7 ms·
Dont Worry Government, I Got This Porn Filter Sorted
- kordless 13y agoNo comments? I guess Hacker News gets blocked when you install it. :)
- pvnick 13y agoStep 1: Put your dic (delete) pns.py I was cracking up. Brilliant!
- harrytuttle 13y agoAbsolutely wonderful. Well done!
- calpaterson 13y agoThe section with William Hague (UK Foreign Secretary) at the end of the video is priceless.
- sehrope 13y ago> Any request that is denied by OpenDNS is then allowed by our DNS server, and any request allowed by OpenDNS is blocked by us. The most interesting part of this to me is using multiple DNS providers to determine which category the site is in. It's both simple and effective. If they actually go ahead with this plan in the UK and it's implemented similarly (eg. via DNS rather than IP blocking), somebody should make a list of what's blocked. Go through the top N sites and for each run a DNS lookup from both a filtering DNS server and also a couple non-filtered ones (ex: Google DNS[1]) then compare the results[2]. Bonus points if someone builds a way to crowd source the data so that it gets logged from multiple DNS servers round the world. [1]: https://developers.google.com/speed/public-dns/ https://developers.google.com/speed/public-dns/ [2]: This would need to do more than a plain A == B as each address could resolve to multiple IP addresses.
- Tehnix 13y agoI was actually also admiring the simplicity of his solution, to take advantage of services that are already in place doing the exact opposite of his. Tip of the hat to the author...
- nly 13y agoCleanfeed (the UKs child porn filter) is supposed to be IP blocking/NAT based, coupled with web proxies. Given the scope of the filtering this time around though, it may be done by DNS. Let's hope so.
- mike-cardwell 13y agoI remember when they used this system to block an image on Wikipedia. Much hilarity ensued: http://wiki.openrightsgroup.org/wiki/Cleanfeed#Wikipedia_.2F_Scorpions_incident http://wiki.openrightsgroup.org/wiki/Cleanfeed#Wikipedia_.2F...
- rmc 13y agoThey can't and don't do it with just a DNS, it'll have to be DNS + HTTP URL. Otherwise porn hosted on one large shared hosting would block everything. (e.g. imagine if the Amazon EC2 DNS got blocked). The current UK ISP filter (the one that already filtered Wikipedia), used DNS & HTTP. IP addresses that needed filtering were redirected to their HTTP server by sending back their IP address, and then a HTTP proxy was used to filter specific URLs. This allowed them to block certain URLs. It was initally detected because lots of wikipedians noticed a lot of edits (basically lots of the UK) coming from a small amount of IP addresses (the IP addresses of the proxies)
- cmircea 13y agoThey CANNOT use HTTP filtering as that would break on HTTPS.
- icebraining 13y agoNope, the domain is always visible on HTTPS, due to SNI. They can just block it.
- mrweasel 13y agoOlder Win XP machines doesn't support SNI, so you could get around it with an older machine. Of cause that's a problem that will go away over time.
- icebraining 13y agoTo connect to an HTTPS site without SNI, the IP can only host a single domain, so they can just block the whole (IP:443) combination without affecting any other site.
- cmircea 13y agoWhat if the IP is dynamic? Say an Azure Cloud Service.
- cabalamat 13y ago> Bonus points if someone builds a way to crowd source the data so that it gets logged from multiple DNS servers round the world. What you want is a website that answers: Does Country-C block Website-W? A user gives it a URL and it has VPNs surfacing in lots of different countries and it tries them all, and displays in which countries the URL is blocked. The website also stores and records all blocked/unblocked websites, and allows this data to be downloaded.
- Genmutant 13y agoThere is something like that for the great wall of china: http://www.greatfirewallofchina.org/ http://www.greatfirewallofchina.org/
- cabalamat 13y agoYes. Although that site keeps no history, doesn't allow you to download a list of blocked sites, and only works for China. And it bizarrely replaces its headers with Flash.
- mrweasel 13y agoThe Danish Internet filtering works by messing with the DNS at the ISP level. If you don't want to get filtered, just switch to a non-ISP DNS, or run your own. Sadly it was implemented with little or no public debate, very very few got upset and most of us just switch DNS. I think the UK is in a much better position because they at least have the debate public and loud.
- Hello71 13y agosudo ss -lpu 'sport = 53'
- joeblau 13y agoPretty comical video, one quick tip. If you typed a command on the terminal and you get the "Operation not permitted." You can run the last command prepending sudo like this: sudo !!
- dclowd9901 13y agoYou just gave me 2 more years back.
- mkenyon 13y agoBash/csh have a wonderful history expansion feature[0]. I can never remember all of the modifiers, but I am learning them slowly. [0]: https://www.gnu.org/software/bash/manual/bashref.html#Event-Designators https://www.gnu.org/software/bash/manual/bashref.html#Event-...
- joeblau 13y agoHeh, no problem here are 2 more bang tricks. !<charachters> runs the last command you ran that starts with the characters you type. !gre # will run the last command starting with gre (so probably grep) If you type history, then !<number to the left of the history command>, the shell will execute that command. $ history # shows command history $ !200 # executes command 200
- gburt 13y agoKeep them coming, imagine the manyears you're recovering!
- graue 13y agoYou can also press Up arrow, Ctrl-A to go back to the beginning of the line, add "sudo " and enter. This type of thing also works in most REPLs (Python, irb, Node, etc.)
- gjulianm 13y agoAnother neat expansion: !$ is the last argument of the last command you entered. Useful when you mistype the command name.
- milesokeefe 13y agoHe should have made the server run on port 69.
- vukmir 13y ago... ask not what your country can do for you — ask what you can do for your country ... JFK would be proud.
- gautamsomani 13y agohehehe. Good one.
- lewq 13y ago+1 for using Twisted
- dakimov 13y agoThis is great.
- allinzen 13y agoBrilliant! Now only if there was a cat filter that only showed cats and cat related material.
- nickik 13y agoI thought that filter was called a web browser.
- gojomo 13y agoAwesome. Advanced assignment: build a search engine which for each jurisdiction only contains results blocked-in-Google-by-legal-threats in that jurisdiction.
- laurent123456 13y agoSlightly NSFW, could someone add the tag to the title?