[Freedombox-discuss] Establishing Communicationbetween Freedomboxes

intrigeri intrigeri+freedombox at boum.org
Sun Jul 17 01:07:53 UTC 2011


Hi,

Clint Adams wrote (07 Jul 2011 23:17:22 GMT) :
> On Thu, Jul 07, 2011 at 02:33:37PM -0700, Tony Godshall wrote:
>> Is Tor centralized this way?

> The Tor directory authorities are centralized, but the effect of
> compromising a DNS root server is probably worse than compromising a
> Tor directory authority.

Right. Since Directory Protocol v2, statements made by a Directory
authority are believed by a Tor client "iff they were attested to by
more than half of the authorities", so an adversary needs to
compromise more than half of the Tor Directory authorities to be able
to lie effectively to Tor clients.

See dir-spec-v2.txt in the torspec Git repository¹ for details.
The "0.1. History" section of the (WIP) dir-spec.txt is a nice
introduction to how such matters are dealt with by Tor.

  1. git://git.torproject.org/torspec.git

Bye,
--
  intrigeri <intrigeri at boum.org>
  | GnuPG key @ https://gaffer.ptitcanardnoir.org/intrigeri/intrigeri.asc
  | OTR fingerprint @ https://gaffer.ptitcanardnoir.org/intrigeri/otr.asc
  | If you must label the absolute, use it's proper name: Temporary.



More information about the Freedombox-discuss mailing list