Wikipedia:Detección de open proxys/Instrucciones

De Wikipedia, la enciclopedia libre

Cuando una dirección IP ha hecho una edición, una base de datos con direcciones de proxies abiertos se activa en una busca automáticamente. Esta base de datos es mantenida periódicamente y está compuesta por más de medio millón de direcciones IP y rangos de IP. Si se encuentra una coincidencia, se informa en esta página.

Esta generación automática de informes sólo se produce si el servidor de RonaldB, se encuentra activo. Esto es diario, durante las 24 horas (7/24), pero podrían haber caidas.

El sistema recibe los informes del canal irc de cambios recientes. Si el sistema se encuentra activo, estará loggeado con el nombre: op-nnnnn, en donde nnnnn es un digital o clave de 5 números.

Mira aquí para mayor información de soporte (técnico).

Explanation of information provided[editar]

type
This provides further info on the type of open proxy. If this is preceded by probably, it means that the IP-address has ever been published as open proxy, but the scanning module has not been able to confirm this to be the case.
Following types are discerned:
  • open proxy - a "normal" open proxy. The system does not provide the sub type (e.g. transparent, anonymous, etc.).
  • TOR exit node - an IP-address of the TOR network, by which servers on the internet can be accessed (which is not the same as a TOR onion node). Reporting of TOR is still in operation as back-up, as TOR exit nodes are normally blocked globally.
  • exit server - some open proxies use another IP-address (possibly a zombie) to access servers on the internet.
  • anonymizer - an anonymizing service, generally using a web interface (also called CGI or PHP proxy). The IP-address, by which that service is accessing the internet to request pages, is reported. This is not necessarily the same as the IP-address hosting the service.
  • web server - The IP-address, or the range it belongs to, is solely used for web hosting. It may be hacked or is hosting a CGI/PHP proxy.
  • JAP - also called JonDo, a rarely used and relatively small anonymizing network.
  • SSH - the IP-address supports the Secure Shell protocol. If an attacker knows the log-in data, he may use the IP-address as a proxy, which propably occurs in 15-20% of the reported cases.
If the type designation is followed by an asterisk, this means that the IP-address is known in the database with multiple types. The type is shown with the most recent confirmed date.
in db since
The date the IP-address was first contained in the database.
first confirmed
The first date the scanner confirmed this IP-address to be an open proxy.
last confirmed
The most recent date the scanner confirmed this IP-address to be an open proxy. If the indication is Now !, this means that the open proxy behaviour has been confirmed by an "on-the-fly" check at the moment of editing. This can only be accomplished for "normal" open proxies.

The date information is used for the background-colouring of the entry. The darker, the more likely the IP-address is indeed an open proxy at the moment of editing.