Re: [tor-dev] Restricting SOCKS access now and later (was Re: Proposal 351: Making SOCKS5 authentication extensions extensible)

2024-09-12 Thread Roger Dingledine
On Wed, Sep 11, 2024 at 09:12:26AM -0400, Nick Mathewson wrote: > > It would be useful to have a way of controlling access to the SOCKS port > > so that untrusted applications running on the same device as a Tor > > client can't use the Tor client's SOCKS proxy. This is something that > > people au

Re: [tor-dev] Restricting SOCKS access now and later (was Re: Proposal 351: Making SOCKS5 authentication extensions extensible)

2024-09-12 Thread Nick Mathewson
On Thu, Sep 12, 2024 at 5:21 AM Michael Rogers wrote: > On 11/09/2024 14:12, Nick Mathewson wrote: > > ## An answer you probably can't use: embedding Arti > > > > Right now, you can embed Arti in any Rust app. Some folks have > > already started to write wrappers for Java and other languages. W

Re: [tor-dev] Restricting SOCKS access now and later (was Re: Proposal 351: Making SOCKS5 authentication extensions extensible)

2024-09-12 Thread Michael Rogers
Thanks so much for the thorough answer Nick. Looks like there are several potential solutions here. Responses inline below... On 11/09/2024 14:12, Nick Mathewson wrote: On Wed, Sep 11, 2024 at 7:02 AM Michael Rogers wrote: Hi Nick, It would be useful to have a way of controlling access to t