Re: basic ssl proxy question

From: Bjorn Randell (Bjorn_at_AlphaMale.me.uk)
Date: 06/29/03


Date: Sun, 29 Jun 2003 21:28:21 +0100


"Fred Holm" <youdontspamme@hotmail.com.invalid> wrote in message
news:BrrKa.7073$8Q6.77191@news.uswest.net...
> I presume, you know about the german anon proxy JAP (java
> anonymous proxy), right?
> Which, of course, can only be used for surfing, but
> not for file sharing and the like...

Actually no, I went and found it though and find it rather intriguing.

> This interesting program, running as a java client on one's own
> computer, establishes an encrypted channel to the proxy server/proxy
> servers mix cascade.
>
> It also offers an option "I'm forced to use a proxy", which allows for
> entering a (corporate etc.) proxy server (http, https or socks), which
> initiates the connections and only then contacts the JAP proxy
> server(s).

Yup, looking at the tab right now.

> I suppose/hope, using a "normal" (http, https or socks) proxy first,
> before the real JAP server(s), doesn't weaken/defeat any encryption.
> At least, that's what JAP support wrote to me, though in a very brief
> and vague reply.
> Do you know more about this?

What you need to find out is how data from an HTTP or SOCKs proxy is going
to get encrypted between the first JAP mix server, and it! I don't see how
this can be done. I'm not entirely so sure that is possible... maybe if
you could coax a technical explanation out of JAP tech support as to how
this is going to happen. If you do get something back, please post/email it
to me so I can take a look, I'd be _very_ curious as to how this could be
done securely.

I'm kinda curious though, why you would require an extra hop between you and
the JAPs system? It encrypts the data and anonymity is guaranteed across
the mix servers so I don't see why you need to worry.

-- 
Regards,
Bjorn Randell
Bjorn@AlphaMale.me.uk or ICQ #137732


Relevant Pages

  • Re: basic ssl proxy question
    ... If you configure the socks server to connect to ... tunnel via JAP. ... as a proxy for https traffic). ... Though I am still not 100% sure that using an ssl proxy for tunneling ...
    (comp.security.misc)
  • Re: Iran: Internet-Zensur
    ... Proxy zu finden, der nicht vom ISP geblockt wird (JAP blocken sie ... Prev by Date: ... Next by Date: ...
    (de.soc.zensur)
  • Re: Netgear router site blocking question...
    ... > installing a program called JAP? ... I understand it runs a local proxy ... > server but how can it manage to totally ignore what i tell the router to ... relays the packets back and forth between the client and destination. ...
    (alt.computer.security)
  • Anonymous surfing
    ... does anybody know good anonymizing software? ... Optimally the software would encrypt transmitted data, ... (using a proxy e.g.). ... I personally know JAP which is developed by the Technical University of ...
    (comp.security.misc)