Merge branch 'master' of mia06/cloudflare-tor into master

This commit is contained in:
Jeff Cliff 2019-04-06 02:34:03 +00:00 committed by Gogs
commit f5303e0bb0
3 changed files with 312 additions and 1 deletions

View File

@ -1,101 +1,323 @@
abby.ns.cloudflare.com abby.ns.cloudflare.com
ada.ns.cloudflare.com
adam.ns.cloudflare.com
adi.ns.cloudflare.com
adrian.ns.cloudflare.com adrian.ns.cloudflare.com
aida.ns.cloudflare.com aida.ns.cloudflare.com
alan.ns.cloudflare.com alan.ns.cloudflare.com
albert.ns.cloudflare.com albert.ns.cloudflare.com
alex.ns.cloudflare.com alex.ns.cloudflare.com
alexis.ns.cloudflare.com
algin.ns.cloudflare.com
ali.ns.cloudflare.com
alice.ns.cloudflare.com
alina.ns.cloudflare.com alina.ns.cloudflare.com
alla.ns.cloudflare.com alla.ns.cloudflare.com
amanda.ns.cloudflare.com amanda.ns.cloudflare.com
amber.ns.cloudflare.com amber.ns.cloudflare.com
amir.ns.cloudflare.com
amy.ns.cloudflare.com amy.ns.cloudflare.com
andy.ns.cloudflare.com andy.ns.cloudflare.com
anirban.ns.cloudflare.com
anna.ns.cloudflare.com anna.ns.cloudflare.com
anuj.ns.cloudflare.com
apollo.ns.cloudflare.com apollo.ns.cloudflare.com
april.ns.cloudflare.com
ara.ns.cloudflare.com
aragorn.ns.cloudflare.com
arch.ns.cloudflare.com arch.ns.cloudflare.com
aria.ns.cloudflare.com aria.ns.cloudflare.com
arnold.ns.cloudflare.com
art.ns.cloudflare.com art.ns.cloudflare.com
asa.ns.cloudflare.com asa.ns.cloudflare.com
ashley.ns.cloudflare.com
athena.ns.cloudflare.com athena.ns.cloudflare.com
austin.ns.cloudflare.com austin.ns.cloudflare.com
barbara.ns.cloudflare.com
bart.ns.cloudflare.com
bayan.ns.cloudflare.com
beau.ns.cloudflare.com
becky.ns.cloudflare.com
bella.ns.cloudflare.com bella.ns.cloudflare.com
ben.ns.cloudflare.com ben.ns.cloudflare.com
beth.ns.cloudflare.com beth.ns.cloudflare.com
betty.ns.cloudflare.com
bill.ns.cloudflare.com
bob.ns.cloudflare.com bob.ns.cloudflare.com
bonnie.ns.cloudflare.com
boyd.ns.cloudflare.com
brad.ns.cloudflare.com
brenda.ns.cloudflare.com
brett.ns.cloudflare.com
brit.ns.cloudflare.com brit.ns.cloudflare.com
burt.ns.cloudflare.com
candy.ns.cloudflare.com
carl.ns.cloudflare.com
carter.ns.cloudflare.com
cash.ns.cloudflare.com
cass.ns.cloudflare.com
chad.ns.cloudflare.com
chan.ns.cloudflare.com chan.ns.cloudflare.com
charles.ns.cloudflare.com
cheryl.ns.cloudflare.com
chip.ns.cloudflare.com
chuck.ns.cloudflare.com
clay.ns.cloudflare.com
cleo.ns.cloudflare.com
clint.ns.cloudflare.com
cloe.ns.cloudflare.com
coby.ns.cloudflare.com coby.ns.cloudflare.com
coco.ns.cloudflare.com coco.ns.cloudflare.com
cody.ns.cloudflare.com cody.ns.cloudflare.com
connie.ns.cloudflare.com
cory.ns.cloudflare.com cory.ns.cloudflare.com
curt.ns.cloudflare.com
dahlia.ns.cloudflare.com
daisy.ns.cloudflare.com
dale.ns.cloudflare.com
damon.ns.cloudflare.com
dan.ns.cloudflare.com
dana.ns.cloudflare.com
dane.ns.cloudflare.com
dara.ns.cloudflare.com
darl.ns.cloudflare.com
darwin.ns.cloudflare.com darwin.ns.cloudflare.com
david.ns.cloudflare.com
dawn.ns.cloudflare.com
deb.ns.cloudflare.com
dee.ns.cloudflare.com dee.ns.cloudflare.com
dell.ns.cloudflare.com
demi.ns.cloudflare.com demi.ns.cloudflare.com
derek.ns.cloudflare.com
dilbert.ns.cloudflare.com
dina.ns.cloudflare.com dina.ns.cloudflare.com
dion.ns.cloudflare.com
diva.ns.cloudflare.com
dolly.ns.cloudflare.com
dom.ns.cloudflare.com dom.ns.cloudflare.com
donald.ns.cloudflare.com
donna.ns.cloudflare.com
dora.ns.cloudflare.com dora.ns.cloudflare.com
dorthy.ns.cloudflare.com dorthy.ns.cloudflare.com
doug.ns.cloudflare.com
drew.ns.cloudflare.com drew.ns.cloudflare.com
duke.ns.cloudflare.com duke.ns.cloudflare.com
earl.ns.cloudflare.com
ed.ns.cloudflare.com ed.ns.cloudflare.com
edna.ns.cloudflare.com edna.ns.cloudflare.com
elinore.ns.cloudflare.com elinore.ns.cloudflare.com
elle.ns.cloudflare.com
elma.ns.cloudflare.com
elmo.ns.cloudflare.com elmo.ns.cloudflare.com
elsa.ns.cloudflare.com
emma.ns.cloudflare.com emma.ns.cloudflare.com
eric.ns.cloudflare.com
erin.ns.cloudflare.com
ernest.ns.cloudflare.com
etta.ns.cloudflare.com etta.ns.cloudflare.com
eva.ns.cloudflare.com
fay.ns.cloudflare.com fay.ns.cloudflare.com
fiona.ns.cloudflare.com
foo.ns.cloudflare.com foo.ns.cloudflare.com
frank.ns.cloudflare.com
fred.ns.cloudflare.com fred.ns.cloudflare.com
gabe.ns.cloudflare.com gabe.ns.cloudflare.com
gail.ns.cloudflare.com gail.ns.cloudflare.com
gene.ns.cloudflare.com
gina.ns.cloudflare.com
glen.ns.cloudflare.com glen.ns.cloudflare.com
gordon.ns.cloudflare.com
grace.ns.cloudflare.com
graham.ns.cloudflare.com
greg.ns.cloudflare.com
guss.ns.cloudflare.com
guy.ns.cloudflare.com guy.ns.cloudflare.com
gwen.ns.cloudflare.com
hal.ns.cloudflare.com
hank.ns.cloudflare.com hank.ns.cloudflare.com
hans.ns.cloudflare.com
heather.ns.cloudflare.com heather.ns.cloudflare.com
henry.ns.cloudflare.com
hera.ns.cloudflare.com
hope.ns.cloudflare.com
hugh.ns.cloudflare.com hugh.ns.cloudflare.com
ian.ns.cloudflare.com ian.ns.cloudflare.com
igor.ns.cloudflare.com igor.ns.cloudflare.com
ines.ns.cloudflare.com
ingrid.ns.cloudflare.com
iris.ns.cloudflare.com iris.ns.cloudflare.com
isaac.ns.cloudflare.com
isla.ns.cloudflare.com
ivan.ns.cloudflare.com
ivy.ns.cloudflare.com
jack.ns.cloudflare.com
jade.ns.cloudflare.com
jake.ns.cloudflare.com
james.ns.cloudflare.com
janet.ns.cloudflare.com
jasmine.ns.cloudflare.com jasmine.ns.cloudflare.com
jason.ns.cloudflare.com
jay.ns.cloudflare.com
jean.ns.cloudflare.com
jeff.ns.cloudflare.com jeff.ns.cloudflare.com
jeremy.ns.cloudflare.com
jerry.ns.cloudflare.com jerry.ns.cloudflare.com
jessica.ns.cloudflare.com
jill.ns.cloudflare.com jill.ns.cloudflare.com
jim.ns.cloudflare.com jim.ns.cloudflare.com
jo.ns.cloudflare.com
joan.ns.cloudflare.com
jobs.ns.cloudflare.com
jocelyn.ns.cloudflare.com
joel.ns.cloudflare.com
john.ns.cloudflare.com john.ns.cloudflare.com
jonah.ns.cloudflare.com jonah.ns.cloudflare.com
josh.ns.cloudflare.com josh.ns.cloudflare.com
jule.ns.cloudflare.com
june.ns.cloudflare.com
justin.ns.cloudflare.com
kai.ns.cloudflare.com
kami.ns.cloudflare.com
kanye.ns.cloudflare.com
kara.ns.cloudflare.com
kate.ns.cloudflare.com kate.ns.cloudflare.com
kay.ns.cloudflare.com
kevin.ns.cloudflare.com kevin.ns.cloudflare.com
kia.ns.cloudflare.com
kiki.ns.cloudflare.com
kim.ns.cloudflare.com kim.ns.cloudflare.com
kip.ns.cloudflare.com kip.ns.cloudflare.com
kirk.ns.cloudflare.com
kristin.ns.cloudflare.com
kurt.ns.cloudflare.com
lady.ns.cloudflare.com
lakas.ns.cloudflare.com
lara.ns.cloudflare.com
laura.ns.cloudflare.com
leah.ns.cloudflare.com leah.ns.cloudflare.com
lee.ns.cloudflare.com lee.ns.cloudflare.com
leia.ns.cloudflare.com leia.ns.cloudflare.com
lex.ns.cloudflare.com lex.ns.cloudflare.com
lia.ns.cloudflare.com
lily.ns.cloudflare.com lily.ns.cloudflare.com
lina.ns.cloudflare.com
linda.ns.cloudflare.com
lisa.ns.cloudflare.com
liv.ns.cloudflare.com
logan.ns.cloudflare.com
lou.ns.cloudflare.com
lucy.ns.cloudflare.com lucy.ns.cloudflare.com
luke.ns.cloudflare.com
lynn.ns.cloudflare.com
major.ns.cloudflare.com
marek.ns.cloudflare.com
marge.ns.cloudflare.com
maria.ns.cloudflare.com
mario.ns.cloudflare.com
marjory.ns.cloudflare.com
mark.ns.cloudflare.com
mary.ns.cloudflare.com
matt.ns.cloudflare.com matt.ns.cloudflare.com
max.ns.cloudflare.com max.ns.cloudflare.com
may.ns.cloudflare.com
maya.ns.cloudflare.com
meera.ns.cloudflare.com
meg.ns.cloudflare.com
megan.ns.cloudflare.com megan.ns.cloudflare.com
melinda.ns.cloudflare.com melinda.ns.cloudflare.com
melissa.ns.cloudflare.com
merlin.ns.cloudflare.com
miki.ns.cloudflare.com miki.ns.cloudflare.com
miles.ns.cloudflare.com
mimi.ns.cloudflare.com
mira.ns.cloudflare.com
mitch.ns.cloudflare.com
nadia.ns.cloudflare.com
ned.ns.cloudflare.com
neil.ns.cloudflare.com
nelly.ns.cloudflare.com nelly.ns.cloudflare.com
newt.ns.cloudflare.com newt.ns.cloudflare.com
nia.ns.cloudflare.com
nick.ns.cloudflare.com
nicole.ns.cloudflare.com
nina.ns.cloudflare.com nina.ns.cloudflare.com
nitin.ns.cloudflare.com
noah.ns.cloudflare.com
norm.ns.cloudflare.com norm.ns.cloudflare.com
norman.ns.cloudflare.com norman.ns.cloudflare.com
olga.ns.cloudflare.com olga.ns.cloudflare.com
pablo.ns.cloudflare.com
pam.ns.cloudflare.com pam.ns.cloudflare.com
pat.ns.cloudflare.com
paul.ns.cloudflare.com paul.ns.cloudflare.com
pete.ns.cloudflare.com pete.ns.cloudflare.com
peyton.ns.cloudflare.com peyton.ns.cloudflare.com
phil.ns.cloudflare.com
piotr.ns.cloudflare.com
plato.ns.cloudflare.com
pola.ns.cloudflare.com
rachel.ns.cloudflare.com rachel.ns.cloudflare.com
rafe.ns.cloudflare.com
rajeev.ns.cloudflare.com
ram.ns.cloudflare.com
reza.ns.cloudflare.com
rick.ns.cloudflare.com rick.ns.cloudflare.com
rihana.ns.cloudflare.com
rita.ns.cloudflare.com
rob.ns.cloudflare.com rob.ns.cloudflare.com
robin.ns.cloudflare.com
rocky.ns.cloudflare.com
rosa.ns.cloudflare.com
rose.ns.cloudflare.com rose.ns.cloudflare.com
roxy.ns.cloudflare.com
rudy.ns.cloudflare.com
sam.ns.cloudflare.com
sandy.ns.cloudflare.com
sara.ns.cloudflare.com
scott.ns.cloudflare.com
sean.ns.cloudflare.com
serena.ns.cloudflare.com
seth.ns.cloudflare.com seth.ns.cloudflare.com
sharon.ns.cloudflare.com
sid.ns.cloudflare.com
sima.ns.cloudflare.com
sofia.ns.cloudflare.com sofia.ns.cloudflare.com
sri.ns.cloudflare.com
stan.ns.cloudflare.com
sue.ns.cloudflare.com
tani.ns.cloudflare.com
tara.ns.cloudflare.com
tegan.ns.cloudflare.com tegan.ns.cloudflare.com
terin.ns.cloudflare.com terin.ns.cloudflare.com
terry.ns.cloudflare.com
tess.ns.cloudflare.com
theo.ns.cloudflare.com theo.ns.cloudflare.com
thomas.ns.cloudflare.com
tia.ns.cloudflare.com
tim.ns.cloudflare.com
tina.ns.cloudflare.com
toby.ns.cloudflare.com
todd.ns.cloudflare.com
tom.ns.cloudflare.com
tony.ns.cloudflare.com
tori.ns.cloudflare.com
trey.ns.cloudflare.com
tricia.ns.cloudflare.com
ulla.ns.cloudflare.com
uma.ns.cloudflare.com
vera.ns.cloudflare.com
vick.ns.cloudflare.com
vida.ns.cloudflare.com
vin.ns.cloudflare.com
violet.ns.cloudflare.com
wally.ns.cloudflare.com
walt.ns.cloudflare.com
wanda.ns.cloudflare.com
west.ns.cloudflare.com
will.ns.cloudflare.com
woz.ns.cloudflare.com
yolanda.ns.cloudflare.com
zara.ns.cloudflare.com
zita.ns.cloudflare.com
zod.ns.cloudflare.com
zoe.ns.cloudflare.com zoe.ns.cloudflare.com

View File

@ -10,6 +10,7 @@ workers.dev
cloudflareapi.com cloudflareapi.com
cloudflareapps.com cloudflareapps.com
cloudflarechallenge.com cloudflarechallenge.com
cloudflareclient.com
cloudflareenterprise.com cloudflareenterprise.com
cloudflarepreview.com cloudflarepreview.com
cloudflareresolve.com cloudflareresolve.com
@ -17,5 +18,6 @@ cloudflarespeedtest.com
cloudflaressl.com cloudflaressl.com
cloudflarestatus.com cloudflarestatus.com
cloudflaresupport.com cloudflaresupport.com
cloudflarewarp.com
encryptedsni.com encryptedsni.com
mycloudflare.com mycloudflare.com

View File

@ -72,7 +72,7 @@ If Cloudflare leak your information, it's not our fault. [*]
| [Block Cloudflare MITM Attack](https://trac.torproject.org/projects/tor/attachment/ticket/24351/block_cloudflare_mitm_attack-1.0.14.1-an%2Bfx.xpi) | nullius | [Link](https://github.com/nym-zone/block_cloudflare_mitm_fx) | **Yes** | **Yes** | | [Block Cloudflare MITM Attack](https://trac.torproject.org/projects/tor/attachment/ticket/24351/block_cloudflare_mitm_attack-1.0.14.1-an%2Bfx.xpi) | nullius | [Link](https://github.com/nym-zone/block_cloudflare_mitm_fx) | **Yes** | **Yes** |
| [Are links vulnerable to MITM?](https://addons.mozilla.org/en-US/firefox/addon/are-links-vulnerable-to-mitm/) | Maslin Bossé | [Link](https://notabug.org/themusicgod1/cloudflare-tor/src/master/ismitmlink) | No | **Yes** | | [Are links vulnerable to MITM?](https://addons.mozilla.org/en-US/firefox/addon/are-links-vulnerable-to-mitm/) | Maslin Bossé | [Link](https://notabug.org/themusicgod1/cloudflare-tor/src/master/ismitmlink) | No | **Yes** |
| [Third-party Request Blocker (AMO)](https://addons.mozilla.org/en-US/firefox/addon/tprb/) | Searxes #Addon | [Link](https://searxes.danwin1210.me/) | **Yes** | **Yes** | | [Third-party Request Blocker (AMO)](https://addons.mozilla.org/en-US/firefox/addon/tprb/) | Searxes #Addon | [Link](https://searxes.danwin1210.me/) | **Yes** | **Yes** |
| [TPRB](https://sw.skusklxqaqnrmszytky4vfyrg625erw4hqhiokyc2ufnokd2aitb47yd.onion/) | Sw | [Link](https://sw.skusklxqaqnrmszytky4vfyrg625erw4hqhiokyc2ufnokd2aitb47yd.onion/) | **Yes** | **Yes** | | [TPRB](https://searxes.danwin1210.me/collab/tprb0/get_tprb0.php) | Sw | [Link](https://sw.skusklxqaqnrmszytky4vfyrg625erw4hqhiokyc2ufnokd2aitb47yd.onion/) | **Yes** | **Yes** |
| [Detect Cloudflare](https://addons.mozilla.org/en-US/firefox/addon/detect-cloudflare/) | Frank Otto | [Link](https://github.com/traktofon/cf-detect) | No | **Yes** | | [Detect Cloudflare](https://addons.mozilla.org/en-US/firefox/addon/detect-cloudflare/) | Frank Otto | [Link](https://github.com/traktofon/cf-detect) | No | **Yes** |
| [Cloud Firewall](https://addons.mozilla.org/en-US/firefox/addon/cloud-firewall/) [*] | Gokulakrishna Sudharsan | [Link](https://gitlab.com/gkrishnaks/cloud-firewall/) | **Yes** | No | | [Cloud Firewall](https://addons.mozilla.org/en-US/firefox/addon/cloud-firewall/) [*] | Gokulakrishna Sudharsan | [Link](https://gitlab.com/gkrishnaks/cloud-firewall/) | **Yes** | No |
@ -106,6 +106,93 @@ If Cloudflare leak your information, it's not our fault. [*]
- Install Web Application Firewall (such as OWASP) and Fail2Ban on _your_ server and configure it _properly_. - Install Web Application Firewall (such as OWASP) and Fail2Ban on _your_ server and configure it _properly_.
- If you want to know more alternative solutions, take a look at [this blog's "Alternative solutions" section](http://www.unixsheikh.com/articles/stay-away-from-cloudflare.html).
- Redirect or block "_Cloudflare Warp_" users from accessing your website. And provide a reason if you can.
> IP list is from "[Cloudflares current IP ranges](https://www.cloudflare.com/ips/)" webpage. They might lie, so check your server logs too.
> Method A: Just block
```
server {
...
deny 173.245.48.0/20;
deny 103.21.244.0/22;
deny 103.22.200.0/22;
deny 103.31.4.0/22;
deny 141.101.64.0/18;
deny 108.162.192.0/18;
deny 190.93.240.0/20;
deny 188.114.96.0/20;
deny 197.234.240.0/22;
deny 198.41.128.0/17;
deny 162.158.0.0/15;
deny 104.16.0.0/12;
deny 172.64.0.0/13;
deny 131.0.72.0/22;
deny 2400:cb00::/32;
deny 2606:4700::/32;
deny 2803:f800::/32;
deny 2405:b500::/32;
deny 2405:8100::/32;
deny 2a06:98c0::/29;
deny 2c0f:f248::/32;
...
}
```
> Method B: Redirect to warning page
```
http {
...
geo $iscf {
default 0;
173.245.48.0/20 1;
103.21.244.0/22 1;
103.22.200.0/22 1;
103.31.4.0/22 1;
141.101.64.0/18 1;
108.162.192.0/18 1;
190.93.240.0/20 1;
188.114.96.0/20 1;
197.234.240.0/22 1;
198.41.128.0/17 1;
162.158.0.0/15 1;
104.16.0.0/12 1;
172.64.0.0/13 1;
131.0.72.0/22 1;
2400:cb00::/32 1;
2606:4700::/32 1;
2803:f800::/32 1;
2405:b500::/32 1;
2405:8100::/32 1;
2a06:98c0::/29 1;
2c0f:f248::/32 1;
}
...
}
server {
...
if ($iscf) {rewrite ^ https://example.com/cfwsorry.php;}
...
}
[ code cfwsorry.php ]
<?php
header('HTTP/1.1 406 Not Acceptable');
echo <<<CLOUDFLARED
Thank you for visiting ourwebsite.com!
We are sorry, but we can't serve you because your connection is being intercepted by Cloudflare.
Please read https://notabug.org/themusicgod1/cloudflare-tor/ for more information.
CLOUDFLARED;
die();
```
- Set up [Tor Onion Service](https://www.torproject.org/docs/onion-services.html.en) or I2P insite if you believe in freedom and welcome anonymous users. - Set up [Tor Onion Service](https://www.torproject.org/docs/onion-services.html.en) or I2P insite if you believe in freedom and welcome anonymous users.
- Ask for advice from other [Clearnet/Tor dual website operators](https://trac.torproject.org/projects/tor/wiki/org/projects/WeSupportTor) and make anonymous friends! :) - Ask for advice from other [Clearnet/Tor dual website operators](https://trac.torproject.org/projects/tor/wiki/org/projects/WeSupportTor) and make anonymous friends! :)