INgxelo yeBhunga loKhuseleko lweTor: Iindawo zokuphuma ezikhohlakeleyo zisetyenzisiwe sslstrip.


INgxelo yeBhunga loKhuseleko lweTor: Iindawo zokuphuma ezikhohlakeleyo zisetyenzisiwe sslstrip.

Umongo wento eyenzekayo

NgoMeyi ka-2020, iqela leendawo zokuphuma zafunyanwa ziphazamisana noqhagamshelo oluphumayo. Ngokukodwa, bashiye phantse lonke unxibelelwano lunjalo, kodwa luthintele unxibelelwano kwinani elincinci lotshintshiselwano lwe-cryptocurrency. Ukuba abasebenzisi bandwendwele uguqulelo lwe-HTTP lwesiza (oko kukuthi, lungafihlwanga kwaye aluqinisekiswanga), iinginginya ezikhohlakeleyo ziye zathintelwa ekubeni ziphinde ziqondise kuguqulelo lweHTTPS (o.k.t, luguqulelwe ngokuntsonkothileyo kwaye luqinisekisiwe). Ukuba umsebenzisi akazange aqaphele ukutshintshwa (umzekelo, ukungabikho kwe icon yokukhiya kwisikhangeli) kwaye waqala ukuthumela ulwazi olubalulekileyo, olu lwazi lunokuthi lubanjwe ngumhlaseli.

Iprojekthi yeTor ayibandakanyi ezi nodes kwinethiwekhi ngoMeyi 2020. NgoJulayi 2020, elinye iqela le-relays lafunyanwa liqhuba uhlaselo olufanayo, emva koko nabo bangabandakanyi. Akukacaci ukuba ngaba nabani na abasebenzisi bahlaselwe ngempumelelo, kodwa ngokusekelwe kwisikali sohlaselo kunye nenyaniso yokuba umhlaseli wazama kwakhona (uhlaselo lokuqala luchaphazele i-23% yesiphumo esipheleleyo se-output nodes, okwesibini malunga ne-19%), kunengqiqo ukucinga ukuba umhlaseli uthathele ingqalelo ixabiso lohlaselo.

Esi siganeko sisikhumbuzo esihle sokuba izicelo ze-HTTP azibhalwanga kwaye aziqinisekiswanga kwaye ngoko zisesichengeni. I-Tor Browser iza ne-HTTPS-Yonke indawo eyandisiweyo eyenzelwe ngokukodwa ukuthintela uhlaselo olunjalo, kodwa ukusebenza kwayo kulinganiselwe kuluhlu olungagubungeli yonke iwebhusayithi emhlabeni. Abasebenzisi baya kuhlala besengozini xa bendwendwela inguqulelo ye-HTTP yeewebhusayithi.

Ukuthintela uhlaselo olufanayo kwixesha elizayo

Iindlela zokuthintela ukuhlaselwa zihlulwe zibe ziinxalenye ezimbini: eyokuqala ibandakanya imilinganiselo abasebenzisi kunye nabalawuli besiza abanokuthi bathathe ukuze bomeleze ukhuseleko lwabo, ngelixa elesibini lixhalabele ukuchongwa kunye nokufunyanwa kwangexesha kwanode womnatha onobungozi.

Iintshukumo ezicetyiswayo kwicala leendawo:

1. Yenza i-HTTPS isebenze (izatifikethi zasimahla zinikezelwa ngu Masibhale)

2. Yongeza imigaqo yokuqondisa kwakhona kuluhlu lwe-HTTPS-Kuyo yonke indawo ukuze abasebenzisi bakwazi ukuseka uqhagamshelo olukhuselekileyo kunokuxhomekeka ekuhanjisweni ngokutsha emva kokuseka uqhagamshelwano olungakhuselekanga. Ukongeza, ukuba ulawulo lweenkonzo zewebhu lunqwenela ukuphepha ngokupheleleyo ukusebenzisana neendawo zokuphuma, lunakho bonelela ngoguqulelo lwetswele lesiza.

IProjekthi yeTor okwangoku ijonga ukukhubaza ngokupheleleyo i-HTTP engakhuselekanga kwiSikhangeli seTor. Kwiminyaka embalwa edlulileyo, umlinganiselo onjalo wawungenakucingelwa (izixhobo ezininzi kakhulu zine-HTTP engakhuselekanga), kodwa i-HTTPS-Yonke indawo kunye noguqulelo oluzayo lweFirefox lunokhetho lokuvavanywa lokusebenzisa i-HTTPS ngokungagqibekanga kunxibelelwano lokuqala, ngokukwazi buyela kwi-HTTP ukuba kuyimfuneko. Akukacaci ukuba le ndlela iza kubachaphazela njani abasebenzisi beTor Browser, ke iya kuvavanywa kuqala kumanqanaba aphezulu okhuseleko lwesikhangeli (i-icon yekhaka).

Inethiwekhi yeTor inamavolontiya abeka iliso kwindlela yokuziphatha kunye neziganeko zokunika ingxelo ukuze iindawo ezinobungozi zingabandakanywa kwiiseva zolawulo lweengcambu. Nangona iingxelo ezinjalo zihlala zijongiwe ngokukhawuleza kwaye ii-node ezinobungozi zithathwa ngaphandle kwe-intanethi ngokukhawuleza xa zifunyenwe, akukho zixhobo ezingonelanga zokubeka iliso rhoqo kwinethiwekhi. Ukuba ulawula ukufumanisa i-relay enobungozi, ungayixela kwiprojekthi, imiyalelo iyafumaneka kule linki.

Indlela yangoku ineengxaki ezimbini ezibalulekileyo:

1. Xa uqwalasela i-relay engaziwayo, kunzima ukubonisa ubungqina bayo. Ukuba bekungekho zihlaselo ezivela kuye, ngaba kufuneka ashiywe endaweni? Uhlaselo olukhulu oluchaphazela abasebenzisi abaninzi kulula ukulubona, kodwa ukuba uhlaselo luchaphazela kuphela inani elincinci leendawo kunye nabasebenzisi, umhlaseli angenza ngokukhawuleza. Inethiwekhi yeTor ngokwayo inamawakawaka okuhanjiswa emhlabeni jikelele, kwaye le yantlukwano (kunye nesiphumo sokunabisa amagunya) yenye yamandla ayo.

2. Xa uqwalasela iqela labaphindayo abangaziwayo, kunzima ukubonisa ubungqina bonxibelelwano lwabo (oko kukuthi, nokuba baqhuba. Uhlaselo lukaSibyl). Uninzi lwabasebenzisi bokunikezelwa kokunikezelwa ngokuzithandela bakhetha iinethiwekhi ezifanayo ezinexabiso eliphantsi ukuzibamba, ezinje ngeHetzner, OVH, Online, Frantech, Leaseweb, njl., kwaye ukuba kufunyenwe iirelay ezininzi, akuyi kuba lula ukuqikelela ngokuqinisekileyo ukuba kukho ezintsha ezininzi. abasebenzi okanye omnye kuphela, olawula bonke abaphindayo abatsha.

umthombo: linux.org.ru

Yongeza izimvo