[tor-relays] Problems with Debian package and low ports (Chris Baines)

Christian brightsidedarkside at t-online.de
Thu Feb 14 03:06:20 UTC 2013


Good night Chris,

I hope I don't misunderstand your issue, but if you use hibernation, you
use a kind of desktop setup, aren't you?

If port forwarding running a firewall and tor on the same machine
(that's hibernating) behind a normal router looks tricky by means to
verify the config, see my suggestion.

If my assumption is correct, you have to set port forwarding in your
router, say port 443 to 9090, and then use the torrc file to let tor
listen on port 9090, but to advertise port 443.
This makes tor bind to a higher port than 1024 and thus not needing root
privileges if you run tor as the default user debian-tor, but lets your
machine be available on port 443 although hibernating might be a bad
idea for a tor node. ;-)
If you use a home ISP with small bandwidth, maybe you'd better be a
bridge (sufficient uptime also appreciated).

I hope this could help.

Sincerly,

christian

Am Mittwoch, den 13.02.2013, 19:35 +0000 schrieb
tor-relays-request at lists.torproject.org:
> Send tor-relays mailing list submissions to
> 	tor-relays at lists.torproject.org
> 
> To subscribe or unsubscribe via the World Wide Web, visit
> 	https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays
> or, via email, send a message with subject or body 'help' to
> 	tor-relays-request at lists.torproject.org
> 
> You can reach the person managing the list at
> 	tor-relays-owner at lists.torproject.org
> 
> When replying, please edit your Subject line so it is more specific
> than "Re: Contents of tor-relays digest..."
> 
> 
> Today's Topics:
> 
>    1. Problems with Debian package and low ports (Chris Baines)
>    2. Re: Problems with Debian package and low ports (Wessel Nieboer)
>    3. Re: Problems with Debian package and low ports (Nils Vogels)
>    4. Re: Problems with Debian package and low ports (theo at caber.nl)
>    5. Re: Problems with Debian package and low ports (Roman Mamedov)
>    6. Re: Problems with Debian package and low ports
>       (Christopher Baines)
>    7. Re: Problems with Debian package and low ports
>       (Christopher Baines)
>    8. Re: Problems with Debian package and low ports (Roger Dingledine)
> 
> 
> ----------------------------------------------------------------------
> 
> Message: 1
> Date: Wed, 13 Feb 2013 16:41:54 +0000
> From: Chris Baines <cbaines8 at gmail.com>
> To: tor-relays <tor-relays at lists.torproject.org>
> Subject: [tor-relays] Problems with Debian package and low ports
> Message-ID:
> 	<CAGGGvRs=FYNeKX9_7Ymyn1k2r1xPL1qv11BDGVABgmyDMqA9ZQ at mail.gmail.com>
> Content-Type: text/plain; charset=ISO-8859-1
> 
> I am having some problems with tor (version 0.2.3.25-1), I get
> warnings when it resumes form hibernation:
> Feb 11 00:00:00.000 [warn] Could not bind to 0.0.0.0:80: Permission denied
> Feb 11 00:00:00.000 [notice] Opening OR listener on 0.0.0.0:443
> 
> Can anyone help?
> 
> 
> ------------------------------
> 
> Message: 2
> Date: Wed, 13 Feb 2013 17:44:02 +0100
> From: Wessel Nieboer <weebl at weebl.me>
> To: tor-relays at lists.torproject.org
> Subject: Re: [tor-relays] Problems with Debian package and low ports
> Message-ID: <511BC2D2.40507 at weebl.me>
> Content-Type: text/plain; charset=ISO-8859-1; format=flowed
> 
> Op 13-2-2013 17:41, Chris Baines schreef:
> > I am having some problems with tor (version 0.2.3.25-1), I get
> > warnings when it resumes form hibernation:
> > Feb 11 00:00:00.000 [warn] Could not bind to 0.0.0.0:80: Permission denied
> > Feb 11 00:00:00.000 [notice] Opening OR listener on 0.0.0.0:443
> >
> > Can anyone help?
> > _______________________________________________
> > tor-relays mailing list
> > tor-relays at lists.torproject.org
> > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays
> Does it work when you've just booted your computer?
> 
> -Wessel
> 
> 
> ------------------------------
> 
> Message: 3
> Date: Wed, 13 Feb 2013 18:07:53 +0100
> From: Nils Vogels <bacardicoke at gmail.com>
> To: tor-relays at lists.torproject.org
> Subject: Re: [tor-relays] Problems with Debian package and low ports
> Message-ID:
> 	<CAEM+PCU-0xVPEA+H2cMBZCeTgJwhAcWqG7N2Ve567t_sbdrGEw at mail.gmail.com>
> Content-Type: text/plain; charset="iso-8859-1"
> 
> Tor has already changed to a non-privileged user, but you are trying to
> bind on ports that only root is allowed to bind on.
> 
> Two solutions:
> 
> 1) Run tor as root (really, a bad idea)
> 2) Bind to other ports than 80 and 443. Since you are resuming, you are
> unlikely to be a stable relay/exit/bridge anyway, so you can basically
> choose any port you want and just use it for your own traffic only.
> 
> On Wed, Feb 13, 2013 at 5:41 PM, Chris Baines <cbaines8 at gmail.com> wrote:
> 
> > I am having some problems with tor (version 0.2.3.25-1), I get
> > warnings when it resumes form hibernation:
> > Feb 11 00:00:00.000 [warn] Could not bind to 0.0.0.0:80: Permission denied
> > Feb 11 00:00:00.000 [notice] Opening OR listener on 0.0.0.0:443
> >
> > Can anyone help?
> > _______________________________________________
> > tor-relays mailing list
> > tor-relays at lists.torproject.org
> > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays
> >
> 
> 
> 
> -- 
> Simple guidelines to happiness:
> Work like you don't need the money,
> Love like your heart has never been broken and
> Dance like no one can see you.
> -------------- next part --------------
> An HTML attachment was scrubbed...
> URL: <http://lists.torproject.org/pipermail/tor-relays/attachments/20130213/ff001cf1/attachment-0001.html>
> 
> ------------------------------
> 
> Message: 4
> Date: Wed, 13 Feb 2013 17:51:19 +0100
> From: theo at caber.nl
> To: <tor-relays at lists.torproject.org>
> Subject: Re: [tor-relays] Problems with Debian package and low ports
> Message-ID: <4ceb6f9ac3b40b357c8d45a751ea1567 at caber.nl>
> Content-Type: text/plain; charset=UTF-8; format=flowed
> 
> Hi Chris,
> 
> This is docemented in
> https://trac.torproject.org/projects/tor/wiki/doc/TorFAQ#HowcanImakemyrelayaccessibletopeoplestuckbehindrestrictivefirewalls
> 
> I hope those instructions will help you.
> 
> Chris Baines schreef op 2013-02-13 17:41:
> > I am having some problems with tor (version 0.2.3.25-1), I get
> > warnings when it resumes form hibernation:
> > Feb 11 00:00:00.000 [warn] Could not bind to 0.0.0.0:80: Permission 
> > denied
> > Feb 11 00:00:00.000 [notice] Opening OR listener on 0.0.0.0:443
> >
> > Can anyone help?
> > _______________________________________________
> > tor-relays mailing list
> > tor-relays at lists.torproject.org
> > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays
> 
> 
> ------------------------------
> 
> Message: 5
> Date: Wed, 13 Feb 2013 23:13:11 +0600
> From: Roman Mamedov <rm at romanrm.ru>
> To: tor-relays at lists.torproject.org
> Subject: Re: [tor-relays] Problems with Debian package and low ports
> Message-ID: <20130213231311.1d868bd5 at natsu>
> Content-Type: text/plain; charset="us-ascii"
> 
> On Wed, 13 Feb 2013 18:07:53 +0100
> Nils Vogels <bacardicoke at gmail.com> wrote:
> 
> > Tor has already changed to a non-privileged user, but you are trying to
> > bind on ports that only root is allowed to bind on.
> > 
> > Two solutions:
> > 
> > 1) Run tor as root (really, a bad idea)
> > 2) Bind to other ports than 80 and 443. Since you are resuming, you are
> > unlikely to be a stable relay/exit/bridge anyway, so you can basically
> > choose any port you want and just use it for your own traffic only.
> 
> 3) or just do not Hibernate. Use RelayBandwidthRate to limit your bandwidth
> utilization instead.
> 




More information about the tor-relays mailing list