I'm pretty much ignorant about Tor, but I'm curious why the .onion strongbox address they give is a string of random characters, instead of something recognizable/memorable?
If the address was just "newyorker.onion", you'd still need to find some way of safely verifying the public key to make sure you're really talking to the New Yorker.
As long as you don't let the .bit address expire, you'll have a secure, easy to remember address people can use to access your hidden server.
If I'm not mistaken, it makes the site safe from Man In The Middle attacks.
> Location-hidden services use a virtual top level domain called .onion: thus hostnames take the form x.y.onion where x is the authorization cookie and y encodes the hash of the public key.
[1] https://svn.torproject.org/svn/projects/design-paper/tor-des...