[tor-relays] Exit policy reject fails

Josef 'veloc1ty' Stautner hello at veloc1ty.de
Tue Oct 20 12:17:17 UTC 2015


Hi @all,

so I reviewed my whole ExitPolicy statements and now I understand the
probleme: The first rule match wins. And because traffic to port 80 was
accepted for every source the reject rule for the subnet was ignored.
Thanks for the hint!

~Josef

Am 19.10.2015 um 23:43 schrieb teor:
>> On 20 Oct 2015, at 08:21, spiros_spiros at freemail.gr wrote:
>>
>>
>> Hi Josef, 
>> ...
>>
>> Also, I don't know if this make any difference at all, but I also put port in my torrc like this :
>>
>> ExitPolicy reject 195.113.0.0/16:* #comment here
> An IP address/mask with no port specifier is treated as "all ports" anyway, so your suggestion is equivalent to the original line.
>
> Tim
> _______________________________________________
> tor-relays mailing list
> tor-relays at lists.torproject.org
> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.torproject.org/pipermail/tor-relays/attachments/20151020/ae9d58c7/attachment.sig>


More information about the tor-relays mailing list