[tor-bugs] #15213 [Pluggable transport]: DNS tunneling transport (like iodine, dnscat)

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Mar 10 18:13:47 UTC 2015


#15213: DNS tunneling transport (like iodine, dnscat)
-------------------------+-------------------------------------------------
     Reporter:           |      Owner:  asn
  federico3              |     Status:  new
         Type:           |  Milestone:
  enhancement            |    Version:
     Priority:  normal   |   Keywords:  DNS iodine tor tunneling ideas hard
    Component:           |  Parent ID:
  Pluggable transport    |
   Resolution:           |
Actual Points:           |
       Points:           |
-------------------------+-------------------------------------------------

Comment (by yawning):

 I'm not totally sold on this being a good idea.  There's a gigantic
 mountain of research regarding detecting such things, so I don't expect it
 to have a very long shelf life, there's interesting implications of
 caching intermediary resolvers being able to enumerate bridges fairly
 easily, and the performance would be rather poor.

 http://eprints.eemcs.utwente.nl/23518/01/10.1007_978-3-642-38998-6_16.pdf
 http://arxiv.org/ftp/arxiv/papers/1004/1004.4358.pdf

 Don't let my predictions of doom and gloom discourage you from writing
 this and investigating it further, but my initial reaction is, "very well
 analyzed by adversaries, there's code out there to detect and censor this
 approach to circumvention, the implementation would be fairly complicated,
 for extremely poor performance".

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/15213#comment:3>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list