[tor-talk] HS again: Portscan?

thomas.hluchnik at netcologne.de thomas.hluchnik at netcologne.de
Mon Aug 11 17:43:34 UTC 2014


Hello everybody,

have a question. These days, there were discussions about scanning the TOR universum for hidden server which would mean 2^80 possible hidden server. So lets assume they try one specific HS which is existing. How can they determine it's existence? I would guess by trying port 80 and maybe port 443. But what if the HS owner decides to run his service over port 389 for example? For clarification, that's what I mean:

HidenServicePort 389 127.0.0.1:80

This would require using URL with http://$onion.onion:389/

Does this help making a HS more invisible? Would this require a surveiller scanning not only all 2^80 onions but also all 2^16 possible ports?

Regards

Thomas


More information about the tor-talk mailing list