Re: [tor-relays] Why MyFamily?

2020-02-23 Thread Michael Gerstacker
I just found out that i can have more than one MyFamily line specified in
the torrc.

nusenu could you please check with your tool that everything is correct now?


Greatz
Michael
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


Re: [tor-relays] Why MyFamily?

2020-02-23 Thread Michael Gerstacker
Am So., 23. Feb. 2020 um 11:51 Uhr schrieb Moritz Bartl <
mor...@torservers.net>:

> On 22.02.20 15:51, Michael Gerstacker wrote:
> > I am the operator of my relays so if i for whatever reason decide to not
> > publish that i run a bigger family then this should be my own decision.>
> > If the torproject needs these information urgently they need to force it
> > for example with a relay registration or should find a better soultion
> > which is not depending on a trust level.
>
> I am sorry, but this is an ignorant perspective. Even though the Tor
> network has no means to force it on to you, you really should configure
> your nodes correctly. This includes a correct MyFamily statement, even
> if it means more work. If you don't want to do that work, then you
> should ask yourself why you contribute relays in the first place. Do you
> really want to do it to weaken the network? Probably not. It is really
> not that much effort to synchronize the statement, even with a large
> number of relays and without willingness to work with "configuration
> management" tools. It took me only a few minutes to put together a bash
> script that logs in, grabs fingerprints, assembles them to a unified
> MyFamily statement, and pushes the updated line to all relays again. [1]
>

Not going with the stream is an ignorant perspective most of the time.
The reason why i run relays is because in my opinion tor is doing exactly
that.

You want my IP address? NO!
We rather build a big non-profit organization, find developers, search
donations, encourage people all over the world to run relays, resist
against all governmental censorship tries and do everything we can because
we believe our IP address is ours.

This is ignorance at its finest and thats one of the reasons why i run
relays.


> On a more general level, do you really want to argue than any rule or
> law that is not enforceable is completely pointless in society?
>

No, no that was not what i meant.

I just didnt understood why i should set MyFamily and brought up my
personal points against it so that hopefully someone can explain me why
other points are more important than mine.
teor explained me that with words i understood so for the future i will set
MyFamily correctly now.


> You seem to think MyFamily is not that relevant because its correct
> configuration relies on the same operator that you need to trust not to
> perform end-to-end correlation in the first place. This is only a minor
> aspect. As an operator, you and your infrastructure becomes a potential
> target. By not configuring MyFamily correctly, you invite attackers, and
> make their lives easier. I can pown you, steal your keys, exploit a
> weakness in your configuration, get a court to give me a wiretapping
> order for a single individual much easier than for many, etc etc, all
> much more interesting if I _know_ that you are a careless operator that
> does not configure their relays correctly. You should make your relays
> less interesting, also for others, not only for yourself.
>
> Cheers, and thanks for trying to run relays in a good fashion :)
>

If my words sounded ignorant or rude or egoistic that was not my intention.
I just wanted to understand why i should waste energy to do steps which i
dont understand.
Now i understand them and i will go with the stream and set MyFamily
correctly today.

Thank you all for that interesting conversation
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


[tor-relays] Tor end-of-life pre-removal notification (tor 0.2.9.x, 0.4.0.x) - please upgrade

2020-02-23 Thread nusenu
Tor developers are preparing the removal of outdated Tor relays from the network
https://trac.torproject.org/projects/tor/ticket/32672

If you are one of the affected operators (listed bellow), please upgrade to a 
supported tor release
to protect yourself and the entire network from attacks exploiting older tor 
versions.

https://trac.torproject.org/projects/tor/wiki/org/teams/NetworkTeam/CoreTorReleases#Current

The first 8 entries in the table bellow are in BCC of this email.

++---+--+-+
| contactInfo| 
versions  | cwfr | #relays |
++---+--+-+
| thomasp...@hotmail.com | 
0.2.9.17  |0.439104580848948 |  79 |
| Gijs Rijnders (tor AT ip-eend DOT nl)  | 
0.4.0.5   |   0.3492794116027653 |   3 |
|| 
0.2.9.16  |  0.14948582975193858 |   1 |
| t...@govanify.com   | 
0.4.0.5   |  0.10492756264284253 |   1 |
| s...@hijnn.net | 
0.4.0.5   |  0.09774074424058199 |   1 |
| email: torc...@gmx.net | 
0.4.0.6   |  0.09342864505015314 |   1 |
|  jannisd...@eclipso.eu | 
0.4.0.5   |  0.08911655750125647 |   1 |
| foore...@hotmail.com   | 
0.2.9.17  | 0.08376956320717 |  10 |
| help keep me running 1M2wWAB71wvaKwcGvBAGZin6PKKeYZVAcN stevecraft2@ya | 
0.4.0.6   |  0.08049237076193094 |   1 |
| KeFF NOC  | 
0.4.0.5   |  0.08049237076193094 |   1 |
| Tor Reactor  <0d0[AT]protonmail.com> | u42omsvzmh7momdk.onion | BTC:13 | 
0.4.0.5   |  0.07761764572933316 |   1 |
| t...@moletrix.be| 
0.4.0.5   |  0.07459917978849262 |   2 |
| t...@texthtml.net   | 
0.4.0.5   |   0.0733055523596704 |   1 |
| zwiebelring...@trashmail.com   | 
0.4.0.5   |  0.06899346481077373 |   1 |
| t...@example.org   | 
0.4.0.5   |  0.06728300072609272 |   4 |
| JASON jasonenquir...@airmail.cc| 
0.4.0.6   |  0.06381895509548485 |   1 |
| 1Jwjq2AGPua8urdfZXtSbEQCKBQWF34qew  ronstorabuse[a]protonmail-ch   | 
0.4.0.5   |  0.06324400892481208 |   1 |
| ab...@maytownsend.is < abuse AT maytownsend dot is>| 
0.4.0.5   |  0.06324400892481208 |   1 |
| fredreic(at)tutanota(dot)com   | 
0.4.0.6   |   0.0626690627541393 |   1 |
| jorge| 
0.4.0.6   | 0.055338506354019046 |   1 |
| Random Person   | 
0.2.9.10,0.4.0.5  |  0.05462988518729617 |   4 |
| tor-ato...@protonmail.com  | 
0.4.0.5   |  0.05145762697793543 |   1 |
| mail[at]nozel[.]org| 
0.4.0.5   |  0.05030773172620684 |   2 |
| william.san...@hotmail.co.uk   | 
0.4.0.5   |  0.04843916103709489 |   1 |
| Theo Thomann - t_thomann1...@gmx.de| 
0.4.0.5   |  0.04599564126692712 |   1 |
| n0sig...@n0sign4l.org  | 
0.2.9.16  |  0.04455827875062823 |   1 |
| Dave Null   | 
0.2.9.17  | 0.043192781595280394 |   4 |
| epstor (at) protonmail (dot) com   | 
0.4.0.6   |   0.0431209133239463 |   1 |
| Network Operations| 
0.4.0.2-alpha | 0.042114758980460465 |   1 |
| torpids AT yahoo dot com - 1JYHfzVFVD7n2Sezz3DEHDFgGYjQWpDjqF  | 
0.4.0.5   |  0.04024618538096547 |   1 |
| tor+torro...@tzu.io| 
0.4.0.5   |  0.03607783291954547 |   1 |
| f...@tuta.io   | 
0.4.0.5   |  

Re: [tor-relays] Why MyFamily?

2020-02-23 Thread Toralf Förster
On 2/23/20 11:51 AM, Moritz Bartl wrote:
> Cheers, and thanks for trying to run relays in a good fashion :)
> 
> Moritz
(y)

-- 
Toralf



signature.asc
Description: OpenPGP digital signature
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


Re: [tor-relays] Why MyFamily?

2020-02-23 Thread Moritz Bartl
On 22.02.20 15:51, Michael Gerstacker wrote:
> I am the operator of my relays so if i for whatever reason decide to not
> publish that i run a bigger family then this should be my own decision.>
> If the torproject needs these information urgently they need to force it
> for example with a relay registration or should find a better soultion
> which is not depending on a trust level.

I am sorry, but this is an ignorant perspective. Even though the Tor
network has no means to force it on to you, you really should configure
your nodes correctly. This includes a correct MyFamily statement, even
if it means more work. If you don't want to do that work, then you
should ask yourself why you contribute relays in the first place. Do you
really want to do it to weaken the network? Probably not. It is really
not that much effort to synchronize the statement, even with a large
number of relays and without willingness to work with "configuration
management" tools. It took me only a few minutes to put together a bash
script that logs in, grabs fingerprints, assembles them to a unified
MyFamily statement, and pushes the updated line to all relays again. [1]

On a more general level, do you really want to argue than any rule or
law that is not enforceable is completely pointless in society?

You seem to think MyFamily is not that relevant because its correct
configuration relies on the same operator that you need to trust not to
perform end-to-end correlation in the first place. This is only a minor
aspect. As an operator, you and your infrastructure becomes a potential
target. By not configuring MyFamily correctly, you invite attackers, and
make their lives easier. I can pown you, steal your keys, exploit a
weakness in your configuration, get a court to give me a wiretapping
order for a single individual much easier than for many, etc etc, all
much more interesting if I _know_ that you are a careless operator that
does not configure their relays correctly. You should make your relays
less interesting, also for others, not only for yourself.

Cheers, and thanks for trying to run relays in a good fashion :)

Moritz

[1] https://github.com/torservers/myfamilyupdater
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays