Live data from Hacker News

Iran Shuts Down Major Websites and Https Protocol

news.ycombinator.com

131–140 of 151 posts

Re: Iran Shuts Down Major Websites and Https Protocol

#131
post #88
post #69

I live in Iran. The fact about the shut down is correct. I would also add that secure connection to servers inside Iran is possible. I've tried some, and they work. But trying to connect to services like Github and PivotalTracker, which we relay on in our starup, results in no response. Also I will note that the ssh protocol is the same. I can ssh into my university machine (inside Iran) but I can't access my rackspa…

Are you inside Iran right now?

Yes

Re: Iran Shuts Down Major Websites and Https Protocol

#132
post #69

I live in Iran. The fact about the shut down is correct. I would also add that secure connection to servers inside Iran is possible. I've tried some, and they work. But trying to connect to services like Github and PivotalTracker, which we relay on in our starup, results in no response. Also I will note that the ssh protocol is the same. I can ssh into my university machine (inside Iran) but I can't access my rackspa…

>One thing to add is that `Sara70` creator of this thread, mentions some non-related reason for this (The reason for this horrible shutdown is that the Iranian regime celebrates 1979 Islamic revolution tomorrow.) which is wrong. How do you know this?

I ask the same. How does she know this?

I know this because, this trend (shutting down secure network protocols) started on and off, like 1 year ago.

Re: Iran Shuts Down Major Websites and Https Protocol

#134

TOR has a blog post up about exactly what they've been able to determine about what Iran is doing: https://blog.torproject.org/blog/iran-partially-blocks-encry... Regarding HTTPS, it appears they detect and disrupt the SSL handshake. For those who can't access TOR's site, it may be useful to quote their post in full: “Over the past two days we've been hearing from, and working with, a number of Iranians having diffic…

“Update 2011-02-10 18:05 UTC: We are working on making our obfuscating proxy more stable and easier to deploy. If you can compile code, following these directions will help. We're also working on Amazon EC2 instances of obfsproxy for point and click deployment.”

“these directions” links to an email from Jacob Appelbaum:

https://lists.torproject.org/pipermail/tor-talk/2012-Februar...

“ [tor-talk] Help users in Iran reach the internet

Fri Feb 10 11:41:50 UTC 2012

Hi,

In the last 48 hours a major campaign of filtering has started in Iran - it started slow and now appears to be that nearly all SSL/TLS traffic is blocked on a few major Iranian ISPs. Details are rather rough but we're working on some solutions - we've long had an ace up our sleeves for this exact moment in the arms race but it's perhaps come while the User Interface edges are a bit rough still.

Here's the deal - we need people to run Tor bridges but a special kind of Tor bridge, one that does a kind of traffic camouflaging - we call it an obfuscated bridge. It's not easy to set up just yet because we were not ready to deploy this for everyone yet; it lacks a lot of analysis and it might even only last for a few days at the rate the arms race is progressing, if you could call it progress.

There are highly technical instructions here: https://www.torproject.org/projects/obfsproxy-instructions.h...

Currently if you run such a bridge, you'll either need to manually tell us (via email to tor-assistants at torproject.org ) about it or you'll need to share these bridges with people you want to help directly. It's a pain and we're working on it.

Here's a bug report where we're working around the clock to get stuff going in a user friendly manner: https://trac.torproject.org/projects/tor/ticket/5009#comment...

This kind of help is not for the technically faint of heart but it's absolutely needed for people in Iran, right now. It's likely that more than ~50,000 - ~60,000 Tor users may drop offline.

Watch this graph for an idea of the censorship impact of directly connecting Tor users: https://metrics.torproject.org/users.html?graph=direct-users...

Here's the same graph but for Tor bridge users in Iran: https://metrics.torproject.org/users.html?graph=bridge-users...

We're working on easy to use client software and if you're in Iran or need one desperately, please email help at rt.torproject.org. We'll try to get you a working obfsproxy bridge address and working client software.

All the best, Jacob ”

Re: Iran Shuts Down Major Websites and Https Protocol

#135
post #44

Earlier quoted context omitted.

What parts of Wikipedia did they censor? Quite interested in that.

The article Virgin Killer was blocked for four days because of "child pornography". https://en.wikipedia.org/wiki/Virgin_Killer https://en.wikipedia.org/wiki/Wikipedia#Sexual_content

Thanks for the info!

Re: Iran Shuts Down Major Websites and Https Protocol

#138
The invasion of Iran has been planned for many years. The occupation of the two countries immediately to the west and east of Iran were preliminary steps in the same long term military campaign.

I assume that this level of internet censorship will go away because it is playing into the hands of Western imperial propagandists who are working hard to "justify" or motivate the next major invasion.

Re: Iran Shuts Down Major Websites and Https Protocol

#139
post #33

FYI, Jacob Applebaum just asked[1] people to set up TOR bridges using a new protocol called obfsproxy[2]. 1: https://twitter.com/#!/ioerror/status/167922546807812096 2: https://www.torproject.org/projects/obfsproxy-instructions.h...

Would a TOR exit relay be better than a bridge?

In general, yes. In this specific scenario, without the obfsproxy bridges, people in Iran may not be able to connect to TOR at all, in which case an exit node won't help them very much.

Re: Iran Shuts Down Major Websites and Https Protocol

#140
post #132

Earlier quoted context omitted.

>One thing to add is that `Sara70` creator of this thread, mentions some non-related reason for this (The reason for this horrible shutdown is that the Iranian regime celebrates 1979 Islamic revolution tomorrow.) which is wrong. How do you know this?

I ask the same. How does she know this? I know this because, this trend (shutting down secure network protocols) started on and off, like 1 year ago.

As I understand it, that was slowing down (like 10x) of SSL, not disabling it completely. It could have simply been a live test of the mechanism they're using right now, and they could be deploying the mechanism right now because of the anniversary. (Or because of Kim Jong-Un's death ;-)
Post reply on HN