4 ms·
One very important thing not mentioned is that the tor exit node could be capturing your traffic or do a MITM attack. Its a great idea for testing but only aft
by rinron 5y ago
One very important thing not mentioned is that the tor exit node could be capturing your traffic or do a MITM attack. Its a great idea for testing but only after you have encryption working, and of course pay special attention to your ssh fingerprints.
- segfaultbuserr 5y agoIf the endpoint is in your control and you'd like to experiment with Tor, you can configure your server as an Onion Service, so you are protected by Tor's own end-to-end encryption (whose traffic cannot be captured by MITM since the hostnames themselves are the public keys). For non-anonymous uses, you should active the "Single Service Onion" mode, so the 6-hop (extra 3-hop for server anonymity) is skipped, allowing standard 3-hop latency and performance. It also saves bandwidth for exit nodes - all non-exit relays can forward Onion traffic.
- boring_twenties 5y agoHidden services are not accessed through exit nodes. Relay nodes cannot capture your traffic or perform MITM attacks.
- fswwi 5y agoCloudflare is mitm, btw.