Whonix 18 (Qubes): Excluding Tor exit countries – is it still possible and does it make sense security-wise?

I previously answered the second question on the Tor Project Forum:

Technically the remaining related questions are more relevant to the Tor Project Forum, but I will still address them here on the Whonix Forum:

It depends on the countries being excluded. Some countries are considered high-impact and will have major tradeoffs in performance and anonymity. You can take a look at what countries have the most consensus weight, along with the probabilities of their relays being used to generate a Tor circuit, using Tor Metrics:

Right now, Germany, the Netherlands, and the US are the top three high-impact countries, so excluding them will dramatically affect your Tor circuit, especially the Tor exit relay.

In most cases it is generally discouraged in order to maintain strong anonymity. It would make more sense to avoid using the same autonomous system in a Tor circuit (hosted in multiple countries) in order to improve network diversity and resilience[1], like OVHcloud[2], but that comes with raw performance tradeoffs.


  1. Tor Project | Technical considerations ↩︎

  2. Relay Search (currently 19 countries) ↩︎