| Commit message (Collapse) | Author | Age | Files | Lines | ||
|---|---|---|---|---|---|---|
| ... | ||||||
| | * | | rpc: Reject relative unix paths. | Nick Mathewson | 2025-01-15 | 1 | -0/+9 | |
| | | | | ||||||
| | * | | rpc-book: Clarify that relative unix paths should abort. | Nick Mathewson | 2025-01-15 | 1 | -2/+3 | |
| | | | | | | | | | | | | | Closes #1749. | |||||
| * | | | Merge branch 'fs-mistrust-windows-fix' into 'main' | gabi-250 | 2025-01-16 | 1 | -1/+2 | |
| |\ \ \ | |_|/ |/| | | | | | | | | fs-mistrust: Fix test compilation on windows. See merge request tpo/core/arti!2718 | |||||
| | * | | fs-mistrust: Fix test compilation on windows. | Nick Mathewson | 2025-01-16 | 1 | -1/+2 | |
| |/ / | | | | | | | | | | | | | | | | | `std::os::unix::fs::MetadataExt` was indeed the right trait to import, but it doesn't exist on non-unix platforms. This is another bugfix on !2707. It should retain the fix of !2717. I've confirmed that it builds on Windows and passes tests on Linux and Mac. | |||||
| * | | Merge branch 'fix/compile' into 'main' | gabi-250 | 2025-01-16 | 1 | -5/+5 | |
| |\ \ | | | | | | | | | | | | | | | | | | | Fix: Tests fails to run on macos Closes #1809 See merge request tpo/core/arti!2717 | |||||
| | * | | Fix: Tests fails to run on macos | hhamud | 2025-01-16 | 1 | -5/+5 | |
| |/ / | ||||||
| * | | Merge branch 'rpc-clean-up-after-auth' into 'main' | Nick Mathewson | 2025-01-15 | 5 | -13/+24 | |
| |\ \ | | | | | | | | | | | | | rpclib: Clean up after performing cookie auth See merge request tpo/core/arti!2716 | |||||
| | * | | Run cbindgen for changed warnings. | Nick Mathewson | 2025-01-15 | 1 | -1/+1 | |
| | | | | ||||||
| | * | | rpc: More documentation on cookie_continue. | Nick Mathewson | 2025-01-15 | 1 | -0/+5 | |
| | | | | ||||||
| | * | | rpclib: Add a note about where cookie auth is documented. | Nick Mathewson | 2025-01-15 | 1 | -0/+1 | |
| | | | | ||||||
| | * | | rpclib: Clean up after performing cookie auth | Nick Mathewson | 2025-01-15 | 3 | -12/+17 | |
| | | | | | | | | | | | | | | | | | | | Previously we never released the intermediary cookie-auth object, which would have left it kicking around on the RPC server side until we finally closed our connection. | |||||
| * | | | Merge branch 'rpc-renaming-2' into 'main' | Nick Mathewson | 2025-01-15 | 4 | -65/+62 | |
| |\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | rpc: Rename new_stream_handle to new_oneshot_client. Closes #1664 See merge request tpo/core/arti!2715 | |||||
| | * | | | rpc: Clean up documenation surrounding OneshotClient | Nick Mathewson | 2025-01-15 | 1 | -11/+13 | |
| | | | | | ||||||
| | * | | | rpc: Rename new_stream_handle to new_oneshot_client. | Nick Mathewson | 2025-01-15 | 4 | -55/+50 | |
| | |/ / | | | | | | | | | | | | | | | | | | | | | | This method doesn't actually create a new stream; it creates a single-use client object that can be used with SOCKS to launch a new stream, and capture an RPC object for that stream. Closes #1664. | |||||
| * | | | Merge branch 'rpc-renaming-1' into 'main' | Nick Mathewson | 2025-01-15 | 4 | -5/+5 | |
| |\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | arti-rpcserver: Rename MethodNotFound to NoSuchMethod. Closes #1500 See merge request tpo/core/arti!2714 | |||||
| | * | | | rpc-meta-draft.md: Fix a dangling reference to RpcMethodNotFound. | Nick Mathewson | 2025-01-15 | 1 | -1/+1 | |
| | | | | | ||||||
| | * | | | arti-rpcserver: Rename MethodNotFound to NoSuchMethod. | Nick Mathewson | 2025-01-15 | 3 | -4/+4 | |
| | |/ / | | | | | | | | | | Closes #1500. | |||||
| * | | | Merge branch 'rpc-windows-default' into 'main' | Nick Mathewson | 2025-01-15 | 2 | -1/+7 | |
| |\ \ \ | |/ / |/| | | | | | | | | | | | | | | rpc: Document windows USER_DEFAULT connect point. Closes #1798 See merge request tpo/core/arti!2713 | |||||
| | * | | rpc: Document windows USER_DEFAULT connect point. | Nick Mathewson | 2025-01-15 | 2 | -1/+7 | |
| |/ / | ||||||
| * | | Merge branch 'rpc-cookie' into 'main' | Nick Mathewson | 2025-01-15 | 24 | -350/+1029 | |
| |\ \ | | | | | | | | | | | | | | | | | | | RPC: Implement cookie authentication Closes #1529 See merge request tpo/core/arti!2702 | |||||
| | * | | rpc: Expose Cookie::load unconditionally. | Nick Mathewson | 2025-01-15 | 1 | -2/+0 | |
| | | | | ||||||
| | * | | arti-rpcserver: require latest tiny-keccak. | Nick Mathewson | 2025-01-15 | 1 | -1/+1 | |
| | | | | ||||||
| | * | | rpc: Clarify auth-repetition rules. | Nick Mathewson | 2025-01-15 | 1 | -2/+5 | |
| | | | | ||||||
| | * | | rpc: Document cookie messages a little more. | Nick Mathewson | 2025-01-15 | 1 | -1/+14 | |
| | | | | ||||||
| | * | | rpc: Use symbolic constants for nonce/mac lengths. | Nick Mathewson | 2025-01-15 | 1 | -7/+14 | |
| | | | | ||||||
| | * | | rpc: Tests for cookie nonce/mac encoding/decoding. | Nick Mathewson | 2025-01-15 | 1 | -2/+46 | |
| | | | | | | | | | | | | | Also fix a bug in decoding, where we accepted too-short strings. | |||||
| | * | | rpc: Refactor Cookie and UnloadedCookie into a single type. | Nick Mathewson | 2025-01-15 | 6 | -28/+45 | |
| | | | | ||||||
| | * | | rpc: Update cbindgen warnings. | Nick Mathewson | 2025-01-15 | 1 | -0/+3 | |
| | | | | ||||||
| | * | | rpc: consolodate naming of "inherent" auth. | Nick Mathewson | 2025-01-15 | 7 | -23/+26 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | We don't want to call this "unix path" anywhere, since it corresponds to _any_ case where the ability to negotiate a successful connection means that the client is authorized. We also don't want to call it "none": The authentication is inherent to the connection, not nonexistent. | |||||
| | * | | rpc: Tweak cookie protocol to bind both nonces. | Nick Mathewson | 2025-01-15 | 4 | -10/+22 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Previously participants in the cookie protocol only bound the peer nonce in their MACs. With this change, they bind both nonces. This change is _probably_ not necessary for security, but it can't hurt. It follows a general principle that Adam Langley told me a long time ago: you won't regret binding more, but you might regret binding less. | |||||
| | * | | rpc: Keep Cookie in an Arc. | Nick Mathewson | 2025-01-15 | 3 | -5/+11 | |
| | | | | | | | | | | | | | | | | Since this is a secret value, it's probably best not to copy it all over the place. | |||||
| | * | | RPC tests: test that unix sockets still work. | Nick Mathewson | 2025-01-15 | 1 | -0/+14 | |
| | | | | ||||||
| | * | | RPC tests: use cookie authentication as the default. | Nick Mathewson | 2025-01-15 | 2 | -4/+39 | |
| | | | | | | | | | | | | | | | | (Since Windows doesn't have unix sockets, this is the option that will work everywhere.) | |||||
| | * | | rpc_tests: rename connpt_path, since we are about to have a second. | Nick Mathewson | 2025-01-15 | 1 | -5/+6 | |
| | | | | ||||||
| | * | | arti-rpc-client-core: Client side of cookie authentication. | Nick Mathewson | 2025-01-15 | 5 | -9/+106 | |
| | | | | ||||||
| | * | | arti-rpc-client-core: rewrap Cargo.toml | Nick Mathewson | 2025-01-15 | 1 | -1/+9 | |
| | | | | ||||||
| | * | | arti-rpcserver: Server side of cookie auth. | Nick Mathewson | 2025-01-15 | 4 | -10/+214 | |
| | | | | ||||||
| | * | | arti-rpcserver: Tell connections what kind of auth to expect. | Nick Mathewson | 2025-01-15 | 7 | -28/+38 | |
| | | | | ||||||
| | * | | arti-rpcserver: move inherent authentication to its own module. | Nick Mathewson | 2025-01-15 | 2 | -69/+83 | |
| | | | | ||||||
| | * | | arti-rpcserver: remove some dead code. | Nick Mathewson | 2025-01-15 | 1 | -57/+0 | |
| | | | | | | | | | | | | | | | | Now that we have a solid idea of how connections happen, it's clear we won't need to enable this negotiation mechanism. | |||||
| | * | | tor-rpc-connect: Cryptographic support for cookie auth. | Nick Mathewson | 2025-01-15 | 3 | -5/+220 | |
| | | | | | | | | | | | | | Conforms to rpc-cookie-sketch.md. | |||||
| | * | | rpc-cookie-sketch: typo fix. | Nick Mathewson | 2025-01-15 | 1 | -1/+1 | |
| | | | | ||||||
| | * | | tor-rpc-connect: defer loading auth cookies on the client side. | Nick Mathewson | 2025-01-15 | 3 | -6/+37 | |
| | | | | | | | | | | | | | | | | We want to load cookies only after we've connected and gotten a banner. | |||||
| | * | | tor-rpc-connect: move cookie auth support to its own module. | Nick Mathewson | 2025-01-15 | 5 | -171/+172 | |
| | | | | ||||||
| * | | | Merge branch 'p101-2024-q4' into 'main' | Alexander Hansen Færøy | 2025-01-15 | 1 | -0/+26 | |
| |\ \ \ | |_|/ |/| | | | | | | | | Update P101 numbers for Q4-2024 See merge request tpo/core/arti!2711 | |||||
| | * | | Update P101 numbers for Q4-2024. | Alexander Færøy | 2025-01-15 | 1 | -0/+26 | |
| | |/ | ||||||
| * | | Merge branch 'relay-bin-3' into 'main' | opara | 2025-01-15 | 2 | -21/+2 | |
| |\ \ | | | | | | | | | | | | | arti-relay: remove 'override_net_params' config See merge request tpo/core/arti!2709 | |||||
| | * | | arti-relay: remove 'override_net_params' config | Steven Engler | 2025-01-14 | 2 | -21/+2 | |
| | | | | | | | | | | | | | | | | | | | | | | We think that for relays, the 'override_net_params' config option is overly broad and a footgun. We can always re-add this back later if we want to, but for now the focus will be on exposing specific config options for features that are okay to be changed by users. | |||||
| * | | | Merge branch 'kist-socks' into 'main' | gabi-250 | 2025-01-15 | 34 | -46/+431 | |
| |\ \ \ | |_|/ |/| | | | | | | | | | | | | | | tor-proto: Initial KIST support (Linux-only) Closes #1728, #1729, and #1730 See merge request tpo/core/arti!2706 | |||||
| | * | | tor-chanmgr: Update NetParamsExtract docs (fmt). | Gabriela Moldovan | 2025-01-15 | 1 | -1/+2 | |
| | | | | ||||||
