2.4 KiB
Conjure
Conjure is an anti-censorship tool in the refraction networking (a.k.a. decoy routing) lineage of circumvention systems. The key innovation of Conjure is to turn the unused IP address space of deploying ISPs into a large pool of phantom proxies that users can connect to. Due to the size of unused IPv6 address space and the potential for collateral damage against real websites hosted by the deploying ISPs, Conjure provides an effective solution to the problem of censors enumerating deployed bridges or proxies.
Conjure is currenty deployed on the University of Colorado network and a small to mid size ISP in Michigan.
Conjure Pluggable Transport for Tor
This repository is an implementation of both the client and bridge side of a Tor pluggable transport that uses the deployed Conjure network to allow users to connect to the Tor network. The client side calls the gotapdance
library to communicate with deployed Conjure stations and route client traffic through the phantom proxies assigned by the station. The bridge side receives haproxy connections from the Conjure station that wrap the proxied client traffic.
Deployment details
We currently have deployed a low capacity Conjure bridge named Haunt. To connect through this bridge, use the torrc
file in the client/
directory as follows:
cd client/
tor -f torrc
Warnings
This tool and the deployment is still under active development. We are still working on securing the connection between the deployed Conjure stations and the Conjure bridge. We are also working on improving the censorship resistance of the registration connection between the client and the station. Do not expect this to work out of the box in all areas.
The Conjure station sometimes suffers from a heavy load of users. When this happens, connections will fail. If you are testing this out, try waiting awhile and trying again later.
Conjure development
Due to the complex nature of the Conjure deployment, it can be difficult to set up a local development environment. Check out phantombox for an automated libvirt-based setup that works on Linux.