NODE 1c26241fQuestion about anonymizing proxies
nobody@huge.cajones.com (Huge Cajones Remailer)Tue, 10 Jun 1997 02:32:21 +0800
Sorry if this has been beaten to death before (if it has, a pointer to
where it is in the archives would be appreciated), but is it possible to
chain anonymizing proxy servers in a way similar to remailers?
NODE 0d1eb35bRe: Question about anonymizing proxies
"Mark M." <markm@voicenet.com>Tue, 10 Jun 1997 03:54:01 +0800
-----BEGIN PGP SIGNED MESSAGE-----
On Mon, 9 Jun 1997, Huge Cajones Remailer wrote:
> Sorry if this has been beaten to death before (if it has, a pointer to
> where it is in the archives would be appreciated), but is it possible to
> chain anonymizing proxy servers in a way similar to remailers?
It is possible, but more difficult. A system that just chains and encrypts
through several different proxies keeps the traffic secret, but reveals
the source and destination of every connection using traffic analysis. The
NRL Onion Router scheme had this problem, I think. The way to avoid this
is to maintain constant connections between proxies and endpoints.
Mark
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3
Charset: noconv
iQEVAwUBM5xRdyzIPc7jvyFpAQERDQf/RLDiYPeQ+P/x0CKcRUvuQUxOO87nx8VL
+2YVOcgoF9uQ/UCL01NmrIAwnplW083HJN1s0TtlNxuKBx+I65Sk5dkoiBUyJDex
D+RsiqYIY3YiNa6zFs03oE9aAmv2lPXPW/zrLgX+CYZOei9XPB9LgBUm4ryzEbdF
H6ZtUSBtBvT8ZCTV25JUFy1mM8sfblqpvg7T9rYkC3OMdpelziqSwcGC86WOTyQ7
PujA4C36B1RuQ1Jd8FH2cfIStLHzyvN81MY12P+8oF1YsEpow6R286S6haGiT8z+
gZFC1tgykYn9D6Xr0BKzp5uHA+IVpvjv3ZxN8gJxDeUyYf2555KpCw==
=Jfpo
-----END PGP SIGNATURE-----
NODE d0a444ebRe: Question about anonymizing proxies
Paul Bradley <paul@fatmans.demon.co.uk>Tue, 10 Jun 1997 06:37:44 +0800
> Sorry if this has been beaten to death before (if it has, a pointer to
> where it is in the archives would be appreciated), but is it possible to
> chain anonymizing proxy servers in a way similar to remailers?
Yes, just concatenate the URLs for most purposes, or were you thinking of
something more specific?
Datacomms Technologies data security
Paul Bradley, Paul@fatmans.demon.co.uk
Paul@crypto.uk.eu.org, Paul@cryptography.uk.eu.org
Http://www.cryptography.home.ml.org/
Email for PGP public key, ID: FC76DA85
"Don`t forget to mount a scratch monkey"
NODE 9c69050dRe: Question about anonymizing proxies
Bill Stewart <stewarts@ix.netcom.com>Tue, 10 Jun 1997 16:29:53 +0800
At 10:58 AM 6/9/97 -0700, Huge Cajones Remailer forwarded:
>Sorry if this has been beaten to death before (if it has, a pointer to
>where it is in the archives would be appreciated), but is it possible to
>chain anonymizing proxy servers in a way similar to remailers?
Depends on the user interfaces of the anonymizing proxies -
a system that lets you request what you want in the URL
may let you do more than a system that insists you type stuff in blanks,
but on the other hand,
http://anon.foo.com/proxy/anon.bar.com/proxy/anon.zork.com/proxy/thoughtcrim
e.com/
lets the everything in the chain see that you're really trying to reach
thoughtcrime.com, while a succession of SSL-encrypted forms popping up that
you fill in the blanks on may be harder to automate, but more secure.
# Thanks; Bill
# Bill Stewart, +1-415-442-2215 stewarts@ix.netcom.com
# You can get PGP outside the US at ftp.ox.ac.uk/pub/crypto/pgp
# (If this is a mailing list or news, please Cc: me on replies. Thanks.)