Post AFdsye1fOoDZPNoSps by nusenu@mastodon.social
 (DIR) More posts by nusenu@mastodon.social
 (DIR) Post #AFVg5dGLmX8kOr0GjA by nusenu@mastodon.social
       2022-01-16T21:01:51Z
       
       1 likes, 2 repeats
       
       Someone triggered a Tor Sybil attack detection today, but thanks to their properly configured Authenticated Relay Operator ID we know it is CCC Stuttgart setting up their 48 shiny new tor exit instances - and NOT someone impersonating them 👍 Congratulations @cccs and thanks for using a state of the art secure OfflineMasterKey setup to protect your relay keys!
       
 (DIR) Post #AFWqBpGXGG9m40drMG by selea@social.linux.pizza
       2022-01-17T10:39:34Z
       
       0 likes, 0 repeats
       
       @nusenu @cccs Hmm, hos do I do someting similar?
       
 (DIR) Post #AFWqz38aTVFBHAObh2 by Leibi@chaos.social
       2022-01-17T10:48:24Z
       
       0 likes, 0 repeats
       
       @selea Which part? https://github.com/nusenu/ansible-relayor is how I did it in this case. 😀  @nusenu
       
 (DIR) Post #AFWrAUACKio8HTbP8a by rince@chaos.social
       2022-01-17T10:50:28Z
       
       0 likes, 0 repeats
       
       @selea @nusenu @cccs start with a simple TOR-Relay:https://community.torproject.org/relay/
       
 (DIR) Post #AFWriYzyrX8t7g4a4O by selea@social.linux.pizza
       2022-01-17T10:56:43Z
       
       0 likes, 0 repeats
       
       @rince @nusenu @cccs I tought about the key-part actually :)Running relays can everyone do, but do it "verifiarable" or how it is defined correctly
       
 (DIR) Post #AFWro2qVJpaH8kFoVE by selea@social.linux.pizza
       2022-01-17T10:57:41Z
       
       0 likes, 0 repeats
       
       @Leibi @nusenu thanks, I have some reading to :)I usually runs relays the "simple" way - installing tor, configuring torrc, and then done
       
 (DIR) Post #AFWzxyyvL8dTgVRSb2 by Leibi@chaos.social
       2022-01-17T12:29:04Z
       
       0 likes, 0 repeats
       
       @selea Here you go: https://nusenu.github.io/ContactInfo-Information-Sharing-Specification/ @rince @nusenu
       
 (DIR) Post #AFXbXaLc6QXE0ptX4C by nusenu@mastodon.social
       2022-01-17T19:30:08Z
       
       0 likes, 0 repeats
       
       @selea @rince @cccs if you also want to run a tor relay without exposing your master keys to your relay (aka OfflineMasterKeys), I recommend automation, even if you only run a single relayansible-relayor can help you with automation
       
 (DIR) Post #AFbwSi1F1otO1iinZ2 by nusenu@mastodon.social
       2022-01-19T21:43:20Z
       
       0 likes, 0 repeats
       
       @selea are these yours?https://metrics.torproject.org/rs.html#search/contact:selea
       
 (DIR) Post #AFbxgSBYnHQYvbfLcG by selea@social.linux.pizza
       2022-01-19T21:57:06Z
       
       0 likes, 0 repeats
       
       @nusenu Yeah
       
 (DIR) Post #AFc1qoY4u13SzzOVZQ by nusenu@mastodon.social
       2022-01-19T22:43:45Z
       
       0 likes, 0 repeats
       
       @selea SunOS, a rare species :)if you also also want to setup the Authenticated Relay Operator ID we previously mention you can:(1)  add this to your torrc ContactInfo:url:linux.pizza proof:uri-rsa ciissversion:2 and (2) publish your relay fingerprints at:https://linux.pizza/.well-known/tor-relay/rsa-fingerprint.txt
       
 (DIR) Post #AFcm0bfOFSIbpiQD44 by selea@social.linux.pizza
       2022-01-20T07:21:02Z
       
       0 likes, 0 repeats
       
       @nusenu Ah cool! That is what I was looking for.Does the relays themselves check the fingersprints?
       
 (DIR) Post #AFd6yxGr3Er3IP00xc by selea@social.linux.pizza
       2022-01-20T11:15:59Z
       
       0 likes, 0 repeats
       
       @nusenu Also, I run both OmniOS and Tribblix. I tried getting a Tor-Relay on HaikuOS to work - while the build worked the actual relay functionality did not, it did not really bootstrap as it should for some reason
       
 (DIR) Post #AFdsye1fOoDZPNoSps by nusenu@mastodon.social
       2022-01-20T20:13:47Z
       
       0 likes, 0 repeats
       
       @selea tor does not know anything about this spec.That is why you should also set MyFamily correctly.