<feed xmlns='http://www.w3.org/2005/Atom'>
<title>mirrors/arti.git/crates/tor-keymgr/src/config, branch arti-v1.2.8</title>
<subtitle>mirror of https://gitlab.torproject.org/tpo/core/arti
</subtitle>
<id>http://git.dilluti0n.com/mirrors/arti.git/atom?h=arti-v1.2.8</id>
<link rel='self' href='http://git.dilluti0n.com/mirrors/arti.git/atom?h=arti-v1.2.8'/>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/'/>
<updated>2024-09-23T18:55:23Z</updated>
<entry>
<title>tor-keymgr: Rename keystore.type to keystore.kind.</title>
<updated>2024-09-23T18:55:23Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-09-23T14:43:37Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=7d075d16e615138552f91a72e9cf0faf0fcb1739'/>
<id>urn:sha1:7d075d16e615138552f91a72e9cf0faf0fcb1739</id>
<content type='text'>
In !2394 we settled on `kind`. This updates the error messages to
reference the new field name.
</content>
</entry>
<entry>
<title>tor-keymgr: Move keystore config under keystore.primary.</title>
<updated>2024-09-23T18:55:23Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-09-23T14:14:39Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=dcb29c0e5d5ad1c3795baa50f778a0f13d668325'/>
<id>urn:sha1:dcb29c0e5d5ad1c3795baa50f778a0f13d668325</id>
<content type='text'>
The keystore settings only configure the *primary* keystore, so they
should be under `keystore.primary`.
</content>
</entry>
<entry>
<title>arti: Reinstate the keystore.enabled option.</title>
<updated>2024-09-23T18:37:41Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-09-23T14:08:08Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=c359a7abd1543c53c596e9092350b0810f72765e'/>
<id>urn:sha1:c359a7abd1543c53c596e9092350b0810f72765e</id>
<content type='text'>
This is a follow-up from !2394

I want to keep the `keystore.enabled` option, because I'm planning on
extending `ArtiKeystoreConfig` to support configuring secondary
keystores too (currently, the only supported setting is `keystore.kind`,
which configures the primary keystore). `keystore.enabled` will disable
keystore use altogether (i.e. both primary and secondary).

Currently, we only support configuring the "primary" (previously known
as "default") keystore, which can be either "native" (the on-disk Arti
keystore), or "ephemeral" (an in-memory keystore). To implement #858,
we will need to support configuring additional keystores too, so we will
need to move to a config of the form
```toml
[storage.keystore]
# Whether the keystore is enabled.
#enabled = "auto"

# Configure the primary keystore.
[storage.keystore.primary]
# The type of primary keystore to use
kind = "auto" | "native" | "ephemeral"

# Optionally configure C Tor keystores for arti to use.
#
# Note: The keystores listed here are read-only (keys are only
# ever written to the primary keystore, configured in
# `storage.keystore.primary`).
[[storage.keystore.ctor]]
# If the `kind` is `service`, this should be set to the `HiddenServiceDirectory`
# of your hidden service. Arti will read `HiddenServiceDirectory/hostname`
# and `HiddenServiceDirectory/private_key`. (Note: if your service is running
# in restricted discovery mode, you must set the
# `[[onion_services."&lt;the nickname of your svc&gt;".restricted_discovery.key_dirs]]`
# to `HiddenServiceDirectory/client_keys`
#
# If the `kind` is `client`, this should be set to `ClientOnionAuthDir` of
# your client. If Arti is configured to run as a client (i.e. if it runs in SOCKS
# proxy mode), it will read the client restricted discovery keys from this path.
path  = "/foo/bar"
# The type of keystore `path` should be interpreted as
kind = "client" | "service"
```

This moves the current keystore settings to `storage.keystore.primary`
in preparation for that change.
</content>
</entry>
<entry>
<title>tor-keymgr: Add back ArtiKeystoreConfig::is_enabled().</title>
<updated>2024-09-23T17:58:55Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-09-23T14:23:13Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=b3cf77ed943e97428d2d6c3ef1f352ee9b273617'/>
<id>urn:sha1:b3cf77ed943e97428d2d6c3ef1f352ee9b273617</id>
<content type='text'>
I am adding `is_enabled()` back because I plan to un-deprecate the
`enabled` setting.
</content>
</entry>
<entry>
<title>tor-keymgr: added support for specifying keystore kind to ArtiKeystoreConfig</title>
<updated>2024-09-20T23:13:14Z</updated>
<author>
<name>Morgan</name>
<email>morgan@torproject.org</email>
</author>
<published>2024-09-07T04:37:09Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=641de54341202c5797d3f9b2d2fa1c82a04d2519'/>
<id>urn:sha1:641de54341202c5797d3f9b2d2fa1c82a04d2519</id>
<content type='text'>
</content>
</entry>
<entry>
<title>tor-keymgr: renamed ArtiNativeKeystoreConfig to ArtiKeystoreConfig</title>
<updated>2024-09-20T23:13:14Z</updated>
<author>
<name>Morgan</name>
<email>morgan@torproject.org</email>
</author>
<published>2024-09-15T18:25:53Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=5e4e7b69b8cd2791763559cb0563dc60c8a66ce2'/>
<id>urn:sha1:5e4e7b69b8cd2791763559cb0563dc60c8a66ce2</id>
<content type='text'>
</content>
</entry>
<entry>
<title>arti, arti-client, tor-keymgr: Remove keystore dir configuration.</title>
<updated>2024-02-21T14:58:46Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-02-21T12:46:20Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=90addac031b7242b9352ce2c635b9802e657fabe'/>
<id>urn:sha1:90addac031b7242b9352ce2c635b9802e657fabe</id>
<content type='text'>
Closes #1202
</content>
</entry>
<entry>
<title>tor-keymgr: Abolish ArtiNativeKeystoreConfig::expand_keystore_dir.</title>
<updated>2024-01-10T15:07:26Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2024-01-10T15:03:25Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=0f6d98bcb26707a89385975ea3177d56ab08ab4a'/>
<id>urn:sha1:0f6d98bcb26707a89385975ea3177d56ab08ab4a</id>
<content type='text'>
This resolves a `TODO HSS` in arti-client.

Part of #1187
</content>
</entry>
<entry>
<title>arti-client: use sub_builder for ArtiNativeKeystoreConfig</title>
<updated>2023-12-13T14:04:09Z</updated>
<author>
<name>Nick Mathewson</name>
<email>nickm@torproject.org</email>
</author>
<published>2023-12-13T14:04:09Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=4d7aeeab57577c98a15aa78ef5cd5de7652f39e8'/>
<id>urn:sha1:4d7aeeab57577c98a15aa78ef5cd5de7652f39e8</id>
<content type='text'>
The sub_builder pattern changes `StorageConfigBuilder` so that
instead of holding an `Option&lt;ArtiNativeKeystoreConfig&gt;`,
it holds an `ArtiNativeKeystoreConfigBuilder`.
This makes it a little more ergonomic to use from Rust,
and lets us use defaults for the builder fields so that we
can make them optional in our configuration.
</content>
</entry>
<entry>
<title>keymgr: Use std::cfg instead of if_cfg.</title>
<updated>2023-07-20T18:35:54Z</updated>
<author>
<name>Gabriela Moldovan</name>
<email>gabi@torproject.org</email>
</author>
<published>2023-07-20T18:35:54Z</published>
<link rel='alternate' type='text/html' href='http://git.dilluti0n.com/mirrors/arti.git/commit/?id=3dbc49f3d01b5588400b119a53efb175094c2861'/>
<id>urn:sha1:3dbc49f3d01b5588400b119a53efb175094c2861</id>
<content type='text'>
</content>
</entry>
</feed>
