View comment

Opsec for a Hidden service

by /u/___Nelson___ · 0 votes · 2024-05-06 21:37:00

So as the title says, I am at a point in life where I find myself looking for the best opsec for hosting a hidden service.

It seems to come down to 2 options when it comes to server location.

VPS: for individuals that hold anonymity higher than the security of data.

Self hosting: for individuals that hold the security of data higher than personal anonymity

Neither of these satisfy my needs as I require something that offers the best of both worlds. This got me thinking and I may have a solution but would like to run it past other like minded members of this community.


So here goes.

Let's say I have access to somewhere that is in the heart of a city that is well overpopulated, We are talking surrounded by skyscrapers. It has electricity and is almost impossible to find / gain access. Evening you was looking for it. Access 24hrs if required and less than 100m from a 5g cell tower

There's space for a good few servers.
So I'm sure by now you see where I am going with this. I have been working quietly over the past 12 months on a DNM and hope to go live in the next 6-12 months

So far I've setup on local hardware,

Multiple servers for backend database, xmrnodes and mirrors

Server for balancing

Server for endgame

My thoughts are as follows:

Each server loaded with multiple LTE dongles for load balance/failover

All servers will be installed into a high security enclosure (think ventilated tool vault) bolted into concrete with a tamper switch installed to kill the servers if tripped and a cctv camera that sends motion notifications over Tor

Now as for the data plan the sims will be paid in cash preloaded with 500 GBs of data and each server will have 4 sims so that 2000gbs per server before I need to change the sims I plan to buy enough sims months in advance to last at least 12-24 months and estimate I will probably need to change them once a month. Depending on how many page visits :) and DDOS attacks :( I get ,

What are your thoughts on this setup? Good or bad. Tia


User: /u/Moitoza

I feel like just using bulletproof hosting bought with crypto would be easier, cheaper, and safer. No personal association with your or the area you live in. Your plan sounds mostly fine, and it sounds like you've already got a fair amount of stuff. One thing I'd change is perhaps putting your balancing and endgame on a VPS, so you can scale to attacks easier. Then you can just use all the servers you have for data and backend.