Prerequisites
What kind of change?
Expose a config option
Problem & use case
Running the Tor package purely as a bridge/relay (no interest in hosting any app behind a .onion address on this instance), but enabling relay/bridge mode produces this warning in the logs:
[warn] Tor is currently configured as a relay and a hidden service. That's not very secure: you should probably run your hidden service in a separate Tor process, at least -- see https://bugs.torproject.org/tpo/core/tor/8742.
This appears to be because the package always runs onion-service hosting (for its SOCKS5 proxy / other integration purposes) in the same Tor process as the optional relay/bridge feature, per the current README. Tor's own upstream guidance (linked in the warning) is that relay and hidden-service roles shouldn't share a process, since an adversary observing the relay's traffic patterns could potentially help correlate/deanonymize the hidden service running alongside it in the same daemon.
Proposed solution
Request: a way to run this package in a bridge/relay-only configuration with no hidden service active at all — either a toggle to disable onion-service hosting independently of the relay/bridge setting, or a separate bridge-only variant/mode of the package that never sets HiddenServiceDir.
Alternatives considered
No response
Anything else?
No response
Prerequisites
What kind of change?
Expose a config option
Problem & use case
Running the Tor package purely as a bridge/relay (no interest in hosting any app behind a .onion address on this instance), but enabling relay/bridge mode produces this warning in the logs:
[warn] Tor is currently configured as a relay and a hidden service. That's not very secure: you should probably run your hidden service in a separate Tor process, at least -- see https://bugs.torproject.org/tpo/core/tor/8742.
This appears to be because the package always runs onion-service hosting (for its SOCKS5 proxy / other integration purposes) in the same Tor process as the optional relay/bridge feature, per the current README. Tor's own upstream guidance (linked in the warning) is that relay and hidden-service roles shouldn't share a process, since an adversary observing the relay's traffic patterns could potentially help correlate/deanonymize the hidden service running alongside it in the same daemon.
Proposed solution
Request: a way to run this package in a bridge/relay-only configuration with no hidden service active at all — either a toggle to disable onion-service hosting independently of the relay/bridge setting, or a separate bridge-only variant/mode of the package that never sets HiddenServiceDir.
Alternatives considered
No response
Anything else?
No response