Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread diffusae
There a also some x86 mainboards which supported by coreboot. You could run your boot loader or kernel with initrd from the flash chip, if the capacity is big enough or you create your own embedded system with tor. And all works very well ... On 21.10.2016 17:56, Duncan Guthrie wrote: > If you

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Duncan Guthrie
Hi there, More likely, they just compromise your relay in runtime. Reflashing the boot firmware is theoretical, but due to the huge variation in the hardware running Tor, I am not convinced using such an exploit on vast numbers of computers is entirely practical. Since relays are up for

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread dawuud
> In the age of FBI mass hacking, the FBI will attempt to hack all Tor > relays, and thus, they can trace traffic throughout the entire proxy chain. You don't think that would be risky for the FBI in terms of being exposed by security researchers who catch them? And by proxy chain you mean tor

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Lucas Werkmeister
Regardless of whether the Pi’s firmware can actually be updated or not – it’s probably not good for diversity to run the whole Tor network on a single kind of device: we don’t want every relay in the network to be compromised when a single flaw on the Pi is found. Performance might also suffer,

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Petrusko
I can confirm "rpi-update" usually works fine to update firmware. But don't forget to run this command sometimes by hand, no auto-update during the system /apt-get upgrade/ > firmware of RPi can be changed: https://github.com/Hexxeh/rpi-update / > https://github.com/Hexxeh/rpi-firmware --

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Corné Oppelaar
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 firmware of RPi can be changed: https://github.com/Hexxeh/rpi-update / https://github.com/Hexxeh/rpi-firmware next to that the official firmware of RPi is closed source. you have no idea what it does and RPi is build by a small company in the UK,

Re: [tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Tristan
Wouldn't it just be easier to use Tails? On Oct 21, 2016 7:08 AM, "Dan Michaels" wrote: > The Tor Project website recommends various security setups for people > running Tor relays. > > Such as, don't run a web browser on the same machine as your Tor relay, >

[tor-relays] Recommendation for DUMB COMPUTING devices for Tor Relays

2016-10-21 Thread Dan Michaels
The Tor Project website recommends various security setups for people running Tor relays. Such as, don't run a web browser on the same machine as your Tor relay, otherwise the browser could get hacked, and then if Tor relays are hacked, it compromises the entire concept of Tor. In the age of FBI