On 2014-05-24 01:25:36 (-0700), Contra Band wrote:
Your experience is really helpful. After some thoughts now I'm allowing only
incoming tcp ports 443 and ssh
outgoing tcp port 443
Please enable at least outgoing port 9001 as well. Most relays listen on that port, with 443 in second place. With those ports allowed you'll be able to reach 80% of the network.
This is a quick tally of the number of relays by orport:
$ awk '/^r / {print $8}' ~/tmp/2014-05-24-07-00-00-consensus |sort -n |uniq -c |sort -rn |head 2613 9001 1251 443 49 8080 35 9090 34 80 27 9002 25 8443 25 22 23 8001 22 110