Re: TOR
Antony Seedhouse <[email protected]> Tue, 13 Sep 2005 13:50:38 +0100
| Newsgroups | gmane.network.irc.blitzed.general |
|---|---|
| Message-ID | <[email protected]> |
On 9/13/05, Andy Smith <[email protected]> wrote: > I'm seeing increasing usage of TOR[1] on the irc-security lists for > nefarious purposes on IRC. Has anyone seen it on Blitzed yet? > > There is a TOR DNSBL. Should we use it to block users coming from > TOR, or is their freedom of anonymous expression worth keeping? > > Could we put the TOR DNSBL in our BOPMs on a warning-only basis to > see how prevalent it is?: > > blacklist { > name = "tor.dnsbl.sectoor.de"; > type = "A record reply"; > > reply { > 1 = "Tor exit server"; > 2 = "Tor network"; > }; > > ban_unknown = no; > kline = "PRIVMSG #wg :%h [%i] found on TOR DNSBL"; > // kline = "KLINE *@%h :Tor exit server detected. Please visit www.sectoor.de/tor.php for more information."; > }; > > [1] http://tor.eff.org/ > > > > -----BEGIN PGP SIGNATURE----- > Version: GnuPG v1.4.1 (GNU/Linux) > > iD8DBQFDJqK2IJm2TL8VSQsRArtHAKCC3Fu32miF83815NRCfaAzTclsZwCdG1V8 > DgxyCKUPc8I/3vQ6C7iI6+w= > =cXXh > -----END PGP SIGNATURE----- > > > _______________________________________________ > public mailing list > public-Hb7ITwsGSD4lroQnaJEqWdi2O/[email protected] > http://lists.blitzed.org/listinfo/public > > > Yes, a botnet came on yesterday with bots connected through a TOR proxy, I killed em. -- Antony Seedhouse http://cba.me.uk