summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
...
| * | crates: Remove tor-congestionDavid Goulet2025-01-166-473/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | Crate is unused and most of its code will be reworked and folded into tor-proto in the future commit with the Congestion Control work. Related #534 Signed-off-by: David Goulet <[email protected]>
* | | Merge branch 'rpc-connect-clarify' into 'main'Nick Mathewson2025-01-163-14/+56
|\ \ \ | |_|/ |/| | | | | | | | | | | | | | rpc: Clarify and fix some issues surrounding relative paths. Closes #1748 and #1749 See merge request tpo/core/arti!2712
| * | rpc: Ignore non-absolute paths if they are default.Nick Mathewson2025-01-151-11/+41
| | |
| * | rpc-book: Decline non-absolute paths in our default paths.Nick Mathewson2025-01-151-1/+3
| | | | | | | | | | | | Closes #1748.
| * | rpc: Reject relative unix paths.Nick Mathewson2025-01-151-0/+9
| | |
| * | rpc-book: Clarify that relative unix paths should abort.Nick Mathewson2025-01-151-2/+3
| | | | | | | | | | | | Closes #1749.
* | | Merge branch 'fs-mistrust-windows-fix' into 'main'gabi-2502025-01-161-1/+2
|\ \ \ | |_|/ |/| | | | | | | | fs-mistrust: Fix test compilation on windows. See merge request tpo/core/arti!2718
| * | fs-mistrust: Fix test compilation on windows.Nick Mathewson2025-01-161-1/+2
|/ / | | | | | | | | | | | | | | | | `std::os::unix::fs::MetadataExt` was indeed the right trait to import, but it doesn't exist on non-unix platforms. This is another bugfix on !2707. It should retain the fix of !2717. I've confirmed that it builds on Windows and passes tests on Linux and Mac.
* | Merge branch 'fix/compile' into 'main'gabi-2502025-01-161-5/+5
|\ \ | | | | | | | | | | | | | | | | | | Fix: Tests fails to run on macos Closes #1809 See merge request tpo/core/arti!2717
| * | Fix: Tests fails to run on macoshhamud2025-01-161-5/+5
|/ /
* | Merge branch 'rpc-clean-up-after-auth' into 'main'Nick Mathewson2025-01-155-13/+24
|\ \ | | | | | | | | | | | | rpclib: Clean up after performing cookie auth See merge request tpo/core/arti!2716
| * | Run cbindgen for changed warnings.Nick Mathewson2025-01-151-1/+1
| | |
| * | rpc: More documentation on cookie_continue.Nick Mathewson2025-01-151-0/+5
| | |
| * | rpclib: Add a note about where cookie auth is documented.Nick Mathewson2025-01-151-0/+1
| | |
| * | rpclib: Clean up after performing cookie authNick Mathewson2025-01-153-12/+17
| | | | | | | | | | | | | | | | | | Previously we never released the intermediary cookie-auth object, which would have left it kicking around on the RPC server side until we finally closed our connection.
* | | Merge branch 'rpc-renaming-2' into 'main'Nick Mathewson2025-01-154-65/+62
|\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | rpc: Rename new_stream_handle to new_oneshot_client. Closes #1664 See merge request tpo/core/arti!2715
| * | | rpc: Clean up documenation surrounding OneshotClientNick Mathewson2025-01-151-11/+13
| | | |
| * | | rpc: Rename new_stream_handle to new_oneshot_client.Nick Mathewson2025-01-154-55/+50
| |/ / | | | | | | | | | | | | | | | | | | | | | This method doesn't actually create a new stream; it creates a single-use client object that can be used with SOCKS to launch a new stream, and capture an RPC object for that stream. Closes #1664.
* | | Merge branch 'rpc-renaming-1' into 'main'Nick Mathewson2025-01-154-5/+5
|\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | arti-rpcserver: Rename MethodNotFound to NoSuchMethod. Closes #1500 See merge request tpo/core/arti!2714
| * | | rpc-meta-draft.md: Fix a dangling reference to RpcMethodNotFound.Nick Mathewson2025-01-151-1/+1
| | | |
| * | | arti-rpcserver: Rename MethodNotFound to NoSuchMethod.Nick Mathewson2025-01-153-4/+4
| |/ / | | | | | | | | | Closes #1500.
* | | Merge branch 'rpc-windows-default' into 'main'Nick Mathewson2025-01-152-1/+7
|\ \ \ | |/ / |/| | | | | | | | | | | | | | rpc: Document windows USER_DEFAULT connect point. Closes #1798 See merge request tpo/core/arti!2713
| * | rpc: Document windows USER_DEFAULT connect point.Nick Mathewson2025-01-152-1/+7
|/ /
* | Merge branch 'rpc-cookie' into 'main'Nick Mathewson2025-01-1524-350/+1029
|\ \ | | | | | | | | | | | | | | | | | | RPC: Implement cookie authentication Closes #1529 See merge request tpo/core/arti!2702
| * | rpc: Expose Cookie::load unconditionally.Nick Mathewson2025-01-151-2/+0
| | |
| * | arti-rpcserver: require latest tiny-keccak.Nick Mathewson2025-01-151-1/+1
| | |
| * | rpc: Clarify auth-repetition rules.Nick Mathewson2025-01-151-2/+5
| | |
| * | rpc: Document cookie messages a little more.Nick Mathewson2025-01-151-1/+14
| | |
| * | rpc: Use symbolic constants for nonce/mac lengths.Nick Mathewson2025-01-151-7/+14
| | |
| * | rpc: Tests for cookie nonce/mac encoding/decoding.Nick Mathewson2025-01-151-2/+46
| | | | | | | | | | | | Also fix a bug in decoding, where we accepted too-short strings.
| * | rpc: Refactor Cookie and UnloadedCookie into a single type.Nick Mathewson2025-01-156-28/+45
| | |
| * | rpc: Update cbindgen warnings.Nick Mathewson2025-01-151-0/+3
| | |
| * | rpc: consolodate naming of "inherent" auth.Nick Mathewson2025-01-157-23/+26
| | | | | | | | | | | | | | | | | | | | | | | | | | | We don't want to call this "unix path" anywhere, since it corresponds to _any_ case where the ability to negotiate a successful connection means that the client is authorized. We also don't want to call it "none": The authentication is inherent to the connection, not nonexistent.
| * | rpc: Tweak cookie protocol to bind both nonces.Nick Mathewson2025-01-154-10/+22
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Previously participants in the cookie protocol only bound the peer nonce in their MACs. With this change, they bind both nonces. This change is _probably_ not necessary for security, but it can't hurt. It follows a general principle that Adam Langley told me a long time ago: you won't regret binding more, but you might regret binding less.
| * | rpc: Keep Cookie in an Arc.Nick Mathewson2025-01-153-5/+11
| | | | | | | | | | | | | | | Since this is a secret value, it's probably best not to copy it all over the place.
| * | RPC tests: test that unix sockets still work.Nick Mathewson2025-01-151-0/+14
| | |
| * | RPC tests: use cookie authentication as the default.Nick Mathewson2025-01-152-4/+39
| | | | | | | | | | | | | | | (Since Windows doesn't have unix sockets, this is the option that will work everywhere.)
| * | rpc_tests: rename connpt_path, since we are about to have a second.Nick Mathewson2025-01-151-5/+6
| | |
| * | arti-rpc-client-core: Client side of cookie authentication.Nick Mathewson2025-01-155-9/+106
| | |
| * | arti-rpc-client-core: rewrap Cargo.tomlNick Mathewson2025-01-151-1/+9
| | |
| * | arti-rpcserver: Server side of cookie auth.Nick Mathewson2025-01-154-10/+214
| | |
| * | arti-rpcserver: Tell connections what kind of auth to expect.Nick Mathewson2025-01-157-28/+38
| | |
| * | arti-rpcserver: move inherent authentication to its own module.Nick Mathewson2025-01-152-69/+83
| | |
| * | arti-rpcserver: remove some dead code.Nick Mathewson2025-01-151-57/+0
| | | | | | | | | | | | | | | Now that we have a solid idea of how connections happen, it's clear we won't need to enable this negotiation mechanism.
| * | tor-rpc-connect: Cryptographic support for cookie auth.Nick Mathewson2025-01-153-5/+220
| | | | | | | | | | | | Conforms to rpc-cookie-sketch.md.
| * | rpc-cookie-sketch: typo fix.Nick Mathewson2025-01-151-1/+1
| | |
| * | tor-rpc-connect: defer loading auth cookies on the client side.Nick Mathewson2025-01-153-6/+37
| | | | | | | | | | | | | | | We want to load cookies only after we've connected and gotten a banner.
| * | tor-rpc-connect: move cookie auth support to its own module.Nick Mathewson2025-01-155-171/+172
| | |
* | | Merge branch 'p101-2024-q4' into 'main'Alexander Hansen Færøy2025-01-151-0/+26
|\ \ \ | |_|/ |/| | | | | | | | Update P101 numbers for Q4-2024 See merge request tpo/core/arti!2711
| * | Update P101 numbers for Q4-2024.Alexander Færøy2025-01-151-0/+26
| |/