[tor-relays] preventing DDoS is more than just network filtering
Toralf Förster
toralf.foerster at gmx.de
Mon Nov 7 12:14:27 UTC 2022
The graphs in [1] and [2] are IMO good examples related to [3]:
"... in addition to network filtering, the (currently) sharp input
signal ... is transformed into a smeared output response ... This shall
make it harder for an attacker to gather infromation using time
correlation techniques."
Feedback is welcome.
[1] https://github.com/toralf/torutils/blob/main/doc/network-metric.svg
[2]
https://github.com/toralf/torutils/blob/main/doc/network-metric-nextday.svg
[3] https://github.com/toralf/torutils/tree/main#block-ddos-traffic
--
Toralf
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 236 bytes
Desc: OpenPGP digital signature
URL: <http://lists.torproject.org/pipermail/tor-relays/attachments/20221107/0f232d1f/attachment.sig>
More information about the tor-relays
mailing list