another DirPort DoS attacker

Dominik Schaefer schaedpq2 at gmx.de
Wed Sep 3 12:11:36 UTC 2008


John Brooks schrieb:
> This definitely needs some limits added (why would one IP ever need
> more than a couple directory connections to one location?)
NAT - Network Address Translation - comes to mind. It is also possible
to run multiple Tor instances on one multi-user machine. The requests
in both cases are completely legitimate, especially in case of
high-bandwidth mirrors or relays.
That probably won't produce hundreds of simultaneous connections, but
be careful with limiting conns/IP.

Regards,
Dominik



More information about the tor-talk mailing list