[tor-bugs] #18142 [Tor]: Anti-Automated-Scanning: Support "marking" with iptables TCP connections differently "for each circuits"

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Jan 25 08:39:19 UTC 2016


#18142: Anti-Automated-Scanning: Support "marking" with iptables TCP connections
differently "for each circuits"
-------------------------+---------------------
 Reporter:  naif         |          Owner:
     Type:  enhancement  |         Status:  new
 Priority:  Medium       |      Milestone:
Component:  Tor          |        Version:
 Severity:  Normal       |     Resolution:
 Keywords:               |  Actual Points:
Parent ID:               |         Points:
  Sponsor:               |
-------------------------+---------------------

Comment (by cypherpunks):

 This feature probably has very limited value. It's trivial for any scanner
 to simply use more circuits. Many targets likely have some anti-scanning
 defenses anyway, so scanners need to distribute scanning in the first
 place.

 Is there any evidence that this would be useful?

 This feature will expose Tor state to the rest of the system and enable
 new and easier ways for attackers with system access to perform circuit
 tracking.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18142#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list