<feed xmlns='http://www.w3.org/2005/Atom'>
<title>mirrors/arti.git/crates/tor-keymgr/semver.md, branch arti-v1.1.7</title>
<subtitle>mirror of https://gitlab.torproject.org/tpo/core/arti
</subtitle>
<id>http://git.dilluti0n.com/mirrors/arti.git/atom?h=arti-v1.1.7</id>
<link rel='self' href='http://git.dilluti0n.com/mirrors/arti.git/atom?h=arti-v1.1.7'/>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/'/>
<updated>2023-07-24T12:17:31Z</updated>
<entry>
<title>keymgr: Add KeyMgr::generate() for generating new keys.</title>
<updated>2023-07-24T12:17:31Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-24T10:56:18Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=f96298a791f696012c572a1df8396eea46d43266'/>
<id>urn:sha1:f96298a791f696012c572a1df8396eea46d43266</id>
<content type='text'>
</content>
</entry>
<entry>
<title>keymgr: Add function for generating EncodableKeys.</title>
<updated>2023-07-24T12:17:23Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-24T11:01:59Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=9c326ced816ab4bf9e3e7380f5caa6a6cb05a784'/>
<id>urn:sha1:9c326ced816ab4bf9e3e7380f5caa6a6cb05a784</id>
<content type='text'>
</content>
</entry>
<entry>
<title>keymgr: Add a Keystore::contains accessor.</title>
<updated>2023-07-24T12:17:05Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-14T10:08:54Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=e36e7db6e7bfe06f967ce45e135714fd7983d470'/>
<id>urn:sha1:e36e7db6e7bfe06f967ce45e135714fd7983d470</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Revert "keymgr: Require callers to be explicit about which keystore to get keys from."</title>
<updated>2023-07-21T11:21:36Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-21T10:55:46Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=98337afec991077c861c672d9dbd6e95efc0c9a2'/>
<id>urn:sha1:98337afec991077c861c672d9dbd6e95efc0c9a2</id>
<content type='text'>
This reverts commit 38a6c74c7894dc96b16c9039cacc2a4023977b05.

This also updates some tests to make them compile with the reverted
version of the code.
</content>
</entry>
<entry>
<title>keymgr: Require callers to be explicit about where to remove keys from.</title>
<updated>2023-07-20T18:25:12Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-19T14:47:50Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=9d818f164b51a2cd9e8fb39b9ce65104512d9223'/>
<id>urn:sha1:9d818f164b51a2cd9e8fb39b9ce65104512d9223</id>
<content type='text'>
As with `KeyMgr::insert`, only `KeystoreSelector::Id` and
`KeystoreSelector::Default` are supported.
</content>
</entry>
<entry>
<title>keymgr: Add EncodableKey::to_bytes for encoding keys.</title>
<updated>2023-07-20T18:25:04Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-19T12:25:57Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=79c382ff50f2f153e4d9901901a1b7fe9c6e3128'/>
<id>urn:sha1:79c382ff50f2f153e4d9901901a1b7fe9c6e3128</id>
<content type='text'>
We'll need this to implement `Keystore::insert`.
</content>
</entry>
<entry>
<title>keymgr: Add some extra derives to ArtiPath and KeyType.</title>
<updated>2023-07-20T18:25:01Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-19T10:49:23Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=483bb6712dda764105760abcfe5cefd2fbac7646'/>
<id>urn:sha1:483bb6712dda764105760abcfe5cefd2fbac7646</id>
<content type='text'>
</content>
</entry>
<entry>
<title>keymgr: Require callers to be explicit about which keystore to get keys from.</title>
<updated>2023-07-20T18:24:57Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-19T13:24:08Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=38a6c74c7894dc96b16c9039cacc2a4023977b05'/>
<id>urn:sha1:38a6c74c7894dc96b16c9039cacc2a4023977b05</id>
<content type='text'>
</content>
</entry>
<entry>
<title>keymgr: Remove unimplemented/unnecessary has_key_bundle function.</title>
<updated>2023-07-20T18:24:44Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-18T13:24:05Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=8b0b8785f405f64351d23773f6c99dcc9103b7b9'/>
<id>urn:sha1:8b0b8785f405f64351d23773f6c99dcc9103b7b9</id>
<content type='text'>
The concept of a "key bundle" would introduce a lot of complexity while
providing little to no gain.

Some context:
```
Originally, "key bundles" were meant to be the answer to the question
"which keystore should insert place keys in?":
https://gitlab.torproject.org/tpo/core/arti/-/blob/36606a66ddca9abd1595d13c9397bc812bf24cb5/crates/tor-keymgr/src/mgr.rs#L60-69
However, I'm not so sure anymore that "key bundles" are the answer. I
don't think there is any way we can "guess" where a key should go. When
inserting/generating a new key, we should either:

always write to the same, primary key store, OR require the user to be
explicit about which key store the new key should go in (by assigning an
ID to each key store and expecting the user to provide it when
inserting/generating new keys)

I prefer the latter option, because it provides more flexibility, which
we're going to need when implementing the key management CLI (which I
think should allow users to generate keys anywhere they want, e.g. arti
keymgr generate &lt;key type&gt; --keystore hsm ...)
```

For more details, see the discussion on #903.

Closes #903
</content>
</entry>
<entry>
<title>keymgr: Require callers to specify which keystore to insert keys in.</title>
<updated>2023-07-20T18:24:29Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-18T13:21:36Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=0b208062139d85dfec161ee34fbe393bc5257e03'/>
<id>urn:sha1:0b208062139d85dfec161ee34fbe393bc5257e03</id>
<content type='text'>
The caller uses `KeystoreSelector` to specify which keystore to insert
the new key into (only `KeystoreSelector::Id` and
`KeystoreSelector::Default` are supported for `insert`).

The ability to insert keys in a particular keystore will come in handy
when we implement the key management CLI (the CLI will have an option
for specifying the keystore to access/modify).
</content>
</entry>
</feed>
