Delivery-Date: Sat, 31 Jan 2015 21:05:01 -0500
Return-Path: <tor-talk-bounces@lists.torproject.org>
X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on moria.seul.org
X-Spam-Level: 
X-Spam-Status: No, score=-4.7 required=5.0 tests=BAYES_00,DKIM_SIGNED,
	RCVD_IN_DNSWL_MED,RP_MATCHES_RCVD,T_DKIM_INVALID,UNPARSEABLE_RELAY,
	URIBL_BLOCKED autolearn=ham version=3.3.1
X-Original-To: archiver@seul.org
Delivered-To: archiver@seul.org
Received: from eugeni.torproject.org (eugeni.torproject.org [38.229.72.13])
	(using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits))
	(No client certificate requested)
	by khazad-dum.seul.org (Postfix) with ESMTPS id 3CCC11E0BA5
	for <archiver@seul.org>; Sat, 31 Jan 2015 21:04:59 -0500 (EST)
Received: from eugeni.torproject.org (localhost [127.0.0.1])
	by eugeni.torproject.org (Postfix) with ESMTP id 022F432594;
	Sun,  1 Feb 2015 02:04:56 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1])
 by eugeni.torproject.org (Postfix) with ESMTP id 967CD2E517
 for <tor-talk@lists.torproject.org>; Sun,  1 Feb 2015 02:04:52 +0000 (UTC)
X-Virus-Scanned: Debian amavisd-new at 
Received: from eugeni.torproject.org ([127.0.0.1])
 by localhost (eugeni.torproject.org [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id OkdA8kJtviFK for <tor-talk@lists.torproject.org>;
 Sun,  1 Feb 2015 02:04:52 +0000 (UTC)
Received: from mx1.riseup.net (mx1.riseup.net [198.252.153.129])
 (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
 (Client CN "*.riseup.net",
 Issuer "COMODO RSA Domain Validation Secure Server CA" (not verified))
 by eugeni.torproject.org (Postfix) with ESMTPS id 7106D29172
 for <tor-talk@lists.torproject.org>; Sun,  1 Feb 2015 02:04:52 +0000 (UTC)
Received: from plantcutter.riseup.net (plantcutter-pn.riseup.net [10.0.1.121])
 (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits))
 (Client CN "*.riseup.net",
 Issuer "COMODO RSA Domain Validation Secure Server CA" (verified OK))
 by mx1.riseup.net (Postfix) with ESMTPS id 9656D418BE
 for <tor-talk@lists.torproject.org>; Sun,  1 Feb 2015 02:04:49 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=riseup.net; s=squak;
 t=1422756289; bh=Qchl1skGHEY6ANQq7c5S1hDXqVCPIe0vqyDQTfTdxWk=;
 h=Date:From:To:Subject:References:In-Reply-To:From;
 b=KpEU0gwLn+U1GEvUIYwbkJpSaXCaICR49yBb0X/1/asuGeXFjN7qeLvZJpWHo5s/S
 i8inSqyckMa0fMeGx6qi4VeSLcHHd6Nse8WB5gd/ReYqtLxDJ+NX1TfXkKUnpXmXp1
 gDn6pK+Dp824L8WJZtk05ETbNsX6orFgCys+xp8I=
Received: from [127.0.0.1] (localhost [127.0.0.1])
 (Authenticated sender: mirimir) with ESMTPSA id C4C8E201C1
Message-ID: <54CD89D0.6040301@riseup.net>
Date: Sat, 31 Jan 2015 19:05:04 -0700
From: Mirimir <mirimir@riseup.net>
User-Agent: Mozilla/5.0 (X11; Linux x86_64;
 rv:31.0) Gecko/20100101 Thunderbird/31.4.0
MIME-Version: 1.0
To: tor-talk@lists.torproject.org
References: <54CB577A.9000100@riseup.net> <54CB59D5.5040300@riseup.net>
 <54CB5D63.5000108@techwang.com> <54CB689A.3010402@riseup.net>
 <op.xtahyknnbgbjo9@work-pc.lan> <54CC27AE.5060805@riseup.net>
 <op.xtaza906bgbjo9@work-pc.lan> <54CC3D22.8040707@riseup.net>
 <op.xtb60a14bgbjo9@work-pc.lan>
In-Reply-To: <op.xtb60a14bgbjo9@work-pc.lan>
X-Virus-Scanned: clamav-milter 0.98.5 at mx1
X-Virus-Status: Clean
Subject: Re: [tor-talk] Tor -> VPN  Clarification
X-BeenThere: tor-talk@lists.torproject.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: tor-talk@lists.torproject.org
List-Id: "all discussion about theory, design,
 and development of Onion Routing" <tor-talk.lists.torproject.org>
List-Unsubscribe: <https://lists.torproject.org/cgi-bin/mailman/options/tor-talk>, 
 <mailto:tor-talk-request@lists.torproject.org?subject=unsubscribe>
List-Archive: <http://lists.torproject.org/pipermail/tor-talk/>
List-Post: <mailto:tor-talk@lists.torproject.org>
List-Help: <mailto:tor-talk-request@lists.torproject.org?subject=help>
List-Subscribe: <https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk>, 
 <mailto:tor-talk-request@lists.torproject.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: tor-talk-bounces@lists.torproject.org
Sender: "tor-talk" <tor-talk-bounces@lists.torproject.org>

On 01/31/2015 10:03 AM, Seth wrote:
> On Fri, 30 Jan 2015 18:25:38 -0800, Mirimir <mirimir@riseup.net> wrote:
>> How is that any worse than adversaries correlating traffic between your
>> ISP and entry guards with traffic between exit nodes and destinations?
> 
> He addresses VPNs and Tor about 45 min into the talk:
> http://www.youtube.com/watch?v=9XaYdCdwiWU

I don't do audio at this level, and don't read lips, so video helps not.

What does he say?

> Refer to slides 76 and 77 here too:
> http://www.slideshare.net/grugq/opsec-for-hackers

That example seems to be about connecting directly through the VPN,
either accidentally forgetting to use Tor, or leaking through
misconfiguration. And then going on to acknowledge that it's Perfect
Privacy. There's maybe even something about acknowledging a leak of the
actual ISP-assigned IP address.

But anyway, that's all stupidity. There's nothing about vulnerability of
the "VPN -> Tor" approach. Poor implementation is the fail.

> http://security.stackexchange.com/questions/64583/vpn-tor-go-to-jail-whats-the-logic-behind-this

I don't see anything here re "VPN -> Tor" meaning "go to jail".

What am I missing here?
-- 
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk

