[tor-relays] preventing DDoS is more than just network filtering

Toralf Förster toralf.foerster at gmx.de
Mon Nov 7 12:14:27 UTC 2022


The graphs in [1] and [2] are IMO good examples related to [3]:

	"... in addition to network filtering, the (currently) sharp input 
signal ... is transformed into a smeared output response ... This shall 
make it harder for an attacker to gather infromation using time 
correlation techniques."

Feedback is welcome.


[1] https://github.com/toralf/torutils/blob/main/doc/network-metric.svg
[2] 
https://github.com/toralf/torutils/blob/main/doc/network-metric-nextday.svg
[3] https://github.com/toralf/torutils/tree/main#block-ddos-traffic

-- 
Toralf
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 236 bytes
Desc: OpenPGP digital signature
URL: <http://lists.torproject.org/pipermail/tor-relays/attachments/20221107/0f232d1f/attachment.sig>


More information about the tor-relays mailing list