[tor-bugs] #17990 [Tor]: torrc default config ORPort should be changed to 443 from 9001

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Jan 4 07:30:03 UTC 2016


#17990: torrc default config ORPort should be changed to 443 from 9001
--------------------+------------------------------------
 Reporter:  tomnux  |          Owner:
     Type:  defect  |         Status:  new
 Priority:  Medium  |      Milestone:  Tor: 0.2.8.x-final
Component:  Tor     |        Version:
 Severity:  Normal  |     Resolution:
 Keywords:          |  Actual Points:
Parent ID:          |         Points:
  Sponsor:          |
--------------------+------------------------------------
Changes (by teor):

 * version:  Tor: unspecified =>
 * milestone:  Tor: unspecified => Tor: 0.2.8.x-final


Comment:

 Some general comments:

 Any ISP that wants to know if someone is using tor can check if they
 connect to IP addresses on publicly available lists of tor relays.
 Changing the port doesn't help with that.

 Many relays already run on 443, and users can set FascistFirewall if they
 only want to use them. But we don't recommend this as a way to achieve
 privacy. Instead, users who are concerned about their privacy can use
 bridges and pluggable transports to hide that they are using tor
 altogether.

 Diversity is good for the tor network, because it helps us work around
 simplistic censorship rules, like "block 443" or "block 9001". I'm not
 convinced that changing the default config (or the defaults in the tor
 codebase) is the best way to achieve diversity. Instead, asking relay
 operators to switch ORPorts could be more helpful.

 Operators really should not set up relays in a hurry. High-bandwidth
 relays typically aren't set up in a hurry, it takes time, effort, and
 money to operate a relay.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17990#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list