? Opinions please

2014-07-10 Thread Moritz Bartl
u/uscode/text/17/512 We are promoting free network access without interference. Yes, we see these kinds of "attacks" from time to time, but they should be handled on the destination side. It's not the network providers fault that endpoint security is so ridiculous. --

Re: [tor-relays] Oubound Ports

2014-07-11 Thread Moritz Bartl
You can restrict any other traffic leaving your machine, but the Tor process needs to be able to fully mesh with all other relays, and, in the case of exits, be able to reach all the rest of the internet. -- Moritz Bartl https://www.torservers.net/ ___

Re: [tor-relays] Oubound Ports

2014-07-11 Thread Moritz Bartl
her port. > Some time ago I proposed that Tor flags some ports as being unacceptable as > ORPort[1], but this did not gather much of a momentum. A port is a number. None of them is special. I really don't see any reason to discriminate any. -- Moritz

[tor-relays] Reminder: Pre-PETS event Tuesday

2014-07-13 Thread Moritz Bartl
Everyone in Amsterdam should come. And bring friends! :) https://blog.torproject.org/events/researchers-practitioners-meetup-pets-amsterdam -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https

Re: [tor-relays] providers with AES-NI?

2014-07-25 Thread Moritz Bartl
Hi, On 07/25/2014 05:31 PM, Michael Ball wrote: > does anyone here know of any decent (and somewhat cheap) dedicated server > providers that offer AES-NI crypto acceleration? There's actually a lot of providers who offer servers with Intel CPUs that support AES-NI? I found webhostingtalk.com isn

Re: [tor-relays] Torservers.net relays not updated yet?

2014-08-17 Thread Moritz Bartl
keys to the relays, but then again we really want to limit the number of keys that can access our relays for security reasons... I am returning from vacation tomorrow and will update all relays. Sorry for the delay. -- Moritz Bartl https://www.torservers.net/ ___

Re: [tor-relays] Torservers.net - unattended upgrades

2014-08-17 Thread Moritz Bartl
per control, the ability to centrally update the MyFamily statement, etc etc. There have been some threads about it on the mailing list over time, but as we're all volunteers we can't magically fix everything immediately... -- Moritz Bartl https://www.torservers.net/ signature.asc De

Re: [tor-relays] Advantage in more exits in the same /8?

2014-08-26 Thread Moritz Bartl
rservers.net/wiki/setup/server#multiple_tor_processes -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Torservers.net relays not updated yet? (CVE-2014-5117)

2014-09-01 Thread Moritz Bartl
y people who used our template torrc and didn't adjust the contact lines). -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] TOR exit notice (not USA)

2014-09-02 Thread Moritz Bartl
ntry-specific legal information linked at https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines , and this is what we use for Germany: https://www.torservers.net/abuse.html Thanks for running a relay! :) -- Moritz Bartl https://www.torservers.net/ ___

Re: [tor-relays] boost CPU on a Tor relay

2014-09-09 Thread Moritz Bartl
and it maxes out one core? Spread the load to more cores then, and limit each of the relay processes so it stays well below 90%. https://www.torservers.net/wiki/setup/server#multiple_tor_processes -- Moritz Bartl https://www.torservers.net/ ___ tor-

Re: [tor-relays] boost CPU on a Tor relay

2014-09-09 Thread Moritz Bartl
l below 90%. > Yes, it's one Tor instance - I thought it will use the network better > this way. How many Tor instances should be there 4 or 8? You can run as many instances as you like, but a maximum of 2 per IP. -- Moritz Bartl https://www.torservers.net/ ___

Re: [tor-relays] request at Hetzner

2014-09-10 Thread Moritz Bartl
torproject.org/blog/lifecycle-of-a-new-relay for more details. You can of course change exit policy whenever you like, but to better be able to see the effect it takes several weeks in each phase. > Am I right, that later just commenting out that reject line enhance > the Tor server

Re: [tor-relays] Understanding Reduced Exit Policies..?

2014-09-12 Thread Moritz Bartl
Hi Jeremy, On 09/12/2014 05:02 AM, Jeremy Olexa wrote: > My question: If I want to "try" being an exit node and add allowed > exit ports slowly, does that help the network or not? For example, > month 1: allow port 22, month 2: allow IRC ports, and so-on. How does > the client path selection work

Re: [tor-relays] Fwd: Call for a big fast bridge (to be the meek backend)

2014-09-18 Thread Moritz Bartl
;t use for Tor exits, and I offered David to host a meek relay there. I'm not too happy about adding even more infrastructure to our organization and at OVH, but in case nobody else can be found with a machine that has enough bandwidth for this we could do it. -- Moritz Bartl https:/

Re: [tor-relays] Torservers.net relays not updated yet? (CVE-2014-5117)

2014-09-19 Thread Moritz Bartl
On 09/18/2014 10:08 PM, Nusenu wrote: > Is anonymizer1.torservers.net (81.20.139.145) > - still running a vulnerable version (0.2.5.3-alpha) - not one of your > relays? > https://atlas.torproject.org/#details/9B41B9B3D4661566C660096B715BC647FBD72A72 It has since been upgraded. --

Re: [tor-relays] Estimating the value and cost of the Tor network

2014-09-23 Thread Moritz Bartl
size exit relays, it gets harder the more traffic you push, because of the additional workload (and scariness) for the ISP from complaints. [0] https://compass.torproject.org/ -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mai

Re: [tor-relays] exit node experience: abuse over HTTP, stealrat infection

2014-10-21 Thread Moritz Bartl
ave known that to argue that the wifi was misconfigured "by mistake" is a bad excuse. To come back to the topic, I believe it is perfectly fine to announce _in advance_ that your relay does not want to see/relay particular traffic. Then, it is not a question of interfering with traffic,

Re: [tor-relays] Fast Exit Node Operators - ISP in US

2014-11-21 Thread Moritz Bartl
[7] https://blog.torservers.net/20130917/reimbursement-for-exit-operators.html -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

[tor-relays] Tor Relay Operators Meetup at 31c3 - 28.12. 14:15

2014-12-22 Thread Moritz Bartl
8 14:15 - 16:15 See you there! -- Moritz Bartl https://www.torservers.net/ signature.asc Description: OpenPGP digital signature ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Tor Relay Operators Meetup at 31c3 - 28.12. 14:15

2014-12-23 Thread Moritz Bartl
ill up at that point, ha ha). Yes, I will definitely try to do that. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Tor Relay Operators Meetup at 31c3 - 28.12. 14:15

2014-12-23 Thread Moritz Bartl
o advertise it ;-) -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

[tor-relays] Tor Relay Operators Meetup at 31c3 *moved* - 28.12. 13:00

2014-12-23 Thread Moritz Bartl
Hi, I had to move the meetup slightly in time and to a different room. I was told by CCC orga that they need the original room for Engel meetings. NEW DATE: 28.12.2014 13:00 LOCATION: HALL C https://events.ccc.de/congress/2014/wiki/Session:Tor_Relay_Operators_Meetup See you! -- Moritz Bartl

Re: [tor-relays] Tor and Freenode

2015-02-01 Thread Moritz Bartl
an exit at an exit-friendly hosting company! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Thoughts on new relay

2015-02-10 Thread Moritz Bartl
7A8EEC > > Regards, > > King Kong > > ___ > tor-relays mailing list > tor-relays@lists.torproject.org > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays > -- Moritz Bartl https://www.torservers.

Re: [tor-relays] new ansible-tor features: automatic instance configuration + automatic MyFamily generation (PATCH)

2015-02-17 Thread Moritz Bartl
ional option, including it as a separate >>> yml in tasks/main.yml + separate torrc is also a possibility - >>> but probably not the nicest way (duplicate code, multiple >>> torrc's). >>> > >> OK... I agree with you... but let's make this a seperate yml task >> file; your use is quite different than most of the entities >> currently using this ansible role. So let's add these as a new task >> file instead of modifying the existing task file. > > That is fine with me. > > regards, > Nusenu > -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] new ansible-tor features: automatic instance configuration + automatic MyFamily generation (PATCH)

2015-02-17 Thread Moritz Bartl
ese days. This hasn't changed at all since we last talked. I not only need ansible (or whatever), I need a person (or many) to take over. Apart from writing email, I am out. > Nusenu, I will be in Valencia, Spain for the tor-dev meeting Excellent. Let's definitely continue this the

Re: [tor-relays] automation needs of big relay ops (implemented as ansible role)

2015-02-17 Thread Moritz Bartl
server to be configured to listen on a sane number of IPs. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] automation needs of big relay ops (implemented as ansible role)

2015-02-17 Thread Moritz Bartl
le on top of that, so they don't even actively set up all the IPs by themselves (or have an interest in using them all), they simply 'inherit' them from the ISP. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-rela

Re: [tor-relays] Again Hibernations vs. limits, for the extreme case

2015-02-18 Thread Moritz Bartl
to keep it around for at least 2 weeks per month. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] multi tor instance support for startup scripts

2015-02-28 Thread Moritz Bartl
On 02/23/2015 06:17 PM, Daniel Jakots wrote: > It's useful on big nodes. Due to technical limitations in how Tor handle > multicore, we need to run multiple daemons on a same host so it scales > better with the CPU. Even if you have AES-NI. +1 -- Moritz Bartl https://www.

Re: [tor-relays] Legal Troubles

2015-03-04 Thread Moritz Bartl
/tor/wiki/doc/TorExitGuidelines -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Legal situation of tor in Europe

2015-03-12 Thread Moritz Bartl
help with a nice database of complaints. I'm sure other torservers.net operators would help as well. Obviously one can't simply count the number of complaints, as you need to take (at least) throughput and exit policy into account. -- Moritz Bartl https://www.torservers.net/ _

Re: [tor-relays] Tor-node/relay: System installation vs. TorBrowser

2015-03-16 Thread Moritz Bartl
;re at the moment best served by running two Tors -- "system installed" for relaying, Tor Browser for client (web) use. If you want to anonymize other applications (there be dragons), you can point them to your system Tor (with SOCKSPort configured). -- Moritz Bartl https://www.torservers.net/

Re: [tor-relays] Tor-Tshirts

2015-03-23 Thread Moritz Bartl
email to Tor Weather went unanswered. There was a change at Tor recently. The new email address at https://www.torproject.org/getinvolved/tshirt.html should find its way to helpful people. This is a service done by volunteers; please give them a while to work their way down the queue. :-

Re: [tor-relays] Help finding relay bottleneck

2015-03-23 Thread Moritz Bartl
I am not aware of any AT&T offers that have full Gbit. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Help finding relay bottleneck

2015-03-23 Thread Moritz Bartl
On 03/23/2015 10:52 PM, Patrick R McDonald wrote: > On Mon, Mar 23, 2015 at 10:36:34PM +0100, Moritz Bartl wrote: >> This is LAN, not Internet. Are you sure you have more than 5 Mbps in >> upstream bandwidth? I am not aware of any AT&T offers that have full Gbit. > AT&T d

Re: [tor-relays] Public Tor Socks port

2015-03-24 Thread Moritz Bartl
rypt traffic at all; all your traffic will travel to the SOCKS server in plain. Also, you need to fully trust the provider of the SOCKS port -- Tor is designed so you don't have to trust any participant in the network. -- Moritz Bartl https://w

Re: [tor-relays] Subpoena received

2015-04-20 Thread Moritz Bartl
subpoena to our lawyer as well. > > > https://mega.co.nz/#!ilIjlZSb!-deirKharWaDtp_UMxhev58E14zeouyoWUbzxeWPvEQ > > Greetings > -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Subpoena received

2015-04-20 Thread Moritz Bartl
operators that are unsure how to deal with complaints or requests for information. If you play by the book, we will gladly cover legal costs. The thing is, if you play nicely, it is very unlikely you will need one in the first place. -- Moritz Bar

Re: [tor-relays] Subpoena received

2015-04-23 Thread Moritz Bartl
current partner orgs. Then, we can send the letter around and get it co-signed by all the partner orgs and other orgs. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/c

Re: [tor-relays] Any t-shirts being sent?

2015-04-23 Thread Moritz Bartl
intfection link generation process works and integrate it. These are unique, manually generated links so payment happens via TorProject Inc., not simply a static link. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@

Re: [tor-relays] Subpoena received

2015-04-24 Thread Moritz Bartl
subsidiary to separate datacenter operation from end-user hosting. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] descriptions still valid?

2015-05-10 Thread Moritz Bartl
ig/sshd_config > thanks for helping out. cheers > > > ___ > tor-relays mailing list > tor-relays@lists.torproject.org > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays > -- Moritz Bartl https://www.torservers.net/

Re: [tor-relays] Tor Consensus Weight Stuck at 20 (Even on Relay with "Stable" Flag)

2015-05-10 Thread Moritz Bartl
___ >>>>> tor-relays mailing list >>>>> tor-relays@lists.torproject.org >>>>> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays >>>> _______ >>&g

[tor-relays] Please enable IPv6 on your relay!

2015-05-12 Thread Moritz Bartl
, you add: ORPort [IPv6::address]:port IPv6Exit 1 ExitPolicy reject6 *:* (or a more open exit policy respectively) Thanks! -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https

Re: [tor-relays] Please enable IPv6 on your relay!

2015-05-13 Thread Moritz Bartl
use of lines like "ExitPolicy accept *:80" which mention a port but > not an IPv4 IP? It is exclusively using accept6/reject6 lines. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org htt

Re: [tor-relays] Please enable IPv6 on your relay!

2015-05-16 Thread Moritz Bartl
anpages and in the howto that I've linked to. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays

Re: [tor-relays] Exit relay is apparently being used to attack other servers

2015-06-15 Thread Moritz Bartl
with other Tor relay fans, similar to what I did? Especially since a fast relay currently helps the network more than a lot of small ones. [1] https://trac.torproject.org/projects/tor/wiki/doc/GoodBadISPs [2] http://krebsonsecurity.com/2015/05/whos-scanning-your-net

Re: [tor-relays] Ports 465 and 587 vanished from reduced exit policy?

2015-06-24 Thread Moritz Bartl
On 06/25/2015 02:38 AM, Mike Perry wrote: > I've added them back in, since these ports should only be used for > user-authenticated SMTP, and not spam. Has anyone experienced any abuse > from these ports that involved non-authenticated mail/spam? We don't. --

Re: [tor-relays] Qualities of a good relay (Sean Saito)

2015-06-25 Thread Moritz Bartl
go: https://lists.torproject.org/pipermail/tor-dev/2014-July/007181.html I also remember another list of "diversity criteria" that someone posted, but I can't remember who or in which thread. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays

Re: [tor-relays] Qualities of a good relay (Sean Saito)

2015-06-25 Thread Moritz Bartl
On 06/25/2015 05:12 PM, Moritz Bartl wrote: >> Besides the obvious requirements of a good relay (e.g. speed, >> geo-diversity, constant uptime), what qualities make a relay valuable to >> the Tor network and its users? > George posted some ideas a while ago: > http

Re: [tor-relays] Question about responding to abuse request

2015-07-05 Thread Moritz Bartl
y, tell them you have blocked the destination range for 180 days (or something). Maybe this is already enough. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org https://lists.torproject.org/cgi

Re: [tor-relays] How to Run High Capacity Tor Relays

2015-07-21 Thread Moritz Bartl
rver . Most of the high bandwidth optimization parts are obsolete (and marked as such), modern kernels and modern OpenSSL do much better by default. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torpro

Re: [tor-relays] How to Run High Capacity Tor Relays

2015-07-21 Thread Moritz Bartl
jects/tor/wiki/doc/TorExitGuidelines links to it, as well as to https://trac.torproject.org/projects/tor/wiki/doc/TorRelaySecurity . Both these pages could use some overhaul, but they're not too bad. -- Moritz Bartl https://www.torservers.net/ ___ tor-

Re: [tor-relays] most hibernating relays wake up at the same time

2015-08-07 Thread Moritz Bartl
unting period. To prevent all servers from waking at the same time, Tor will also wait until a random point in each period before waking up. -- Moritz Bartl https://www.torservers.net/ ___ tor-relays mailing list tor-relays@lists.torproject.org

  1   2   3   4   >