Re: [tor-relays] OpenSSL Padding oracle in AES-NI CBC MAC check (CVE-2016-2107)

2016-05-04 Thread isis
Dhalgren Tor transcribed 0.4K bytes: > https://www.openssl.org/news/secadv/20160503.txt > > In general I understand that padding oracle attacks are principally a > hazard for browser communications. Am assuming that updating OpenSSL > for this fix is not an urgent priority for a Tor Relay. > > I

Re: [tor-relays] Search warrant and house search because of an exit in DE

2016-05-04 Thread Moritz Bartl
On 05/04/2016 05:16 PM, dan wrote: > also be aware that your actions might create precedence for other relay > operators. > > I.e. if everyone would decrypt their disks when asked without legal > obligations that may have a negative effect (more pressure) on people > that are not willing to do tha

[tor-relays] OpenSSL Padding oracle in AES-NI CBC MAC check (CVE-2016-2107)

2016-05-04 Thread Dhalgren Tor
https://www.openssl.org/news/secadv/20160503.txt In general I understand that padding oracle attacks are principally a hazard for browser communications. Am assuming that updating OpenSSL for this fix is not an urgent priority for a Tor Relay. If anyone knows different please comment. __

Re: [tor-relays] Search warrant and house search because of an exit in DE

2016-05-04 Thread dan
Hi spriver and other tor exit operators, also be aware that your actions might create precedence for other relay operators. I.e. if everyone would decrypt their disks when asked without legal obligations that may have a negative effect (more pressure) on people that are not willing to do that.