Differences between revisions 1 and 2
Revision 1 as of 2002-07-16 09:42:23
Size: 1508
Editor: pw
Comment:
Revision 2 as of 2004-07-25 12:05:28
Size: 1828
Editor: c-66-56-21-72
Comment:
Deletions are marked like this. Additions are marked like this.
Line 12: Line 12:
  * http://sourceforge.net/projects/arbitroweb/   ''Note From Author of Arbitroweb (Joakim Erdfelt): Current version (0.6) provides little protection for the end user when javascript is enabled in the end users browser. Malicious sites can exploit this flaw. (See: Cross Site Scripting Attack)''
  * Official Project Page: http://sourceforge.net/projects/arbitroweb/
  * Live Arbitroweb: http://anon.luniac.com/

We've had discussions about using anonymity software on the nodes before. One of the major reasons for it is to protect the node owners liability (eg. if one of their users abuses the system they can't get in trouble for it). However since we also want to build a reliable and scalable solution it means we need a way of removing abusive patterns of use, as you can imagine this has the potential to get pretty tricky. One good solution is ExtrusionDetection (or Reverse IntrusionDetection), the big problem we have with that right now is that there's no central aggregation point where an ExtrusionDetection box could go and most of the leaf nodes are either commercial AccessPoints or old hardware like FreeGeek boxes, neither of which have enough CPU power to run something like snort.

Here's a list of some software that might be interesting.


[CategorySoftware]

AnonymitySoftware (last edited 2007-11-23 18:00:53 by localhost)