• shortwavesurfer
    link
    fedilink
    arrow-up
    1
    ·
    52 minutes ago

    Having the proof of work defense has been a game changer for the network. I’ve noticed a hell of a lot less unresponsive onion services. However, this is old news as it was released last August. Most everybody should have a version capable of doing the proof of work by now.

  • delirious_owl@discuss.online
    link
    fedilink
    arrow-up
    3
    ·
    edit-2
    7 hours ago

    I wish more companies understood that Onion Services have excellent protection from DoS attacks.

    You don’t even have to give away your keys to CloudFlare. Just get trigger happy with IP blocking and tell users to use the Onion address to bypass any blocks.

    • Possibly linuxOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 hours ago

      Honestly that’s not a terrible idea (assuming the target audience knows about Tor)

    • magic_lobster_party@fedia.io
      link
      fedilink
      arrow-up
      14
      arrow-down
      1
      ·
      11 hours ago

      It’s not like it’s going to consume electricity like Bitcoin.

      PoW was first conceptualized as an anti spam method. It’s just a little overhead to make it expensive to make DOS attacks. This makes perfect sense.

    • ziviz@lemmy.sdf.org
      link
      fedilink
      English
      arrow-up
      5
      ·
      edit-2
      11 hours ago

      At least it appears to be something that gets triggered. In theory, if a node is not under attack or heavy usage, this isn’t a consideration. Doesn’t seem to be a perfect solution as it still slows the traffic of legitimate users in the event of an attack. I don’t know the full details, but in the worse case it makes it easier to semi-DoS, maybe not by fully making a node unresponsive, but by making the service so painfully slow that users may give up on it.

      • shortwavesurfer
        link
        fedilink
        arrow-up
        1
        ·
        54 minutes ago

        Only for those users who do not have proof of work capability, they get put at the back of the line, but anybody with proof of work capability, which was released last August, will do the work and be put higher priority. I know some people who run seed nodes for Haveno-reto and they had major DDOS issues until they got PoW enabled. It was taking like 5 or 10 minutes to get connected to the network. And now it takes about 30 seconds.