[Freedombox-discuss] Onion Pi
Long story short: this should be configurable, selectively-disableable
by the end-user, or the end-user should be informed of the potential
disadvantages of this connection method.
If your destinations are using SSL (like they should) MITM is less of
an issue. The lovely HttpsEverywhere Firefox/Iceweasel extension
makes this as simple as possible (and should definitely be installed
on any client device).
The unexpected trouble you might need to worry about is infrastructure
services (like online banking, Paypal, etc.) freaking out because
you're connecting from a known exit node, and assuming that your
account is under attack . Some service providers are good about
this (Google will mark your account as a Tor-using account if you sign
in from a non-exit node IP and then sign in from a known exit-node IP,
without clearing cookies ), but /I don't know/ which service
providers are bad about it.
0: personal communication with primary source.
1: a libtech email from a Google employee that I don't have time to
find right now. Check the libtech list.
On Tue, Sep 17, 2013 at 11:45 AM, Tim Retout <diocles at debian.org> wrote:
> On 17 Sep 2013 15:32, "Petter Reinholdtsen" <pere at hungry.com> wrote:
>> or by configuring privoxy, dnsmasq and redsocks with iptables to pass
>> all traffic passing through the Freedombox via Tor.
>> Is there some reason not to do this by default?
> There are some good reasons not to run unencrypted traffic through Tor:
> - malicious exit nodes will be studying all unencrypted traffic passing
> through them - badly-secured websites still send session cookies
> unencrypted, for example.
> (Ditto for Flash/Java.)
> For fully encrypted traffic, you still need to be careful of MITM attacks.
> Again this is easy for a malicious exit node. You can think of Tor as
> subjecting yourself to a deliberate MITM. :)
> I have heard anecdotal evidence that the above is happening routinely on
> Tor, FWIW.
> Freedombox-discuss mailing list
> Freedombox-discuss at lists.alioth.debian.org