wiki-user: unruffled

  • When the people are being beaten with a stick, they are not much happier if it is called “the People’s Stick.”
  • If you took the most ardent revolutionary, vested him in absolute power, within a year he would be worse than the Tsar himself.

- Mikhail Bakunin

  • 22 Posts
  • 48 Comments
Joined 1 year ago
cake
Cake day: June 20th, 2023

help-circle























  • I think it’s generally recommended if you are security conscious to manually forward ports rather than allow uPnP to be enabled on your router. There’s been cases where IoT devices or apps can open sensitive ports to your network without your knowledge. And the uPnP protocol itself was found to be flawed a few years ago: https://arstechnica.com/information-technology/2020/06/upnp-flaw-exposes-millions-of-network-devices-to-attacks-over-the-internet/

    Çadırcı reported his findings to the Open Connectivity Foundation, which maintains the UPnP protocol, and the foundation has updated the underlying specification to fix the flaw. Users can check with developers and manufacturers to find out if or when a patch will be available. A significant percentage of IoT devices never receive updates from manufacturers, which means the vulnerability will live on for some time to come.

    But you know, it depends on your risk profile. For most people, it’s probably fine. Depends how paranoid you want to get.

    Binding your VPN connection to qbittorrent is a good idea, for sure, if you use a VPN. I usually keep DHT enabled with a bound VPN connection and a manually forwarded port using Proton VPN. I’m going to try out anonymous mode to see if it affects speeds any, since it looks like it doesn’t impact uploads or connections any more. That’s a bonus :)



  • The short answer: if you are particularly concerned about anonymity, then yes, enable it AND use a VPN. But be aware some people may consider this leeching, because anonymous mode may compromise your ability to upload (and download) to some extent. But there are some circumstances in which this is entirely justified.

    Public tracker scenario

    For most people using public trackers, just a VPN without anonymous mode is fine and recommended, and gives you the maximum speeds in this scenario, while giving you an adequate level of protection from your ISP (if configured correctly). If you do enable anonymous mode, then you’ll likely find your upload/download speeds are slower, mainly because DHT & uPnP are typically disabled. And anonymous mode without a VPN is NOT recommended.

    WARNING: anonymous mode doesn’t provide strong privacy guarantees on its own. If you are concerned about legal authorities and copyright trouble, for example, consider using a VPN instead (or in addition to it).

    Private tracker scenario

    If you are using private trackers then you would usually not be using a VPN or anonymous mode because many of them explicitly ban such things so they can track your download/upload ratios server-side against your IP address to ensure you are following their policies. While some private trackers allow exceptions to this (e.g., you may be able to get a dedicated VPN IP address whitelisted for your account after signup), many don’t.

    I’m not claiming to be any great expert on this topic, and so this is just my general-level understanding. If anyone wants to contribute any useful expert info or to correct anything I may have wrong here, please feel free to comment.