Oddbean new post about | logout
Erik | 1 years ago (raw) | export | reply | flag +115
 Relay operator using #cloudflare proxy, please do this to let people connect to your relay over #Tor.

Go to your site settings
Click in "security" -> "WAF" -> "Create Rule"

Fill the fields like this:

Field: Country
Operator: equals
Value: Tor


Action: Skip

Scroll a little and click in "more components to skip" and select "Security level". 
 
 Please for the love of god do this right now 🙏
nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjksp2emhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtmwwp6kyvfkwgc8gmpcvyenj6rgvdexzurpxqen2dfe0psksum2w94rgues0ym8gvnwx4nhqertxc68vvpkdf6xwettw9jxk734wpkqyg8qe764f8fu7ld5ufeklrsmep8kyjr277jp99wcvlr2xy69jpp99qpsgqqqqqqstdhzrf 
 nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjkspzpmhxue69uhkummnw3ezuamfdejsyg8qe764f8fu7ld5ufeklrsmep8kyjr277jp99wcvlr2xy69jpp99qpsgqqqqqqs5wuveg 
 Better yet. Don't use Cloudflare.🤣 
 Ideally, yes. Realistically, it's hard. Cloudflare is really useful... 
 That's how they subvert Internet protocols.  
 Cloudflare isn't good 
 Many times my relay was attacked by a DDOS, which Cloudflare helped to contain.  
 Many other ways to contain. @Relayable.org is hit constantly by DDoS from China. Freedom Tech on Cloudflare is contradictory. 
 Yes, but this was the one that solved the problem faster and at zero cost.

nostr:nevent1qqs2n3jnks296xtj27ed7yskzlq733lrmnwj6z5yefh2gykwxj2f08gpz3mhxue69uhhyetvv9ujuerpd46hxtnfdupzqfreww2efm2cq25kwql94pct29wes6vzga98rl4wrq8ganl6xqkxqvzqqqqqqyty0xxp 
 it looks like it just created a new problem. also there is no free lunch 
 Yes, just take the easy way. Like everyone else 
 Omg.. Finally, someone gets it 
 main issue FAMOUS DNS  henc CF helps out 
 CF gives DNS protection
can open also .onion PARALLELY also
above WAF settings are NOT always can be applied properly 
 nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjksprpmhxue69uhhyetvv9ujumn0wd68ytnrdakjuct4qgswpna42jwnea7mfcnnd78phjz0vfyx4aayz22ase7x5vf5tyzz22qrqsqqqqqpq45zvv 
 🙏
nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjksp2emhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtmwwp6kyvfkwgc8gmpcvyenj6rgvdexzurpxqen2dfe0psksum2w94rgues0ym8gvnwx4nhqertxc68vvpkdf6xwettw9jxk734wpkqyg8qe764f8fu7ld5ufeklrsmep8kyjr277jp99wcvlr2xy69jpp99qpsgqqqqqqstdhzrf 
 nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjkspz3mhxue69uhhyetvv9ujuerpd46hxtnfdupzpcx0k42f608hmd8zwdhcux7gfa3ys6hh5sfftkr8c633x3vsgffgqvzqqqqqqyzcjt5x 
 nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjkspzpmhxue69uhkummnw3ezuamfdejsyg8qe764f8fu7ld5ufeklrsmep8kyjr277jp99wcvlr2xy69jpp99qpsgqqqqqqs5wuveg 
 私のアイコンとかもTorで見れなくなってるし、あとで見えるようにしてみるか
nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjksprdmhxue69uhhyetvv9ujumn0wd68yurvv438xtnrdakj7q3qur8m24ya8nmakn38xmuwr0yy7cjgdtm6gy54mpnudgcngkgyy55qxpqqqqqqz4xc9t7 
 If you run a relay with Cloudflare and would like to allow Tor traffic, check out these steps: 
nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjkspzemhxue69uhhqatjwpkx2un9d3shjtnrdakj7q3qur8m24ya8nmakn38xmuwr0yy7cjgdtm6gy54mpnudgcngkgyy55qxpqqqqqqz23yx4x 
 Obrigado amigo.  
 100% many r already doing this @cloud fodder @PastaGringo 🤖⚡ 
wrangler - is it not perfect  
 Not with tor yet! I'll check if it's possible to implement it in #NosflareDeploy 
 Might be interesting for #nosflare no @Lux? 😅 
 @sandwich would it be possible to add a Tor support attribute to relays on https://nostr.watch/ ? 
 Not on the current iteration of nostr.watch, no. 

However, I'm rebuilding nostr.watch over the next 3 months and towards the end of the rebuild it will have tor support.  It requires that I have infrastructure to support the NIP-66 daemons operating through a SOCKS proxy. This has a number of complexities when it comes to monitoring a relay, namely, the failure rate and timeout requirements of TOR are significantly higher than with clearnet, complicating backoff and queue retry logic. Due to the higher complexity, it needs to remain as a lower-priority task so it doesn't block more critical developments. I am excited to get it complete, but need to burn through a pretty large list of items first. 
 How can I verify if it's working please? 
 Who uses this shitty network nowadays? If it was that "good", why does the agencies all over the world put people in custody for selling illegal shits at onion sites? 
 
 How to tell which relays support TOR? 
 Some, possibly all, Tor users are currently blocked. Cloudflare never loads the captcha.

Here's how the people hosting it could change their Cloudflare settings to allow Tor users through.

nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjks9jv890 
 Have you tried this?

nostr:nevent1qqsfuzpzrqkjgd4g8208we4npdcvvsy4s64p3gvmz2geyc0hzy9wjkspz3mhxue69uhhyetvv9ujuerpd46hxtnfdupzpcx0k42f608hmd8zwdhcux7gfa3ys6hh5sfftkr8c633x3vsgffgqvzqqqqqqyzcjt5x