[tor-project] Anti-censorship team meeting notes, 2024-03-14

Hey everyone!

Here are our meeting logs:
http://meetbot.debian.net/tor-meeting/2024/tor-meeting.2024-03-14-15.57.html

And our meeting pad:

Anti-censorship work meeting pad

···

--------------------------------
Anti-censorship
--------------------------------

Next meeting: Thursday, March 21 16:00 UTC
Facilitator: meskio

Weekly meetings, every Thursday at 16:00 UTC, in #tor-meeting at OFTC
(channel is logged while meetings are in progress)

This week's Facilitator: shelikhoo

== Goal of this meeting ==

Weekly check-in about the status of anti-censorship work at Tor.
Coordinate collaboration between people/teams on anti-censorship at the Tor Project and Tor community.

== Links to Useful documents ==
* Our anti-censorship roadmap:
* Roadmap:Development · Boards · Anti-censorship · GitLab
* The anti-censorship team's wiki page:
* Home · Wiki · The Tor Project / Anti-censorship / Team · GitLab
* Past meeting notes can be found at:
* The tor-project Archives
* Tickets that need reviews: from sponsors, we are working on:
* All needs review tickets:
* Merge requests · Anti-censorship · GitLab
* Sponsor 96 <-- meskio, shell, onyinyang, cohosh
* Sponsor 96: Rapid Expansion of Access to the Uncensored Internet through Tor in China, Hong Kong, & Tibet · The Tor Project · GitLab
* Sponsor 150 <-- meskio working on it
* Issues · Anti-censorship · GitLab

== Announcements ==
- Elections in Russia (March 14 - 17)

== Discussion ==

Last week:
* should we deprecate docker-snowflake-proxy?
* There is now a snowflake Dockerfile for the proxy in the main snowflake repo
* Automatically build container on release and push to our registry. (!246) · Merge requests · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
* do we need to do something to integrate it in our release process?
* yes, we will deprecated
* shelikhoo will move that forward in this issue: migrate docker image to this repo (#40345) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
* Fastly domain fronting updates
* https://github.com/net4people/bbs/issues/309
* Fastly blocked domain fronting (#135) · Issues · The Tor Project / Anti-censorship / Team · GitLab
New:
* PTs removed from ios onionbrowser because of RAM constraints
* Bring the Obfs4proxy and Snowflake back. (IOS) · Issue #1106 · guardianproject/orbot · GitHub
* snowflake-webextension still (2024-03-12) being rejected from Mozilla add-ons? Mozilla Community Pastebin/Vh9jKk5g (JavaScript)
* Error: Command failed: git submodule update --init -- translation
* fatal: not a git repository (or any of the parent directories): .git
* 0.7.3 rejected from mozilla (#89) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake WebExtension · GitLab

== Actions ==

== Interesting links ==

 \* https://github.com/getlantern/broflake Lantern&#39;s new Snowflake\-like, uses QUIC, WASM, WebTransport

== Reading group ==
* We will discuss "" on
*
* Questions to ask and goals to have:
* What aspects of the paper are questionable?
* Are there immediate actions we can take based on this work?
* Are there long-term actions we can take based on this work?
* Is there future work that we want to call out in hopes that others will pick it up?

== Updates ==
Name:
This week:
- What you worked on this week.
Next week:
- What you are planning to work on next week.
Help with:
- Something you need help with.

cecylia (cohosh): 2024-03-14
Last week:
- reviewed Lox MRs
- refactored Lox's bridge_replace function
- Refactor bridge_replace in lox-library crate (!143) · Merge requests · The Tor Project / Anti-censorship / lox · GitLab
- improved error types for lox-library::proto::*::request functions
- Use more descriptive error for lox proto functions (!144) · Merge requests · The Tor Project / Anti-censorship / lox · GitLab
- removed fixed length fields from Lox's BridgeLine struct
- Simplify BridgeLine struct and make it variable length (!147) · Merge requests · The Tor Project / Anti-censorship / lox · GitLab
- responded to mozilla addon store rejection
This week:
- open MR to change front domain for OONI tests
- deploy snowflake sqs fix
- followup on web extension rejection from mozilla
- compile a list of next-steps for lox
- update wasm-bindgen fork to fix some bugs and hopefully upstream changes
- tor-browser-build updates for lox wasm + bindings generation
- Conjure bridge maintenance
Needs help with:

dcf: 2024-03-14
Last week:
- azure CDN bookkeeping Changes · Snowflake costs · Wiki · The Tor Project / Anti-censorship / Team · GitLab
- answered a question about Snowflake proxies Start disabled (#40346) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
Next week:
- review draft MR for unreliable data channels Draft: Unreliable+unordered WebRTC data channel transport for Snowflake (!219) · Merge requests · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- open issue to have snowflake-client log whenever KCPInErrors is nonzero Deploy snowflake-server for QueuePacketConn buffer reuse fix (#40260) (#40262) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- parent: Improve bug discovery process (#40267) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- open issue to disable /debug endpoint on snowflake broker
- move snowflake-02 to new VM
Help with:

meskio: 2023-03-14
Last week:
- make obfs4-bridge docker image work in armv7 (docker-obfs4-bridge#18)
- publish bridgestrap collector metrics every hour (bridgestrap#39)
- export bridge tests results on assignments.log (rdsys!280)
- document new assignments.log format on the metrics website (metrics/website!71)
- fix moat not distributing bridges config problem (rdsys#190)
Next week:
- captcha moat in rdsys

Shelikhoo: 2024-03-14
Last Week:
- [Merge Request Done] Remove translation for Tor Project URL Remove translation for Tor Project URL (!278) · Merge requests · The Tor Project / Anti-censorship / rdsys · GitLab
- Write WebTunnel Blog Post Draft
- Prepare for 3-min presentation
- Merge request reviews(a lots of them!)
Next Week/TODO:
- [Research] Inspect Snowflake Situation In China
- Prepare for 3-min presentation

onyinyang: 2023-03-14
Last week(s):
- continued prep for HACS/DRL meeting
- Sync-test rebase

 This week:
     \- continue prep for HACS/DRL meeting
     \- Attend HACS, then RWC, then DRL meeting
     \(later things\)
     \- improve metrics collection/think about how to show Lox is working/valuable
     \- sketch out Lox blog post/usage notes for forum
     \- attempt hyper upgrade again

 \(long term things were discussed at the meeting\!\): https://pad.riseup.net/p/tor-ac-community-azaleas-room-keep
     \- brainstorming grouping strategies for Lox buckets \(of bridges\) and gathering context on how types of bridges are distributed/use in practice
         Question: What makes a bridge usable for a given user, and how can we encode that to best ensure we&#39;re getting the most appropriate resources to people?
             1\. Are there some obvious grouping strategies that we can already consider?
                 e\.g\., by PT, by bandwidth \(lower bandwidth bridges sacrificed to open\-invitation buckets?\), by locale \(to be matched with a requesting user&#39;s geoip or something?\)
             2\. Does it make sense to group 3 bridges/bucket, so trusted users have access to 3 bridges \(and untrusted users have access to 1\)? More? Less?

theodorsm: 2023-03-14
Last weeks:
- Created a setup for extracting fingerprints from DLTS handshakes and analyzed the previous webrtc/dtls data sets from GitHub - kyle-macmillan/snowflake_fingerprintability. Found more fingerprints than presented in the original paper, but the fingerprints are not present in newer snowflake versions.
- Contacted Sean DuBois at Pion, he is very supporting of the project and happy to merge features related to anti-censorsip
- Started on a setup for collecting DTLS handshakes to be used for mimicking
- Exploring and planning features for anti-fingerprinting techniques to implement in the Pion lib.
Next weeks:
- Creating a setup for generating DTLS handshakes of web-browsers with selenium/playwright. This will hopefully generate common handshakes/fingerprints
Help with: