securing remote access to privoxy with OpenVPN

Thomas Sjögren thomas at northernsecurity.net
Fri Jun 3 15:45:25 UTC 2005


On Fri, Jun 03, 2005 at 05:35:41PM +0200, Eugen Leitl wrote:
> 
> I'm running a tor/privoxy combo on a remote colo box. Privoxy is bound to 0.0.0.0,
> so I (and anybody else) can use it from random locations.
> 
> I'd like to use OpenVPN to secure my entire traffic to privoxy, while leaving
> privoxy open to other people. Is there a way to make it listen to a set of
> addresses (default 10.x.x.x for the TUN/TAP, and fallback for 0.0.0.0 for 
> the rest of them)?

If you dont set a listen-address Privoxy should bind to all interfaces,
including the TUN/TAP

> Barring that, can I run tor on home network, and make it first hop mandatory
> to the colo box? (And if I can, how do I configure that?).

Have a look at EntryNodes and StrictEntryNodes in the man file.

/Thomas
-- 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 481 bytes
Desc: Digital signature
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20050603/2de3f807/attachment.pgp>


More information about the tor-talk mailing list