<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Michael's Blog &#187; Uncategorized</title>
	<atom:link href="http://michael.procter.org.uk/category/uncategorized/feed/" rel="self" type="application/rss+xml" />
	<link>http://michael.procter.org.uk</link>
	<description></description>
	<lastBuildDate>Thu, 15 Sep 2011 05:46:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='michael.procter.org.uk' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Michael's Blog &#187; Uncategorized</title>
		<link>http://michael.procter.org.uk</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://michael.procter.org.uk/osd.xml" title="Michael&#039;s Blog" />
	<atom:link rel='hub' href='http://michael.procter.org.uk/?pushpress=hub'/>
		<item>
		<title>Secure Web Surfing</title>
		<link>http://michael.procter.org.uk/2010/02/28/secure-web-surfing/</link>
		<comments>http://michael.procter.org.uk/2010/02/28/secure-web-surfing/#comments</comments>
		<pubDate>Sun, 28 Feb 2010 20:03:20 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://michael.procter.org.uk/?p=16</guid>
		<description><![CDATA[Is CMU&#8217;s Perspectives project the best way to secure web browsing?  This chap seems to think so, and I broadly agree.  However, there is a potential privacy leak when using Perspectives that is enough to stop me using it all the time.  Then I realised that with a trivial change, I could have the best [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=michael.procter.org.uk&amp;blog=1435391&amp;post=16&amp;subd=mprocter&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Is CMU&#8217;s <a href="http://www.cs.cmu.edu/~perspectives/">Perspectives</a> project the best way to secure web browsing?  <a href="http://blogs.techrepublic.com.com/security/?p=2516">This chap</a> seems to think so, and I broadly agree.  However, there is a potential privacy leak when using Perspectives that is enough to stop me using it all the time.  Then I realised that with a trivial change, I could have the best of both worlds &#8211; using Perspectives whilst preserving my privacy.</p>
<p><span id="more-16"></span>I like the <a title="Perspectives" href="http://www.cs.cmu.edu/~perspectives/">Perspectives project</a>:  the Firefox plugin gives me confidence that I am not about to be the victim of a MITM attack, and it also gives me enough confidence in the longevity of a certificate that I can usefully accept self-signed certificates for many sites.</p>
<p>One minor concern that I have is that my browsing habits could be determined by those that run the notary services.  The Notary Server Privacy Policy states:</p>
<p id="line185" style="padding-left:30px;">All notary servers adhere to a strict policy of never recording client IP addresses, period.  The Perspectives project and its software will only contact Notary servers that follow this privacy policy.  Your privacy is important to us.</p>
<p>I trust these people (although I&#8217;ve never met them!), but I&#8217;d prefer not to <em>need</em> to trust them.  For all I know, the traffic to/from CMU might already be monitored by some 3rd party unbeknownst to them.</p>
<p>I like the <a title="The Onion Router" href="http://www.torproject.org/">Tor project</a> for several reasons, but I find it too slow for normal use.  However, if I could use Tor for my notary requests&#8230;</p>
<p>FoxyProxy is a useful Firefox plugin.  Once installed with Tor support, I can add the following URL pattern to my Tor proxy rule:</p>
<pre>*.ron.lcs.mit.edu:8080/*</pre>
<p>And all the notary lookups will be performed over Tor!</p>
<p>If you plan to do this yourself, I&#8217;d recommend confirming correct operation with <a href="http://www.wireshark.org/">Wireshark</a>.  Periodic checking with Wireshark also strikes me as wise, in case the notary addresses change and you need to update the rule.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/mprocter.wordpress.com/16/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/mprocter.wordpress.com/16/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/mprocter.wordpress.com/16/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=michael.procter.org.uk&amp;blog=1435391&amp;post=16&amp;subd=mprocter&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://michael.procter.org.uk/2010/02/28/secure-web-surfing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bfb4056a662101da808d05457455504f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">mprocter</media:title>
		</media:content>
	</item>
	</channel>
</rss>
