Delivery-Date: Wed, 11 Jun 2014 08:11:43 -0400
Return-Path: <tor-talk-bounces@lists.torproject.org>
X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on moria.seul.org
X-Spam-Level: 
X-Spam-Status: No, score=-4.7 required=5.0 tests=BAYES_00,DKIM_SIGNED,
	RCVD_IN_DNSWL_MED,RP_MATCHES_RCVD,T_DKIM_INVALID autolearn=ham version=3.3.1
X-Original-To: archiver@seul.org
Delivered-To: archiver@seul.org
Received: from eugeni.torproject.org (eugeni.torproject.org [38.229.72.13])
	(using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits))
	(No client certificate requested)
	by moria.seul.org (Postfix) with ESMTPS id A7C6A1E0BFF
	for <archiver@seul.org>; Wed, 11 Jun 2014 08:11:40 -0400 (EDT)
Received: from eugeni.torproject.org (localhost [127.0.0.1])
	by eugeni.torproject.org (Postfix) with ESMTP id 755D02FAA9;
	Wed, 11 Jun 2014 12:11:36 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1])
 by eugeni.torproject.org (Postfix) with ESMTP id 5ADEE2FA95
 for <tor-talk@lists.torproject.org>; Wed, 11 Jun 2014 12:03:16 +0000 (UTC)
X-Virus-Scanned: Debian amavisd-new at eugeni.torproject.org
Received: from eugeni.torproject.org ([127.0.0.1])
 by localhost (eugeni.torproject.org [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id O3xScZo445Bw for <tor-talk@lists.torproject.org>;
 Wed, 11 Jun 2014 12:03:16 +0000 (UTC)
Received: from mail-ie0-x233.google.com (mail-ie0-x233.google.com
 [IPv6:2607:f8b0:4001:c03::233])
 (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits))
 (Client CN "smtp.gmail.com",
 Issuer "Google Internet Authority G2" (not verified))
 by eugeni.torproject.org (Postfix) with ESMTPS id 40B282FA92
 for <tor-talk@lists.torproject.org>; Wed, 11 Jun 2014 12:03:16 +0000 (UTC)
Received: by mail-ie0-f179.google.com with SMTP id tr6so2960237ieb.38
 for <tor-talk@lists.torproject.org>; Wed, 11 Jun 2014 05:03:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
 d=cyblings.on.ca; s=google;
 h=message-id:date:from:user-agent:mime-version:to:subject:references
 :in-reply-to:content-type:content-transfer-encoding;
 bh=4zTKP9vmPSwUNXz2Jn/9WT0UupxIGu5hoY9IZ8mizSA=;
 b=OjuJodFyQr3UBLyKPHAlwdUdQqm3ALTxrswrbycWBxrwS7EJenMWjN2XfG7COnRM6V
 xZSYkpu7QKSJEfqFhcB7wA2ZQGfAe3RLhFU2+AD1wLwJyc6rtz+WdKLKlhvBZXFGlrmN
 CREiTLkH5xXxQ7Ht3BUtm6/hqDLd0LNM5/fkI=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
 d=1e100.net; s=20130820;
 h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to
 :subject:references:in-reply-to:content-type
 :content-transfer-encoding;
 bh=4zTKP9vmPSwUNXz2Jn/9WT0UupxIGu5hoY9IZ8mizSA=;
 b=flEa/qMPPT9HeQ6F58nq41UPRhkA5hKJttUs1jiUIr9c+pQhwL9GZq1nmTLYvdVmY/
 qHUQR6D1s/navYfcCcZERxmIQzJZ/4rFqipbpEUo+UY2W7CqYRnatb/qVK/iz5jiBCLH
 XsZlsiKLtstBupCGsBB/kSF2DVXcFIw37b3uQeH8BxvIWASXg8GQCLj241UIXrcodKBC
 qmL3vlpCrQPQPbAVE8BK8+5GGriLa0xB3albIABBhKa4Hzis+HjqK3dhwAXYFZ2ca87R
 qtCcyo6p26YnAQYwmOi4Eu5xG4YVR6a+csmZhAXCK5DyrgKswUB3ZsbGc3fvgndknvx0
 heag==
X-Gm-Message-State: ALoCoQlreweJymXoDZk9e218Zf5BSG4q37NKYJ8GJgb1/sSWc+dWNesLf9wXaZPvClOwtsxqQiQ4
X-Received: by 10.50.18.12 with SMTP id s12mr53343179igd.22.1402488192935;
 Wed, 11 Jun 2014 05:03:12 -0700 (PDT)
Received: from [192.168.1.2] (69-196-152-198.dsl.teksavvy.com.
 [69.196.152.198])
 by mx.google.com with ESMTPSA id j3sm73047463igx.8.2014.06.11.05.03.11
 for <tor-talk@lists.torproject.org>
 (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128);
 Wed, 11 Jun 2014 05:03:11 -0700 (PDT)
Message-ID: <5398457A.7090503@cyblings.on.ca>
Date: Wed, 11 Jun 2014 08:03:06 -0400
From: krishna e bera <keb@cyblings.on.ca>
User-Agent: Mozilla/5.0 (X11; Linux x86_64;
 rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: tor-talk@lists.torproject.org
References: <53974AA4.2030302@gmail.com> <539782CD.4000202@cyblings.on.ca>
 <539811E4.9040106@gmail.com>
In-Reply-To: <539811E4.9040106@gmail.com>
X-Enigmail-Version: 1.6
Subject: Re: [tor-talk] Tor Jumphost
X-BeenThere: tor-talk@lists.torproject.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: tor-talk@lists.torproject.org
List-Id: "all discussion about theory, design,
 and development of Onion Routing" <tor-talk.lists.torproject.org>
List-Unsubscribe: <https://lists.torproject.org/cgi-bin/mailman/options/tor-talk>, 
 <mailto:tor-talk-request@lists.torproject.org?subject=unsubscribe>
List-Archive: <http://lists.torproject.org/pipermail/tor-talk/>
List-Post: <mailto:tor-talk@lists.torproject.org>
List-Help: <mailto:tor-talk-request@lists.torproject.org?subject=help>
List-Subscribe: <https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk>, 
 <mailto:tor-talk-request@lists.torproject.org?subject=subscribe>
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Errors-To: tor-talk-bounces@lists.torproject.org
Sender: "tor-talk" <tor-talk-bounces@lists.torproject.org>

On 14-06-11 04:23 AM, Wayland Morgan wrote:
>> 4) you trust the users ?
>>
>> 5) you trust the websites they will visit ?
> =

> Yes. I don't really want or need to know what sites they will be
> visiting and nightly rebuilds are a major success factor IMO with
> regards to this implementation. If I go the Windows route, I'd like put
> some restrictions in place in terms of TBB being the only choice of
> browser on the machine as well as restrict administrative activity to
> myself.
> =

> Have you or anyone else tried something like this?

I havent tried RDP access but have helped other organizations such as
internet caf=E9s and NGO service providers with public internet access.
There used to be cards you could insert into the pc that would reload
the system to an image on reboot.  Microsoft's Windows Steady State (a
software-based solution) wasnt immune to viruses, nor was system
restore.  For Tor users and their typically stricter privacy/security
requirements, once a day may not be enough - every session could be a
clean start.  Check your threat model etc...



-- =

tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk

