Re: [tor-relays] Connection burst

2022-03-21 Thread Toralf Förster

On 3/20/22 17:14, Felix wrote:

They were kicked off by the packetfilter


IMO it is a bad idea to filter Tor traffic.

--
Toralf
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays


[tor-relays] Connection burst

2022-03-21 Thread Felix
Hi everybody

Just to let you know.

Yesterday between 21:26 and 21:31 utc the relay
03C3069E814E296EB18776EB61B1ECB754ED89FE (Tor 0.4.7.4-alpha, LibreSSL
3.4.2) received a connection burst of 2k+ source addresses out of 174
/8 ip4 nets (1-223/8).

They were kicked off by the packetfilter because the max
conn per ip rate was above my applied max threshold. The notice level
DoS mitigation entry remained untouched while sitting behind the pf.

Beautiful!

-- 
Cheers Felix


pgp1I4_GKArH1.pgp
Description: Digitale Signatur von OpenPGP
___
tor-relays mailing list
tor-relays@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-relays