| Commit message (Collapse) | Author | Age |
| ... | |
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
Make sure we mention all the ciphers we use, and use the phrase
"unless otherwise specified" liberally to make sure that people
don't think that we're still RSA1024 all over.
Also rename the hybrid encryption thing to "legacy hybrid
encryption", and put it in its own section.
Closes ticket 22722.
|
| | | | | |
|
| |\ \ \ \ |
|
| | | | | |
| | | | |
| | | | |
| | | | | |
Also see #23019 for the code patch.
|
| | | | | | |
|
| | | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | | |
We had been vague about what the Value fields here were.
Also, document that addresses in NETINFO don't have TTLs.
Closes ticket 22937.
|
| | | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | | |
In protocol <= 3 we allowed OPs to set the circID msb however they
wanted. We don't do that any more in >= 4.
Closes ticket 22882.
|
| |\ \ \ \ \ |
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
The onion key for the ntor handshake is missing in the descriptor in order
for the client to extend to it.
Ticket #22979
Signed-off-by: David Goulet <dgoulet@torproject.org>
|
| |\ \ \ \ \ \ |
|
| | |/ / / / /
| | | | | |
| | | | | |
| | | | | | |
Signed-off-by: David Goulet <dgoulet@torproject.org>
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
- Revise author list and acknowledgements list.
- Write list of prop224 improvements
- Kill a spare TODO.
|
| | | | | | | |
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
Intro points don't care about the contents of the INTRO1 cell as long as
the first 20 bytes are correctly formatted, so we don't need to have a
special cell for legacy intros. Remove all references to it.
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | | |
See replay_cache_rend_cookie in the codebase.
|
| | |/ / / /
|/| | | | |
|
| |\ \ \ \ \
| |/ / / /
|/| | | | |
|
| | | | | |
| | | | |
| | | | |
| | | | | |
Resolves ticket 19254.
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | |
| | | | |
| | | | |
| | | | | |
Closes ticket 23445.
|
| |\ \ \ \ \ |
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | | |
Documents ticket 23237.
|
| | | | | | | |
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
As part of our work in #23387, we figured out that there are some edge
cases where clients cannot connect to services if they are using
different live consensuses. That was because the overlap period was only
covering clients with a newer consensus than the service.
We are now extending the overlap period to be permanent, and alter its
logic so that it also covers clients with older consensus than the
service.
Now services always have two active descriptors at any given time.
This spec patch is a companion to the code branch of #23387.
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
Instead of saying the clock skew and "your address" fields are
unused, describe the dangers of using them as unconditionally
trusted.
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
This section made sense with the v2 networkstatus algorithm, but we
haven't used that one for years and years.
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | | |
Closes ticket 22918.
|
| |\ \ \ \ \ \ |
|
| | | | | | | |
| | | | | | |
| | | | | | |
| | | | | | |
| | | | | | |
| | | | | | | |
We said that PADDING was allowed, but it wasn't.
Bug 22934.
|
| | | | | | | | |
|
| | | | | | | | |
|
| |/ / / / / / |
|
| | | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | |
| | | | | | |
Turns out that it was implemented with period_num first and then
period_length.
Like asn said, let us consider that as an interesting engineering artifact
and change the spec instead of the code that has been tested like that for a
while now.
Signed-off-by: David Goulet <dgoulet@torproject.org>
|
| | | | | | | |
|
| |/ / / / / |
|
| | | | | | |
|
| | | | | | |
|
| | | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | |
| | | | | |
SETCONF says 250 ok on success, like everything else.
GETINFO had some junk left around in it that was left over from good
old control-spec-v0.txt.
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|
| | | | | | |
|