学位论文详细信息
BridgeSPA: A Single Packet Authorization System for Tor Bridges
Privacy;Tor;Blocking Resistance;Port Knocking;Computer Science
Smits, Rob
University of Waterloo
关键词: Privacy;    Tor;    Blocking Resistance;    Port Knocking;    Computer Science;   
Others  :  https://uwspace.uwaterloo.ca/bitstream/10012/6446/1/Smits_Robin.pdf
瑞士|英语
来源: UWSPACE Waterloo Institutional Repository
PDF
【 摘 要 】

Tor is a network designed for low-latency anonymous communications.Tor clients form circuits through relays that are listed in a public directory, and then relay their encrypted traffic through these circuits. This indirection makes it difficult for a local adversary to determine with whom a particular Tor user is communicating. Tor may also be used to circumvent regional Internet censorship, since the final hop of a user;;s connection can be in a different country. In response, some local adversaries restrict access to Tor by blocking each of the publicly listed relays.To deal with such an adversary, Tor uses bridges, which are unlisted relays that can be used as alternative entry points into the Tor network. Unfortunately, issues with Tor;;s bridge implementation make it easy to discover large numbers of bridges. This makes bridges easy to block. Also, an adversary that hoards this information may use it to determine when each bridge is online over time. If a bridge operator also browses with Tor on the same machine, this information may be sufficient to deanonymize him. We present BridgeSPA as a method to mitigate these issues. A client using BridgeSPA relies on innocuous single packet authorization (SPA) to present a time-limited key to a bridge. Before this authorization takes place, the bridge will not reveal whether it is online. We have implemented BridgeSPA as a working proof-of-concept for GNU/Linux systems. The implementation is available under a free licence. We have integrated our implementation to work in an OpenWRT environment. This enables BridgeSPA support for any client behind a deployed BridgeSPA OpenWRT router, no matter which operating system they are running.

【 预 览 】
附件列表
Files Size Format View
BridgeSPA: A Single Packet Authorization System for Tor Bridges 3248KB PDF download
  文献评价指标  
  下载次数:17次 浏览次数:13次