[tor-relays] Lots of tor relays send out sequential IP IDs; please fix that!

Jann Horn jann at thejh.net
Mon Mar 31 23:43:59 UTC 2014


On Mon, Mar 31, 2014 at 06:25:46PM -0400, Tor Relay wrote:
> Could you please translate your instructions into XP that I might
> check and, if necessary, fix my relay?  (OnionTorte)

If you don't have hping, you could also e.g. start a capture in wireshark or
so, then connect to your host with telnet and send it some garbage. Like this:

$ telnet 74.104.160.171 443
Trying 74.104.160.171...
Connected to 74.104.160.171.
Escape character is '^]'.
a
a
a
a
Connection closed by foreign host.

Then apply the filter "ip.src==74.104.160.171&&tcp" (replace with
the values of your relay) in Wireshark and look at
"Internet Protocol -> Identification" for the packets wireshark captured.

Btw, it looks like your relay is affected.


I do not know of any way to disable this behavior on Windows machines, but I'm
also not very familiar with Windows.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.torproject.org/pipermail/tor-relays/attachments/20140401/8919868f/attachment.sig>


More information about the tor-relays mailing list