[tor-relays] Filtering TOR Non-exit Relay - Just Curious

Nelson nelson at net2wireless.net
Mon Oct 28 15:09:35 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello!

Konrad, initially and completely unrelated to Tor, I was working on
adding some blocklists to my firewall when I came upon and old
program, Peerblock. Peerblock from what I remember can log all allowed
and blocked traffic, and gives one the ability to use already made
blocklists or create new ones. Peerblock has some interesting
blocklists and I thought maybe I could use some of those blocklists or
some of the listed IP's to filter warez, P2P and other undesirable sites.

Tor (middle) Relays don't have the filtering options like Exit Relays.
With Exit Relays one can choose the type of traffic based on personal
and legal reasons, then I thought why don't middle relays at least
have some mechanism to block undesirable traffic?

So I installed Peerblock on one of my Windows PC's that has a Tor
Relay (HelloChilli). Initially Peerblock was set to allow all traffic
and to my surprise I could see what seemed to be Tor traffic being
logged. Then I activated some blocklists and sure enough I was
apparently able to block traffic from undesirable sources. Further, I
can right click, copy to clipboard the ip addresses of the blocked
ip's, do an NSLOOKUP  and generally discern whether the ip address is
from a listed Tor relay, a VPN service, from Anti-P2P, Gov or other
sources.

My initial curiosity about viewing real-time Tor traffic and the
ability to block specific traffic on my middle-node seemed to be achieved.

- --Nelson
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
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=9Wbi
-----END PGP SIGNATURE-----


More information about the tor-relays mailing list