Hacker Newsnew | past | comments | ask | show | jobs | submit | mahrud's commentslogin

Thanks for the heads up, should be fixed now.

I knew Tor Project has been shifting away from "hidden services" for a while but I missed the email where teor clarified things for blog posts and such in late April [0]. Also, I wanted to avoid using "onion resolver" as it would be a worse misnomer than "hidden resolver."

Re. OnionBalance: we're working on a few ideas for this, but nothing conclusive yet.

0. https://lists.torproject.org/pipermail/tor-dev/2018-April/01...


> I knew Tor Project has been shifting away from "hidden services" for a while

I read the article after your correction, and on reading the `What are Tor onion services?` section, I thought “How nice, they’re using the new terminology to go with the new v3 service address”.

But then, just below, I saw the https://blog.cloudflare.com/content/images/2018/05/image_3.p... diagram still mention “hidden service” and thought “an old image slipped thru, tho” :)

Also, wouldn’t a “1111dns4tor” prefix look better? :)


> Also, wouldn’t a “1111dns4tor” prefix look better? :)

Yes, it would but the .onion addresses use base32 and '1' isn't in the alphabet used: https://en.wikipedia.org/wiki/Base32


> but the .onion addresses use base32 and '1' isn't in the alphabet used

I see. Oh well, at least Google and Quad9 can’t, either (base32 digits stop at ‘7’).


You could have done IIIIdns4tor :)


It would be iiiidns4tor because, while base-32 is commonly implemented with capital letters, the onion service ID is lower cased.


Also, farming an onion with that many fixed characters takes a good few hundreds or thousands of years.


This is a v3 onion service, it should be easier to find prefixes, plus CF (and other companies like FB) have done pretty long prefixes via brute force (they have a lot of computers)


For OnionBalance, on the mailing list they mentioned that while it is more difficult on v3, they are implementing HSFETCH/HSPOST[0]. I'm not sure of any other load balancing approaches outside of this. In the meantime I figure y'all have this all going through one hidden service endpoint or maybe share some priv keys or wrote some custom code or something.

0 - https://lists.torproject.org/pipermail/tor-dev/2018-April/01...


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: