1. Wezesha usasishaji wa kiotomatiki wa programu
Mojawapo ya mambo muhimu zaidi ya kuweka rilei yako salama ni kusakinisha masasisho ya usalama kwa wakati unaofaa na kiotomatiki ili usiweze kusahau kuihusu.
Fuata maelekezo ili kuwezesha usasishaji wa programu ya kiotomatiki kwenye mfumo wako wa uendeshaji.
2. Sasisha Tor
Hakikisha unasasisha hifadhidata ya vifurushi kabla ya kusakinisha kifurushi kuliko kuitaapt kukisakinisha:
# apk update
# apk add tor
3. Install Lyrebird
# apk add lyrebird
4. Edit your Tor config file
Copy the provided /etc/tor/torrc.sample to /etc/tor/torrc and set the following options:
BridgeRelay 1
# Badilisha "TODO1' na bandari ya Tor ya chaguo lako.
# Bandari hii inapaswa kufikiwa na nje.
# Epuka bandari ya 9001 kwa sababu inahusishwa kwa kawaida na Tor na vidhibiti vinaweza kuwa vinachanganua mtandao kwa bandari hiyo.
ORPort TODO1
ServerTransportPlugin obfs4 exec /usr/bin/lyrebird
# Badilisha "TODO2" na bandari ya obfs4 ya chaguo lako.
# Bandari hii lazima ipatikane nje na lazima iwe tofauti na iliyobainishwa kwa bandari ya OR.
# Epuka bandari ya 9001 kwa sababu inahusishwa kwa kawaida na Tor na vidhibiti vinaweza kuwa vinachanganua mtandao kwa bandari hiyo.
ServerTransportListenAddr obfs4 0.0.0.0:TODO2
# Bandari ya mawasiliano ya ndani kati ya Tor na obfs4. Daima weka hii kwa "otomatiki".
# "Ext" inamaanisha "kupanuliwa", sio "nje". Usijaribu kuweka nambari maalum ya bandari, wala usikilize kwenye 0.0.0.0.
ExtORPort auto
# Badilisha "<address@email.com>" na barua pepe ili tuwasiliane nawe ikiwa kuna shida na kiungo chako.
# Hii ni kwa hiari lakini inahimizwa.
ContactInfo <address@email.com>
# Chagua jina la utani unalopenda kwa kiungo chako. Hili ni la hiari.
Nickname PickANickname
Usisahau kubadilisha chaguo la Bandari ya OR, ServerTransportListenAddr, Maelezo ya Mawasiliano na Jina la Utani.
Kumbuka kuwa bandari ya Or ya Tor na bandari yake ya obfs4 lazima ipatikane. Ikiwa kiungo chako kiko nyuma ya ngome au NAT, hakikisha umefungua bandari zote mbili. jaribio la ufikiaji ili kuona ikiwa bandari yako ya obfs4 unaweza kufikiwa kutoka kwa Mtandao.
(Optional) Allow obfs4 binding to privileged ports
If you decide to use a fixed obfs4 port smaller than 1024 (for example 80 or 443), you will need to give the Lyrebird executable CAP_NET_BIND_SERVICE capabilities so it can bind to the port without root privileges.
Install the packages libcap-setcap and libcap-getcap, then do this:
# setcap cap_net_bind_service=+ep /usr/bin/lyrebird
You can query the currently assigned capabilities by running getcap /usr/bin/lyrebird. Should you ever decide to use an unprivileged port, remember to remove the capability with setcap -r /usr/bin/lyrebird.
6. Aanzisha Tor
Now start the Tor service.
# rc-service tor start
If the service starts successfully, proceed to the next step.
7. Kufuatilia kumbukumbu zako
To confirm your bridge is running with no issues, you should see something like this, usually in /var/log/tor/notices.log (default) or /var/log/messages (syslog):
[notice] Your Tor server's identity key fingerprint is '<NICKNAME> <FINGERPRINT>'
[notice] Your Tor bridge's hashed identity key fingerprint is '<NICKNAME> <HASHED FINGERPRINT>'
[notice] Registered server transport 'obfs4' at '[::]:46396'
[notice] Tor has successfully opened a circuit. Looks like client functionality is working.
[notice] Bootstrapped 100%: Done
[notice] Now checking whether ORPort <redacted>:3818 is reachable... (this may take up to 20 minutes -- look for log messages indicating success)
[notice] Self-testing indicates your ORPort is reachable from the outside. Excellent. Publishing server descriptor.
8. Maelezo ya mwisho
Ikiwa una shida kusanidi kiungo chako angalia sehemu yetu ya usaidizi.
Ikiwa kiungo chako kinajiendesha sasa tazama maelezo ya baada ya usakini.