[tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread nusenu
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Pascal, what do you think of changing OpenBSD's tor rc script to require perfect process matches when sending signals to them instead of the current "kill everything that starts with..." approach? I've put tor-relays on CC so people can speak up

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread Fabian Keil
nusenu wrote: > what do you think of changing OpenBSD's tor rc script to require > perfect process matches when sending signals to them instead of the > current "kill everything that starts with..." approach? > > I've put tor-relays on CC so people can speak up if this change is not > desired or

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread nusenu
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Pascal, thanks for the fast reply. I think there is a slight misunderstanding. >> rc.subr(8) does not have multi-instance support, and it will most >> likely stay that way. Correct, and I'm _not_ trying to add that in any way to rc.subr or to

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread nusenu
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 >> what do you think of changing OpenBSD's tor rc script to require >> perfect process matches when sending signals to them instead of >> the current "kill everything that starts with..." approach? >> >> I've put tor-relays on CC so people can spea

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread nusenu
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 > Did this reply make the intentions clearer? > >> Yes, thanks. Though my first inclination would be to tell users >> "don't use rc.d if you've got the ansible role configured", I >> suppose it can't hurt to make it foolproof. I'll test your patch

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread Fabian Keil
nusenu wrote: > >> One line "patch" for /etc/rc.d/tor to address this issue: (tested > >> with and without custom daemon_flags) > >> > >> 8a9,10 > >>> pexp="${daemon}${daemon_flags:+ ${daemon_flags}}$" > >>> > > > > Did you test with custom flags like "--+Log ${tor_loglevel} file > > ${tor_log

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread teor
> Date: Tue, 23 Jun 2015 13:09:07 +0200 > From: Fabian Keil > > nusenu wrote: > >>> … >>> Did you test with custom flags like "--+Log ${tor_loglevel} file >>> ${tor_logfile}"? >> >> This should read "--Log" no? > > While I prefer using neither "--Log" nor "--+Log", the latter > is valid synta

Re: [tor-relays] OpenBSD: tor rc script: don't kill unrelated tor instances (patch)

2015-06-23 Thread Roger Dingledine
On Tue, Jun 23, 2015 at 01:09:07PM +0200, Fabian Keil wrote: > In the ElectroBSD version of the port I recently went with the > mentioned "specify all log files in the torrc" strategy ... You might also enjoy the --defaults-torrc option, which you can use for giving Tor new defaults while still le

[tor-relays] exit to youtu.be via germany gema

2015-06-23 Thread tor-server-creator
german exit for https://youtu.be/ is breaking functionality due to disunity between google and gema. since years now. anyhow german exits shouldnt block youtube ip's, now should they? ___ tor-relays mailing list tor-relays@lists.torproject.org https://l

Re: [tor-relays] exit to youtu.be via germany gema

2015-06-23 Thread Elrippo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 That would censor the user, i don't think that fits the TOR philosophy... Am 23. Juni 2015 20:00:53 MESZ, schrieb tor-server-crea...@use.startmail.com: >german exit for https://youtu.be/ is breaking functionality due to >disunity between google and

[tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread Tor Zilla
Hello All, I just bought a Raspberry Pi.. Wanted to setup as a Tor non exit relay. I have read so many instructions online on how to set it up but i am facing issues with opening ports. I am using a NetGear Router and require your inputs with the same. Also is static IP mandatory for setting u

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread CJ Barlow
What model of NetGear do you have? A static IP is not required. You may need to setup a Dynamic DNS if tor has issues with your dynamic IP. On Tue, Jun 23, 2015, 13:22 Tor Zilla wrote: > Hello All, > > I just bought a Raspberry Pi.. Wanted to setup as a Tor non exit relay. > > I have read so ma

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread Jannis Wiese
Hi TorZilla11, A dynamic IP will be no problem for Tor. What you will see (at least I do with my relay, also a Raspberry Pi [0]) is losing the HSDir flag for four days with every new IP. Cheers, Jannis [0] https://atlas.torproject.org/#details/8827944C4BDCBDAC9079803F47823403C11A9B7A

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread Tor Zilla
I am using a NetGear DGN1000 From: iamthech...@gmail.com Date: Tue, 23 Jun 2015 19:26:45 + To: tor-relays@lists.torproject.org Subject: Re: [tor-relays] Raspberry Pi - Relay Setup What model of NetGear do you have? A static IP is not required. You may need to setup a Dynamic DNS if tor has i

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread t...@bruzzzla.de
I don't know in which country you live but an exit relay with your private internet connection might bring you in legal trouble. On 06/23/2015 09:26 PM, CJ Barlow wrote: > What model of NetGear do you have? > > A static IP is not required. You may need to setup a Dynamic DNS if tor > has issues w

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread Tor Zilla
I did not say i want to setup an exit relay. I am looking forward to setup a Non-exit relay === > Date: Tue, 23 Jun 2015 21:39:01 +0200 > From: t...@bruzzzla.de > To: tor-relays@lists.torproject.org > Subject: Re: [tor-relays] Raspberry Pi - Relay Setup > > I don

Re: [tor-relays] exit to youtu.be via germany gema

2015-06-23 Thread cacahuatl
On Tue, Jun 23, 2015 at 08:00:53PM +0200, tor-server-crea...@use.startmail.com wrote: > german exit for https://youtu.be/ is breaking functionality due to disunity > between google and gema. since years now. anyhow german exits shouldnt block > youtube ip's, now should they? Can you clarify? I be

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread s7r
Just install Tor: sudo apt-get -y install tor and edit the torrc file: nano /etc/tor/torrc make it a relay by adding this content (add your values and data): ORPort Nickname ContactInfo ExitPolicy reject *:* *If you are behind NAT, make sure the ports are properly forwarded to your raspberry

[tor-relays] Qualities of a good relay (Sean Saito)

2015-06-23 Thread saitosean
I’m currently working with Dr. Virgil Griffith on Roster, a tor project that aims to reward relay operators with good relays. Right now we are brainstorming how to measure/quantify a good relay. Besides the obvious requirements of a good relay (e.g. speed, geo-diversity, constant uptime)

Re: [tor-relays] Qualities of a good relay (Sean Saito)

2015-06-23 Thread Steve Snyder
On Tuesday, June 23, 2015 9:07pm, saitos...@ymail.com said: > Besides the obvious requirements of a good relay (e.g. speed, geo-diversity, > constant uptime), what qualities make a relay valuable to the Tor network and > its > users? A quality that can't be measured: resistence to intrusion. On

Re: [tor-relays] Qualities of a good relay (Sean Saito)

2015-06-23 Thread I
...an excellent point Robert > From: swsny...@snydernet.net > Sent: Tue, 23 Jun 2015 22:09:48 -0400 (EDT) > > I worry about those relays with a heroic uptime. How is it that they > haven't needed to reboot in, say, nine months? No security updates to the > kernel or glibc in all that time? Rea

Re: [tor-relays] Raspberry Pi - Relay Setup

2015-06-23 Thread 12xBTM
Let me add to this since I have a raspberry pi 2 tor relay: First off, I run debian jessie on my pi2, but pi2 supports debian wheezy. Make sure you harden your SSH to attack. You'll want to dedicate as little ram to graphics as possible. You also want to have AvoidDiskWrites and CPUNums in you