Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-03-10 Thread Vinícius Zavam
2018-03-03 10:27 GMT+00:00 Moritz Bartl : > > On 03.03.2018 07:11, Roger Dingledine wrote: > > Apparently the link from my blog post, to > > https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines > > no longer has any mention pro or con disk encryption. I wonder

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-03-10 Thread Vinícius Zavam
2018-03-01 0:46 GMT+00:00 George : > > Vinícius Zavam: > > 2018-02-25 21:23 GMT+00:00 Conrad Rockenhaus : > >> > >> On Sunday, February 25, 2018 3:05:00 PM CST George wrote: > >>> Conrad Rockenhaus: > Hello All, > > If anyone is interested,

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-03-03 Thread Conrad Rockenhaus
On 03/03/2018 04:27 AM, Moritz Bartl wrote: > On 03.03.2018 07:11, Roger Dingledine wrote: >> Apparently the link from my blog post, to >> https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines >> no longer has any mention pro or con disk encryption. I wonder if that >> was

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-03-03 Thread Moritz Bartl
On 03.03.2018 07:11, Roger Dingledine wrote: > Apparently the link from my blog post, to > https://trac.torproject.org/projects/tor/wiki/doc/TorExitGuidelines > no longer has any mention pro or con disk encryption. I wonder if that > was intentionally removed by the torservers.net folks (maybe

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-28 Thread Conrad Rockenhaus
On Wednesday, February 28, 2018 6:46:00 PM CST George wrote: > Vinícius Zavam: > > 2018-02-25 21:23 GMT+00:00 Conrad Rockenhaus : > >> On Sunday, February 25, 2018 3:05:00 PM CST George wrote: > >>> Conrad Rockenhaus: > Hello All, > > If anyone is interested,

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-28 Thread George
Vinícius Zavam: > 2018-02-25 21:23 GMT+00:00 Conrad Rockenhaus : >> >> On Sunday, February 25, 2018 3:05:00 PM CST George wrote: >>> Conrad Rockenhaus: Hello All, If anyone is interested, I have a RAW image of a FreeBSD 11.1 ZFS > image that is fully

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-28 Thread grarpamp
On Wed, Feb 28, 2018 at 10:43 AM, mick wrote: > On Tue, 27 Feb 2018 14:47:06 -0500 > grarpamp allegedly wrote: > >> If ovh vps gives root, bypass the fee with: md(4) vnode > geli > >> mount. >> >> Then again, if the iron isn't dipped in epoxy (not done), in

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-28 Thread Quintin
On Wed, Feb 28, 2018 at 6:38 PM mick wrote: > But in the real world we /have/ to trust someone, somewhere, somehow, > sometime. What everyone has to decide for themselves is /how much/ trust > to give, to whom, when, where and why. And that depends entirely on your > threat

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-28 Thread mick
On Tue, 27 Feb 2018 14:47:06 -0500 grarpamp allegedly wrote: > If ovh vps gives root, bypass the fee with: md(4) vnode > geli > > mount. > > Then again, if the iron isn't dipped in epoxy (not done), in your own > secure datacenter (not extant), on trusted #OpenHW (not AMD /

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-27 Thread grarpamp
> I can tell you on OVH, a basic level VPS (one for $5.00/mo) is not encrypted. > If a customer is willing to spend $7.00/mo more for an additional partition, > they will be able to have storage to encrypt the the Tor relay information at > rest. If ovh vps gives root, bypass the fee with: md(4)

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-27 Thread Otheontelth
Why would it be important to encrypt the storage of your tor server? For me this looks like it only complicates things if law enforcement wants to take a look at your server and the cloud provider should be able to break the encryption relative easy or can simply take a memory dump On 26

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-26 Thread Conrad Rockenhaus
On Monday, February 26, 2018 11:24:37 AM CST Vinícius Zavam wrote: > 2018-02-25 21:23 GMT+00:00 Conrad Rockenhaus : > > On Sunday, February 25, 2018 3:05:00 PM CST George wrote: > > > Conrad Rockenhaus: > > > > Hello All, > > > > > > > > If anyone is interested, I have a

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-26 Thread niftybunny
No multihoming = no AS. I do not pay for things I do not really need. https://nusenu.github.io/OrNetStats/asnameshare 0 OVH SAS 15.76 22.92 7.34499 1 Online S.a.s. 9.6 10.110.59 372 2 Hetzner Online GmbH

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-26 Thread Paul
> Yes, of course. However, you refer to the lack of diversity in operating > systems, but monocultures in providers/ASNs is another danger we should > be conscious of. > >> >>> >>> https://torbsd.org/oostats/relays-bw-by-asn.txt These calculation don’t show the situation as it currently

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-26 Thread Vinícius Zavam
2018-02-25 21:23 GMT+00:00 Conrad Rockenhaus : > > On Sunday, February 25, 2018 3:05:00 PM CST George wrote: > > Conrad Rockenhaus: > > > Hello All, > > > > > > If anyone is interested, I have a RAW image of a FreeBSD 11.1 ZFS image > > > that is fully configured and ready

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread grarpamp
On Mon, Feb 26, 2018 at 12:21 AM, Conrad Rockenhaus wrote: > I'm more than willing to offer source :D, but I'm just going to make it a > script only project instead based on what seems to be the consensus opinion. > I'm just going to clean up some small things now that

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
On Sunday, February 25, 2018 11:13:12 PM CST grarpamp wrote: > On Sun, Feb 25, 2018 at 4:05 PM, George wrote: > > However, I'd be wary of an image that I didn't build myself, personally. > > Yes, especially of image without source [script] > (not to diminish such work). > >

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread grarpamp
On Sun, Feb 25, 2018 at 4:05 PM, George wrote: > However, I'd be wary of an image that I didn't build myself, personally. Yes, especially of image without source [script] (not to diminish such work). FreeBSD is largely reproducible these days, OpenBSD maybe not yet (you'd

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
On Sunday, February 25, 2018 4:03:30 PM CST Jordan wrote: > >> Another issue is that OVH is over relied upon for public nodes. It's the > >> leading ASN with almost 15%. > > > > They're one of the few providers out there that allow exits. That's why > > 15% of our exits are on OVH. > > For what

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread nusenu
Conrad Rockenhaus: > I'm more than willing to provide the > ansible scripts I use to initially spin things up looking forward to it -- https://mastodon.social/@nusenu twitter: @nusenu_ signature.asc Description: OpenPGP digital signature ___

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
George, I'm sorry, I didn't take your points as accusatory at all. I apologize if I came across that way. You had valid points, and after everyone on the mailing list pouncing me about these points, I can completely understand now that providing an image for production use is a bad idea. I

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Shawn Webb
On Sun, Feb 25, 2018 at 04:03:49PM -0600, Conrad Rockenhaus wrote: > Wow, I didn't expect my friendly gesture to start another debate, but the > reasoning behind offering this image was mainly for people who were operating > on OpenStack clouds who wanted to upload the image to their

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Jordan
Another issue is that OVH is over relied upon for public nodes. It's the leading ASN with almost 15%. They're one of the few providers out there that allow exits. That's why 15% of our exits are on OVH. For what it's worth, my entire OVH account was terminated as a result of hosting an exit

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
Wow, I didn't expect my friendly gesture to start another debate, but the reasoning behind offering this image was mainly for people who were operating on OpenStack clouds who wanted to upload the image to their infrastructure using glance and start things up quickly. I'm more than willing to

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Shawn Webb
On Sun, Feb 25, 2018 at 09:05:00PM +, George wrote: > Conrad Rockenhaus: > > Hello All, > > > > If anyone is interested, I have a RAW image of a FreeBSD 11.1 ZFS image > > that > > is fully configured and ready to run Tor. Right now it's an eight GB image, > > but > > I'm reducing the

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
On Sunday, February 25, 2018 3:05:00 PM CST George wrote: > Conrad Rockenhaus: > > Hello All, > > > > If anyone is interested, I have a RAW image of a FreeBSD 11.1 ZFS image > > that is fully configured and ready to run Tor. Right now it's an eight GB > > image, but I'm reducing the size by

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread nusenu
> I tend to think using other people's scripts > that can be reviewed and hacked is a better gateway for new relay > operators than images. +1 -- https://mastodon.social/@nusenu twitter: @nusenu_ signature.asc Description: OpenPGP digital signature

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread Conrad Rockenhaus
On Sunday, February 25, 2018 2:59:38 PM CST TorGate wrote: > i am iterrested :-) > have you a ovm or harddiskimage ? Right now it's a RAW image, but it can be converted to whatever format you need with QEMU-image... I just converted it to VDI right now to start nuking the /usr/src stuff. >

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread nusenu
please ensure the tor keys folder is empty in your image and SSH hostkeys are also not there (generated on first boot) -- https://mastodon.social/@nusenu twitter: @nusenu_ signature.asc Description: OpenPGP digital signature ___ tor-relays mailing

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread George
Conrad Rockenhaus: > Hello All, > > If anyone is interested, I have a RAW image of a FreeBSD 11.1 ZFS image that > is fully configured and ready to run Tor. Right now it's an eight GB image, > but > I'm reducing the size by removing all of the extra stuff on it from the > upgrade from FreeBSD

Re: [tor-relays] FreeBSD 11.1 ZFS Tor Image

2018-02-25 Thread TorGate
i am iterrested :-) have you a ovm or harddiskimage ? regards Steffen TorGate torgate(at)linux-hus.dk OpenGPG 7FD5 65EF A4EF EEF3 7A13 4372 8409 49D6 01A2 0890 > Am 25.02.2018 um 21:50 schrieb Conrad Rockenhaus : > > Hello All, > > If anyone is interested, I have a