[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#620897: ITP: sshuttle -- Transparent proxy server that works as a poor man's VPN



On Wed, Apr 6, 2011 at 12:51 AM, Tollef Fog Heen <tfheen@err.no> wrote:
> Yes, this is what tsocks does, it enables socks support for any
> application.

Well, that's right.

However, I prefer sshuttle approach of redirecting all outgoing traffic with
iptables instead of tsocks approach of setting environment variable
LD_PRELOAD=/lib/libtsocks.so for all applications.

Additionally, with tsocks you have to force usage of TCP for DNS queries.
sshuttle doesn't need that, it just redirects DNS using UDP through the
tunnel.

tsocks and sshuttle have different use-cases, one doesn't replace the other.
IME, sshuttle is great to be used with laptops on untrusted WLANs, all I need
is the login information to access a remote and trusted host via ssh.

-- 
Miguel Landaeta, miguel at miguel.cc
secure email with PGP 0x7D8967E9 available at http://keyserver.pgp.com/
"Faith means not wanting to know what is true." -- Nietzsche



Reply to: