[metrics-team] Exit relays' DNS resolvers over time

Philipp Winter phw at nymity.ch
Wed Jul 27 18:43:41 UTC 2016


On Tue, Feb 23, 2016 at 11:55:36PM +0000, nusenu wrote:
> Philipp Winter:
> > I've been using exitmap to enumerate what DNS resolvers are used by exit
> > relays over time.  The idea is simple: I resolve an exit relay-specific
> > domain under my control over all exit relays, and then look out for
> > incoming DNS requests from my authoritative DNS server.  That allows me
> > to map an exit relay to the IP address of a DNS resolver.  Here is a
> > diagram that visualises preliminary results that cover several months:
> > <https://nymity.ch/dns-traffic-correlation/img/top-exit-resolvers.png>
> 
> Interesting (as usual), thanks!
> 
> Can we also find a csv with the exit->dns server mapping somewhere?

My apologies for taking so long, but I finally uploaded the dataset:
<https://nymity.ch/dns-traffic-correlation/data/tor-dns-pcaps.tar.xz>

The tarball contains a README that should have all necessary
instructions to analyse the data.  If anything is unclear, please let me
know, and I will improve the documentation.


More information about the metrics-team mailing list