[tor-talk] Blocking STUN Requests at Firewall?

Bill Berry bill at techwang.com
Sun Feb 8 17:28:12 UTC 2015


In case anyone is interested I managed to block STUN requests using an 
application level firewall on the router. Probably not 100%, but 
definitely an improvement...

On 08/02/15 12:00, Bill Berry wrote:
> Hi all,
>
> I've setup a Tor transparent proxy, as per the instructions here 
> https://trac.torproject.org/projects/tor/wiki/doc/TransparentProxy 
> (I'm aware of the security risks of not using the Tor Browser)
>
> It's working well except it is vulnerable to STUN requests (as per 
> http://ipleak.net/). Does anyone have experience of blocking these 
> requests? Based on the spec they can be TCP or UDP, so just blocking 
> non DNS UDP doesn't seem to help. Maybe it could be achieved using 
> DPI? Not much info on the net.
>
> Thanks,
>
> Bill
>
>

-- 
--
High quality Shiba Inu at the right price! Quality dogs for over 15 years!



More information about the tor-talk mailing list