[tor-relays] bridge down

Anonforpeace anonforpeace at protonmail.com
Tue Oct 18 23:12:37 UTC 2022


I have set the static NAT and forwarded the port.  Here is what I get.  I've hidden my IP for obvious reasons.
Oct 18 19:04:51 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441419.629454] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=36.155.109.220 DST=192.168.1.171 LEN=60 TOS=0x04 PREC=0x00 TTL=42 ID=20279 DF PROTO=TCP SPT=41190 DPT=6379 WINDOW=29200 RES=0x00 SYN URGP=0 
Oct 18 19:04:55 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441423.887061] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=5.8.18.30 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=50889 PROTO=TCP SPT=53094 DPT=3629 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:05:28 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441456.454702] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=62.233.50.217 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=237 ID=51669 PROTO=TCP SPT=50240 DPT=6868 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:05:45 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441474.158797] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=167.94.138.135 DST=192.168.1.171 LEN=44 TOS=0x00 PREC=0x00 TTL=40 ID=7261 PROTO=TCP SPT=16092 DPT=9172 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:05:58 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441487.310284] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=113.221.37.58 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=54 ID=15518 PROTO=TCP SPT=34678 DPT=23 WINDOW=41814 RES=0x00 SYN URGP=0 
Oct 18 19:06:23 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441512.201129] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=104.219.251.172 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=40996 PROTO=TCP SPT=52636 DPT=50871 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:06:28 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[73719]: Your server has not managed to confirm reachability for its ORPort(s) at x.x.x.x:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Please check your firewalls, ports, address, /etc/hosts file, etc.
Oct 18 19:06:47 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441535.989255] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=167.94.146.71 DST=192.168.1.171 LEN=44 TOS=0x00 PREC=0x00 TTL=41 ID=21447 PROTO=TCP SPT=1753 DPT=80 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:06:56 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441544.747086] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=180.107.144.245 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=54 ID=58967 PROTO=TCP SPT=17671 DPT=23 WINDOW=22295 RES=0x00 SYN URGP=0 
Oct 18 19:07:24 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441572.871562] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=182.139.135.66 DST=192.168.1.171 LEN=44 TOS=0x00 PREC=0x00 TTL=51 ID=56053 DF PROTO=TCP SPT=24487 DPT=6379 WINDOW=43690 RES=0x00 SYN URGP=0 
Oct 18 19:07:37 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441585.389512] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=91.191.209.210 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=55705 PROTO=TCP SPT=53674 DPT=1111 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:07:54 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441602.939222] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=5.8.18.77 DST=192.168.1.171 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=34142 PROTO=TCP SPT=54102 DPT=14589 WINDOW=1024 RES=0x00 SYN URGP=0 
Oct 18 19:08:19 darkhoodie-HP-Compaq-Pro-6300-SFF kernel: [441627.850686] [UFW BLOCK] IN=eno1 OUT= MAC=24:be:05:0e:ef:2c:78:67:0e:6c:43:68:08:00 SRC=139.59.16.136 DST=192.168.1.171 LE




Sent with Proton Mail secure email.

------- Original Message -------
On Monday, October 17th, 2022 at 5:03 AM, trinity pointard <trinity.pointard at gmail.com> wrote:


> Hi,
> 
> Bridges are usually not impacted by network-wide DoS as they are not
> as public as any other node.
> Your node thinks it's unreachable. Have you confirmed the IP it uses
> is not hard-coded in your torrc to be your former IP. Have you
> configured your router NAT correctly?
> Lastly, is it possible that after moving, you no longer have an entire
> public IP, but are now behind CG-NAT
> (https://en.wikipedia.org/wiki/Carrier-grade_NAT) ?
> 
> Regards,
> 
> Le lun. 17 oct. 2022 à 08:46, Anonforpeace via tor-relays
> tor-relays at lists.torproject.org a écrit :
> 
> > Hello:
> > 
> > My Tor Bridge has been down for awhile as I was moving to a new home. I have been trying to bring it up again and have been receiving the messages you see below. I have checked the the tor project status and see that there is a Ddos attack affecting the network. Is that why I am getting this or am I doing something wrong? Thank you.
> > 
> > darkhoodie at darkhoodie-HP-Compaq-Pro-6300-SFF:~$ sudo systemctl enable --now tor.service
> > Synchronizing state of tor.service with SysV service script with /lib/systemd/systemd-sysv-install.
> > Executing: /lib/systemd/systemd-sysv-install enable tor
> > darkhoodie at darkhoodie-HP-Compaq-Pro-6300-SFF:~$ sudo systemctl restart tor.service
> > darkhoodie at darkhoodie-HP-Compaq-Pro-6300-SFF:~$ journalctl -e -u tor at default
> > Oct 16 00:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 00:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 01:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 01:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [59 similar message(s) suppressed in last 3540 >
> > Oct 16 01:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 01:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 02:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 02:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 02:14:16 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: No circuits are opened. Relaxed timeout for circuit 875 (a Testing circuit 3-hop circuit in state doing handshakes with channel state open) to 60000ms. However, it appears the>
> > Oct 16 02:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 02:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 03:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 03:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 03:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 03:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 04:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Heartbeat: Tor's uptime is 1 day 12:00 hours, with 0 circuits open. I've sent 6.47 MB and received 36.85 MB. I've received 0 connections on IPv4 and 0 on IPv6. I've made 161 c>
> > Oct 16 04:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: While not bootstrapping, fetched this many bytes: 28998071 (server descriptor fetch); 2431916 (consensus network-status fetch); 310310 (microdescriptor fetch)
> > Oct 16 04:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Heartbeat: Since last heartbeat message, I have seen 0 unique clients.
> > Oct 16 04:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 04:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [59 similar message(s) suppressed in last 3540 >
> > Oct 16 04:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 04:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 05:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 05:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 05:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 05:24:16 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: No circuits are opened. Relaxed timeout for circuit 920 (a Testing circuit 3-hop circuit in state doing handshakes with channel state open) to 60000ms. However, it appears the>
> > Oct 16 05:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 06:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 06:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 06:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 06:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 07:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 07:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [59 similar message(s) suppressed in last 3540 >
> > Oct 16 07:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 07:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 08:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 08:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 08:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 08:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 09:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 09:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 09:02:21 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your network connection speed appears to have changed. Resetting timeout to 60000ms after 18 timeouts and 103 buildtimes.
> > Oct 16 09:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 09:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 10:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Heartbeat: Tor's uptime is 1 day 18:00 hours, with 0 circuits open. I've sent 7.75 MB and received 43.92 MB. I've received 0 connections on IPv4 and 0 on IPv6. I've made 188 c>
> > Oct 16 10:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: While not bootstrapping, fetched this many bytes: 34600394 (server descriptor fetch); 2858305 (consensus network-status fetch); 361968 (microdescriptor fetch)
> > Oct 16 10:00:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Heartbeat: Since last heartbeat message, I have seen 0 unique clients.
> > Oct 16 10:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 10:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [59 similar message(s) suppressed in last 3540 >
> > Oct 16 10:20:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 10:40:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 11:00:14 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Your server has not managed to confirm reachability for its ORPort(s) at 100.2.224.20:443. Relays do not publish descriptors until their ORPort and DirPort are reachable. Plea>
> > Oct 16 11:00:15 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Unable to find IPv6 address for ORPort 443. You might want to specify IPv4Only to it or set an explicit address or set Address. [60 similar message(s) suppressed in last 3540 >
> > Oct 16 11:05:13 darkhoodie-HP-Compaq-Pro-6300-SFF systemd[1]: Stopping Anonymizing overlay network for TCP...
> > Oct 16 11:05:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Interrupt: we have stopped accepting new connections, and will shut down in 30 seconds. Interrupt again to exit now.
> > Oct 16 11:05:13 darkhoodie-HP-Compaq-Pro-6300-SFF Tor[16182]: Delaying directory fetches: We are hibernating or shutting down.
> > 
> > Sent with Proton Mail secure email.
> > 
> > _______________________________________________
> > tor-relays mailing list
> > tor-relays at lists.torproject.org
> > https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays
> 
> _______________________________________________
> tor-relays mailing list
> tor-relays at lists.torproject.org
> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


More information about the tor-relays mailing list