Roger Dingledine March 2013 update 1 2 3 4 5 6 7 8 9 10 - - PowerPoint PPT Presentation

roger dingledine march 2013 update
SMART_READER_LITE
LIVE PREVIEW

Roger Dingledine March 2013 update 1 2 3 4 5 6 7 8 9 10 - - PowerPoint PPT Presentation

Roger Dingledine March 2013 update 1 2 3 4 5 6 7 8 9 10 Tor 0.2.4.7-alpha .. 0.2.4.9-alpha New stronger/faster ECC-based link encryption New stronger/faster ECC-based circuit handshake (ntor, curve25519) Support for exiting


slide-1
SLIDE 1

1

Roger Dingledine March 2013 update

slide-2
SLIDE 2

2

slide-3
SLIDE 3

3

slide-4
SLIDE 4

4

slide-5
SLIDE 5

5

slide-6
SLIDE 6

6

slide-7
SLIDE 7

7

slide-8
SLIDE 8

8

slide-9
SLIDE 9

9

slide-10
SLIDE 10

10

slide-11
SLIDE 11

11

Tor 0.2.4.7-alpha .. 0.2.4.9-alpha

  • New stronger/faster ECC-based link

encryption

  • New stronger/faster ECC-based circuit

handshake (ntor, curve25519)

  • Support for exiting to IPv6 destinations
  • “Directory guards” to reduce user

enumeration risks

slide-12
SLIDE 12

12

slide-13
SLIDE 13

13

Tor 0.2.4.10-alpha .. 0.2.4.11-alpha

  • Better Sybil-resistance
  • Harder for relays to lie about their

bandwidth

  • Change circuit create queue from size-

based to time-based

  • Resolve a DPI fingerprint for Tor's SSL

transport

slide-14
SLIDE 14

14

In upcoming Tor 0.2.5.x-alpha

  • Clients can reach dir auths via IPv6
  • Clients can specify their own cipher lists
  • Bridge relays can load their own SSL

link certificate

– (more useful for debugging than I'd

realized!)

  • Fixed more issues in TestingTorNetwork
slide-15
SLIDE 15

15

Outreach

  • Access Innovation Awards
  • 29c3 talk
  • DEA meeting
  • Dutch / Belgian law enforcement
  • Jake's Burma trip
  • OONI meeting in Amsterdam
slide-16
SLIDE 16

16

slide-17
SLIDE 17

17

Pluggable Transport work

  • obfs3 implementation
  • “pyobfsproxy”
  • Format-transforming encryption
  • “Scramblesuit”
  • Flashproxy (second developer;

standalone flashproxy; move to opt-in?)

slide-18
SLIDE 18

18

Number of Flash Proxies

slide-19
SLIDE 19

19

Number of flashproxy clients

slide-20
SLIDE 20

20

Georgetown / NRL collaborations

  • Aaron and Sathya's path selection

simulator / entropy work

  • Rob's throttling evaluation paper
  • Proposal 218 (instrumenting relays)
  • Shadow now supports multi-threading
slide-21
SLIDE 21

21

Misc other progress

  • Upcoming release of new “Stem” python

Tor controller library

  • Roadmap document for a Tor censorship

debugger

  • NDSS “rbridge” paper (bridge

distribution strategy)

  • Waterloo path splitting paper
slide-22
SLIDE 22

22

Start on VoIP questions

  • VoIP:

– Push-to-talk VoIP-alike over TCP – Skype itself over TCP

slide-23
SLIDE 23

23

What to expect next time

  • uTP branch for simulator testing
  • Compose pluggable transports (e.g.

flashproxy + chopper + obfs3)

  • Safely record and report obfsproxy stats
  • Alternate scheduling / throttling /

weighting / flow control

  • Integrate 'optimistic data' feature into TBB