asciilifeform: gotta love how the spooks insist on calling keys 'cryptovariables,' so you can almost tell where the monkey plagiarized open source docs and where he actually spewed his own text
asciilifeform: inquisitor scans the whole site, then politely asks for snapshots of the dirty disks...
asciilifeform: not that many people have tor running on a hosted box
asciilifeform: this isn't exactly worthless info by itself, though
asciilifeform: the fellow running the port scan will see that the machine runs tor, and that's it
asciilifeform: even the lowest luser knows, i imagine, that you set up the service (e.g. http) on a local port, and expose only the tor port.
asciilifeform: if you configure the damn thing right, the only external port is TOR's standard one
asciilifeform: these fellows ever heard of iptables?
asciilifeform: pg. 16: "In our time in the lab, we found that running an nmap on a node that isoffering a hidden service will turn up the port that the hidden service is using to deal with incoming connections. It can then be directly connected to, outside of Tor."
asciilifeform: "(U) 5. Oppressed Alice, who lives in a repressive country (no or limited free speech) and wants to talk about things contrary to her governments positions. The countries he used as examples were France, Germany (prohibitions on fascist writings?) and the US (not sure what he meant here?)."
asciilifeform: and this is completely aside from the 'toilet in the kitchen' problems you get.
asciilifeform: a basic and inescapable problem in something like 'pgp in browser' is that the user has no way to tell if he's actually using what he thinks he's using.
asciilifeform: inevitably some moron succumbs to the temptation of buying false papers, he buys from a stoolie; and game over.
asciilifeform: i often wonder if all the jokers demanding documents are doing so to feed honeypots like the late SR
asciilifeform: pankkake: when's the last time you updated the software in your microwave oven?
asciilifeform: pankkake: does a spoon come with professional support? believe it or not, it is possible to build an artifact which functions as described, until it is physically destroyed.
asciilifeform: pankkake: more like a spoon. the latter is guaranteed not to stab you in the eye spontaneously, if used as prescribed. by pure physical fact of it being what it is.
asciilifeform: jurov: judging by the 'trillionaire' snafu, they still use BCD.
asciilifeform: afaik once you're in the eu, you can wander off to some other eu country
asciilifeform: mircea_popescu: interestingly, the 'tor foundation' is a lot like the 'bitcoin foundation' but more so. they have a list of 'authority' nodes that every client prefers by default.
asciilifeform: no way in hell do these buggers not operate several Tb/sec worth of nodes
asciilifeform: 'owns and operates' counts as 'targeting' now ?
asciilifeform: i do wonder about the fellows who built 'Glomar Explorer'. all dead/senile by now?
asciilifeform: i don't think the ussr lived to get fiber taps right
asciilifeform: the cream of the russian navy was rusting and irradiating walrus, last i checked
asciilifeform: even if you paid for the boat and so forth
asciilifeform: see, don't misunderstand, nato doesn't formally own all the oceanic fibers, etc. but if someone can cut your fiber and weld it back with a magic box inline, and you can't do squat about it... you don't own said fiber.
asciilifeform: it would be interesting to see an internet that doesn't consist mainly of u.s. telecom oligopolies.
asciilifeform: for example, it now is (or soon will be, depending on what document you believe) to sell a car in the u.s. without a remote-disable radio.
asciilifeform: i suspect that the screws will be tightened soon, and the rules that apply to telephone exchanges (illegal to run without user-friendly backdoor at your own expense) will be applied elsewhere.
asciilifeform: L's system, lame as it was for obvious reasons, was unusual in that regard.
asciilifeform: damn near everything has an obvious administrative backdoor by default
asciilifeform: my suspicion is that the inquisitor (the fellow who actually ran the show) - and definitely the judge - weren't really prepared for the 'we don't have a backdoor already' statement by L