[tor-talk] PSI Jabber leaking the client hostname?

phillip at bailey.st phillip at bailey.st
Wed Oct 12 12:14:15 UTC 2011


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Hello folks,

Early today I was testing a ejabberd server under Tor Hidden service,
while testing the correct configuration of the messenger service
I was looking at the /var/log/ejabberd/ejabberd.log file to spot any
errors or strange alerts.

For the test I used a laptop with Ubuntu and pidgin installed and
a virtual machine with ubuntu and PSI jabber client.

User test1 pidgin
User test2 PSI

This session from pidgin looks fine for me.

Opened session for test1 at xxxxxxxxxxxxxxxxx.onion/41432302741318419318154500

This other session freaked me out, because foobar is the hostname of the
Virtual Machine.

Opened session for test2 at xxxxxxxxxxxxxxxxx.onion/foobar

I guess is not normal to have your hostname going to some tor end point,
is this leak related to PSI or maybe some other misconfiguration.

Peace,

Phillip



- -- 
www.bailey.st

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iQEcBAEBAgAGBQJOlYSSAAoJENNBJKHbaDgTSwsIAJXCWh/8wP/YvMH7nNEOdKXN
fNOSq6Cul8l7FZWR3fHlSzjEBENt7Wl39/q8rlMKUQpROqXEj0D6DE6cj9D+R7l8
6agJ7Ma3kXbZHRvIssXlYmlYSI4gUge8NYBmxhoVC0KTDkm47Hhp4eF5MQp2zwjP
66w29+mKKTeabtOHdC6GmrpWKaefQXP0cLH9eyUEOMhOqQKF6recI8Z+QzrhjdPe
bRXglrgvs5EuB6FObZnu7Nt0U2sI9Uukm+M8cPLox1BORZ2zijRIJjZDxrsxM4oL
0eqiDIO1CeqVyWJ32KtKRa/8PKhhW6aUcHcG5QOGDzEy3vJjtr1lE04YOPdZ0Uk=
=HxKJ
-----END PGP SIGNATURE-----


More information about the tor-talk mailing list