[tor-bugs] #24902 [Core Tor/Tor]: Denial of Service mitigation subsystem
Tor Bug Tracker & Wiki
blackhole at torproject.org
Mon Jan 22 21:52:30 UTC 2018
#24902: Denial of Service mitigation subsystem
-------------------------------------------------+-------------------------
Reporter: dgoulet | Owner: dgoulet
Type: enhancement | Status:
| needs_review
Priority: Very High | Milestone: Tor:
| 0.3.3.x-final
Component: Core Tor/Tor | Version:
Severity: Normal | Resolution:
Keywords: ddos, tor-relay, review-group-30, | Actual Points:
029-backport, 031-backport, 032-backport |
Parent ID: | Points:
Reviewer: | Sponsor:
-------------------------------------------------+-------------------------
Comment (by dgoulet):
Just did an experiment with a tor2web client with my relay pinned as the
RP. Because it is the only RP available, the tor client happily retries
*non* stop to connect to a working RP until the `SocksTimeout` that is 120
seconds by default. In this case, it creates many circuits to the same RP.
I think Roger opened a ticket recently about making tor client try to
remember failing relays for specific things.
So just keep in mind that we'll have a _lot_ of tor2web clients trying
every relays on the network if this defense becomes a thing everywhere.
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/24902#comment:23>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
More information about the tor-bugs
mailing list