[tor-bugs] #2765 [Tor Client]: Wrong source port for dns replies when query is sent to an alias interface

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Wed Mar 16 04:56:10 UTC 2011


#2765: Wrong source port for dns replies when query is sent to an alias interface
---------------------------+------------------------------------------------
    Reporter:  soma        |       Owner:                          
        Type:  defect      |      Status:  closed                  
    Priority:  normal      |   Milestone:  Tor: 0.2.2.x-final      
   Component:  Tor Client  |     Version:  Tor: 0.2.2.22-alpha     
  Resolution:  invalid     |    Keywords:  alias dns dnsport source
      Parent:              |      Points:                          
Actualpoints:              |  
---------------------------+------------------------------------------------
Changes (by rransom):

  * status:  new => closed
  * resolution:  => invalid


Comment:

 That's a problem with your iptables configuration, not with Tor.  Even if
 Tor could know that your DNS client will only accept a reply from port 53,
 Tor has no way to send a reply from that port.

 Set your `DNSPort` to 53, start Tor as root, and use the `User` torrc
 option to make Tor drop privileges after it has opened the sockets it
 needs.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/2765#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list