[tor-dev] Restricting SOCKS access now and later (was Re: Proposal 351: Making SOCKS5 authentication extensions extensible)

2024-09-11 Thread Nick Mathewson
On Wed, Sep 11, 2024 at 7:02 AM Michael Rogers wrote: > > Hi Nick, > > It would be useful to have a way of controlling access to the SOCKS port > so that untrusted applications running on the same device as a Tor > client can't use the Tor client's SOCKS proxy. This is something that > people audi

Re: [tor-dev] Proposal 351: Making SOCKS5 authentication extensions extensible

2024-09-11 Thread Michael Rogers
Hi Nick, It would be useful to have a way of controlling access to the SOCKS port so that untrusted applications running on the same device as a Tor client can't use the Tor client's SOCKS proxy. This is something that people auditing Briar have raised as a security concern. Unix sockets are