Pluggable Transport using WebRTC, inspired by Flashproxy.
Find a file
Cecylia Bocovich b9cc54b3b7 Send shutdown signal to shutdown open connections
Normally all dangling goroutines are terminated when the main function
exits. However, for projects that use a patched version of snowflake as
a library, these goroutines continued running as long as the main function
had not yet terminated. This commit has all open SOCKS connections close
after receiving a shutdown signal.
2020-12-05 15:50:16 -05:00
broker Sort snowflake-ips stats by country count. 2020-11-27 11:20:40 -08:00
client Send shutdown signal to shutdown open connections 2020-12-05 15:50:16 -05:00
common Note that isRestrictedFiltering is no longer used 2020-11-20 01:15:16 -05:00
doc Update broker stats to include info on NAT types 2020-08-24 09:39:17 -04:00
probetest Add a stub sid to probetest answer 2020-11-18 15:57:51 -05:00
proxy Use remote probe to determine proxy NAT type 2020-11-20 01:13:18 -05:00
server USERADDR support for turbotunnel sessions. 2020-04-23 16:03:02 -06:00
.gitignore Add a remote service to test NAT compatability 2020-10-29 11:03:51 -04:00
.gitlab-ci.yml Use go modules to build android library 2020-07-14 09:16:23 -04:00
.gitmodules Remove proxy/translation submodule 2020-04-16 10:01:18 -04:00
.travis.yml Update .travis.yml for proxy/ code removal 2020-04-22 11:07:57 -04:00
CONTRIBUTING.md Remove mentions of coffeescript from docs 2019-07-10 10:49:53 +02:00
go.mod Implement NAT discovery (RFC 5780) at the client 2020-07-06 13:16:03 -04:00
go.sum Implement NAT discovery (RFC 5780) at the client 2020-07-06 13:16:03 -04:00
LICENSE Update license 2020-03-19 15:40:11 -04:00
README.md Rename proxy-go/ directory to proxy/ 2020-04-22 11:11:16 -04:00

Snowflake

Build Status

Pluggable Transport using WebRTC, inspired by Flashproxy.

Table of Contents

Usage

cd client/
go get
go build
tor -f torrc

This should start the client plugin, bootstrapping to 100% using WebRTC.

Dependencies

Client:


More Info

Tor can plug in the Snowflake client via a correctly configured torrc. For example:

ClientTransportPlugin snowflake exec ./client \
-url https://snowflake-broker.azureedge.net/ \
-front ajax.aspnetcdn.com \
-ice stun:stun.l.google.com:19302
-max 3

The flags -url and -front allow the Snowflake client to speak to the Broker, in order to get connected with some volunteer's browser proxy. -ice is a comma-separated list of ICE servers, which are required for NAT traversal.

For logging, run tail -F snowflake.log in a second terminal.

You can modify the torrc to use your own broker:

ClientTransportPlugin snowflake exec ./client --meek

Test Environment

There is a Docker-based test environment at https://github.com/cohosh/snowbox.

FAQ

Q: How does it work?

In the Tor use-case:

  1. Volunteers visit websites which host the "snowflake" proxy. (just like flashproxy)
  2. Tor clients automatically find available browser proxies via the Broker (the domain fronted signaling channel).
  3. Tor client and browser proxy establish a WebRTC peer connection.
  4. Proxy connects to some relay.
  5. Tor occurs.

More detailed information about how clients, snowflake proxies, and the Broker fit together on the way...

Q: What are the benefits of this PT compared with other PTs?

Snowflake combines the advantages of flashproxy and meek. Primarily:

  • It has the convenience of Meek, but can support magnitudes more users with negligible CDN costs. (Domain fronting is only used for brief signalling / NAT-piercing to setup the P2P WebRTC DataChannels which handle the actual traffic.)

  • Arbitrarily high numbers of volunteer proxies are possible like in flashproxy, but NATs are no longer a usability barrier - no need for manual port forwarding!

Q: Why is this called Snowflake?

It utilizes the "ICE" negotiation via WebRTC, and also involves a great abundance of ephemeral and short-lived (and special!) volunteer proxies...

Appendix

-- Testing with Standalone Proxy --
cd proxy
go build
./proxy

More documentation on the way.

Also available at: torproject.org/pluggable-transports/snowflake