An idea on proxy monitors and TLD entries

Thomas Sjögren thomas at northernsecurity.net
Mon Sep 13 15:43:37 UTC 2004


An idea how to support country specific exit nodes and how to prevent
open proxy monitors.                                                     

The information in the router list is changed from
        router (Name) (IP address) (Ports)
to
        router (Name) (Onion address) (Ports) (TLD)

This is to prevent easy blocking of known Tor routers.
It is of course still possible to block routers, since the target 
sees the IP adress of the last router.
The last entry is the top level domain of the country or region 
(not .edu, .gov, .org or similar) where the router is located.            

The reason to include the TLD is that it gives the user the option 
of selecting exit and entry nodes based on the physical location and 
also the possibility of choosing an region or country which should never
be used to route traffic through. Since the user trusts the routers 
to tunnel traffic, it's reasonable to trust the administrator to enter the
correct TLD.

/Thomas
-- 
== Encrypted e-mails preferred | GPG KeyID: 114AA85C
--
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 481 bytes
Desc: Digital signature
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20040913/a57d2f05/attachment.pgp>


More information about the tor-talk mailing list