Why is DDoS protection still necessary when Tor has PoW? : HiddenService | Torhoo darknet markets
Why do hidden services and also Dread still require a DDoS protection mechanism when Tor introduced a PoW system to protect onion services from DoS attacks? Isn't the PoW sufficient?
PoW only relatively protects against introduction cell level attacks. so not many concurrent clients or packets can connect to the hidden service at the same time from a certain source. But still it does not protect against application layer DDoS attacks, which are basically attacks that occur after a client has successfully established a connection.
To have an effective protection mechanism you need the best of both worlds. horizontal scaling via many endgame fronts is required. but as of now unfortunately PoW does not integrate with Onionbalance.
To have an effective protection mechanism you need the best of both worlds. horizontal scaling via many endgame fronts is required. but as of now unfortunately PoW does not integrate with Onionbalance.