[tor-project] Anti-censorship team meeting notes, 2024-06-20

Hey everyone!

Here are our meeting logs:
http://meetbot.debian.net/tor-meeting/2024/tor-meeting.2024-06-20-16.00.html

And our meeting pad:

Anti-censorship work meeting pad

···

--------------------------------
Anti-censorship
--------------------------------

Next meeting: Thursday, June 27 16:00 UTC
Facilitator: shelikhoo
^^^(See Facilitator Queue at tail)

Weekly meetings, every Thursday at 16:00 UTC, in #tor-meeting at OFTC
(channel is logged while meetings are in progress)

This week's Facilitator: onyinyang

== Goal of this meeting ==

Weekly check-in about the status of anti-censorship work at Tor.
Coordinate collaboration between people/teams on anti-censorship at the Tor Project and Tor community.

== Links to Useful documents ==
* Our anti-censorship roadmap:
* Roadmap:Development · Boards · Anti-censorship · GitLab
* The anti-censorship team's wiki page:
* Home · Wiki · The Tor Project / Anti-censorship / Team · GitLab
* Past meeting notes can be found at:
* The tor-project Archives
* Tickets that need reviews: from sponsors, we are working on:
* All needs review tickets:
* Merge requests · Anti-censorship · GitLab
* Sponsor 96 <-- meskio, shell, onyinyang, cohosh
* Sponsor 96: Rapid Expansion of Access to the Uncensored Internet through Tor in China, Hong Kong, & Tibet · The Tor Project · GitLab
* Sponsor 150 <-- meskio working on it
* Issues · Anti-censorship · GitLab

== Announcements ==

 \* No meeting July 4 \(Tor&#39;s midyear break\)

== Discussion ==

 \* theodorsm&#39;s thesis and DTLS library
     \* https://github.com/theodorsm/covert-dtls
     \* trouble integrating it into snowflake \- dependency/version issues
     \* breaking changes with the version of pion/stun used in snowflake
         \* but snowflake is already using the latest pion/stun?
     \* theodorsm forked the older version of pion/dtls used by snowflake and re\-applied the covert\-dtls changes
         \* snowflake is using pion/dtls v2\.2\.7 while latest is v2\.2\.11, but unreleased code is needed \(should come with v2\.2\.12\)
             \* as specified by current pion/webrtc v3\.2\.42 https://github.com/pion/webrtc/blob/v3.2.42/go.mod#L7

== Actions ==

== Interesting links ==

 \*

== Reading group ==
* We will discuss "" on
*
* Questions to ask and goals to have:
* What aspects of the paper are questionable?
* Are there immediate actions we can take based on this work?
* Are there long-term actions we can take based on this work?
* Is there future work that we want to call out in hopes that others will pick it up?

== Updates ==
Name:
This week:
- What you worked on this week.
Next week:
- What you are planning to work on next week.
Help with:
- Something you need help with.

cecylia (cohosh): 2024-06-20
Last week:
- wrote up a forum post to guide users through snowflake browser extension consent prompt
- Create a forum post to inform users of the new opt-in consent requirement (#97) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake WebExtension · GitLab
- found and fixed a bug with the consent prompt flow
- Snowflake will turn off on update or browser restart even if consented (#98) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake WebExtension · GitLab
- deployed version 0.8.3 of the snowflake extension
- showed onyinyang how to test and debug the Lox module in Tor Browser
- reproduced reported SQS rendezvous bug with two bridges
- SQS specified queue does not exist error (#40363) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- followed up on idea to set SQS anonymous access policies
- Look into SQS policies to allow anonymous access to broker and client queues (#40364) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- reviewed merge requests and updated dependencies
This week:
- followup on snowflake extension UX fixes
- take a look at shell's mv3 changes
- take a look at snowflake web and webext translations and best practices
- make changes to Lox encrypted bridge table
- Simplify BridgeLine struct and make it variable length (!147) · Merge requests · The Tor Project / Anti-censorship / lox · GitLab
- update wasm-bindgen fork to fix some bugs and hopefully upstream changes
Needs help with:

dcf: 2024-06-20
Last week:
Next week:
- review snowflake unreliable+unordered data channels rev2 Draft: Unreliable+unordered WebRTC data channel transport for Snowflake rev2 (!315) · Merge requests · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- open issue to have snowflake-client log whenever KCPInErrors is nonzero Deploy snowflake-server for QueuePacketConn buffer reuse fix (#40260) (#40262) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- parent: Improve bug discovery process (#40267) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab
- open issue to disable /debug endpoint on snowflake broker
- move snowflake-02 to new VM
Help with:
- tell me when to restart the brokers for Upgrade snowflake broker machine from Debian 10 (#40349) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab

meskio: 2023-06-20
Last week:
- clean up bridgestrap logs to make them more readable (bridgestrap#43)
- investigate why bridgestrap is filling polyanthum disk
- look into the builtin bridges being offline and figure more problems with bridgestrap to look into (tpa/team##41651)
- review and merge refactor on lyrebird copyLoop (lyrebird!50)
Next week:
- investigate what builtin bridges are offline (team#141)
- why is the status page mentioning vanilla part of obfs4 bridges? (rdsys#205)

Shelikhoo: 2024-06-06
Last Week:
- [Merge Request Waiting] Add Container Image Mirroring from Tor Gitlab to Docker Hub(Add Container Image Mirroring from Tor Gitlab to Docker Hub (!280) · Merge requests · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab)
- [Merge Request Waiting] Snowflake Performance Improvement rev2 (Draft: Unreliable+unordered WebRTC data channel transport for Snowflake rev2 (!315) · Merge requests · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab)
- Chrome Manifest V3 transition: Migrate to Manifest V3 (#29) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake WebExtension · GitLab
- Upgrade snowflake broker machine from Debian 10 (Upgrade snowflake broker machine from Debian 10 (#40349) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab)
- Address TTP-03-001 WP1: Snowflake broker vulnerability(TTP-03-001 WP1: Snowflake broker vulnerability (#40329) · Issues · The Tor Project / Anti-censorship / Pluggable Transports / Snowflake · GitLab)
- Vantage point maintaince
- merge request processing
- Merge request reviews
Next Week/TODO:
- Merge request reviews

onyinyang: 2023-06-20
Last week(s):
- MSR talk
- Working toward building tor-browser with lox-wasm binary to help out with
integration work as needed: ran into many issues trying to do this with Fedora
Next week:
- Global Gathering Application
- Fix Key Rotation MR for hyper v1
- Working toward building tor-browser with lox-wasm binary to help out with
integration work as needed: resolve build issues on Fedora
- Work on outstanding milestone issues: Lox Ready for Open Testing Call · Milestones · The Tor Project / Anti-censorship / lox · GitLab
- prepare for end to end testing of the Lox system with browser integration
Later:
- begin implementing some preliminary user feedback mechanism to identify bridge blocking based on Vecna's work
- improve metrics collection/think about how to show Lox is working/valuable
- sketch out Lox blog post/usage notes for forum

 \(long term things were discussed at the meeting\!\): https://pad.riseup.net/p/tor-ac-community-azaleas-room-keep
     \- brainstorming grouping strategies for Lox buckets \(of bridges\) and gathering context on how types of bridges are distributed/use in practice
         Question: What makes a bridge usable for a given user, and how can we encode that to best ensure we&#39;re getting the most appropriate resources to people?
             1\. Are there some obvious grouping strategies that we can already consider?
                 e\.g\., by PT, by bandwidth \(lower bandwidth bridges sacrificed to open\-invitation buckets?\), by locale \(to be matched with a requesting user&#39;s geoip or something?\)
             2\. Does it make sense to group 3 bridges/bucket, so trusted users have access to 3 bridges \(and untrusted users have access to 1\)? More? Less?

theodorsm: 2023-06-20
Last weeks:
- Writing my thesis
- Add randomized ClientHello fingerprints to library
Next weeks:
- Wait for pion upstream releases
- Test Snowflake fork with covert-dtls
- Taking time off (AFK)
Help with:
- Test Snowflake fork with covert-dtls

Facilitator Queue:
onyinyang shelikhoo meskio
1. First available staff in the Facilitator Queue will be the facilitator for the meeting
2. After facilitating the meeting, the facilitator will be moved to the tail of the queue

--
---
onyinyang

GPG Fingerprint 3CC3 F8CC E9D0 A92F A108 38EF 156A 6435 430C 2036