Showing posts with label proxy. Show all posts
Showing posts with label proxy. Show all posts

20140715

I2P COMPARED TO TOR

Tor and Onion Routing are both anonymizing proxy networks, allowing people to tunnel out through their low latency mix network. The two primary differences between Tor / Onion-Routing and I2P are again related to differences in the threat model and the out-proxy design (though Tor supports hidden services as well). In addition, Tor takes the directory-based approach - providing a centralized point to manage the overall 'view' of the network, as well as gather and report statistics, as opposed to I2P's distributed network database and peer selection.

The I2P/Tor outproxy functionality does have a few substantial weaknesses against certain attackers - once the communication leaves the mixnet, global passive adversaries can more easily mount traffic analysis. In addition, the outproxies have access to the cleartext of the data transferred in both directions, and outproxies are prone to abuse, along with all of the other security issues we've come to know and love with normal Internet traffic.

However, many people don't need to worry about those situations, as they are outside their threat model. It is, also, outside I2P's (formal) functional scope (if people want to build outproxy functionality on top of an anonymous communication layer, they can). In fact, some I2P users currently take advantage of Tor to out proxy...

20121125

Squid Blacklists - Web Filter - Blacklist - Squid Filter

Our USG blacklist is directed at blocking unwanted communications with United States government networks, intelligence agencies, and military networks. However, You could still visit useful sites such as the social securtiy administration, the us postal service, or your local unemployment office website. This list is not intended to block non threatening, government service type websites that we all use. But it is designed to block the US Government networks that you likely, really do not want traffic from your network reaching. It is a simple CIDR formatted list, so you could use it for your firewall rules just as easily as you can for a squid acl.