summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
...
| * | | | | tor-dirserver: Improve note on query performanceClara Engler2026-01-151-6/+8
| | | | | |
| * | | | | tor-dirserver: Fix formulationClara Engler2026-01-151-1/+1
| | | | | |
| * | | | | tor-dirserver: Implement authcert retrieval logicClara Engler2026-01-153-4/+280
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit implements the logic necessary to retrieve the (missing) directory authority certificates from an upstream directory authority. In order to do so, this commit implements three new functions: 1. `download_authority_certificates()` 2. `parse_authority_certificates()` 3. `verify_authority_certificates()` 4. `insert_authority_certificates()`
| * | | | | parse2: OOB check for parse_netdoc_multiple_with_offsetsClara Engler2026-01-151-5/+15
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit adds an out-of-bounds memory check to parse2::parse_netdoc_multiple_with_offsets while adding the guarantee that interfacing applications do not need to validate the returned usize values to be in-range.
| * | | | | tor-dirserver: Ensure algorithm with CHECKClara Engler2026-01-151-2/+3
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit adds a CHECK constraint to the compressed_document table in order to ensure that `algorithm` may only take up a limited set of values.
| * | | | | tor-dirserver: Move ContentEncoding to databaseClara Engler2026-01-152-20/+18
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit moves the ContentEncoding enum from the http module to the database module, primarily because the content encoding is more of a matter to the database, as this is where the data actually resides.
| * | | | | tor-dirserver: Support for inserting into storeClara Engler2026-01-154-10/+227
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit implements support for adding arbitrary documents into the store table. It is non-trivial because the relevant data has to be compressed into various formats, so it can be retrieved without delays.
| * | | | | tor-dirserver: Test authcert queryingClara Engler2026-01-154-0/+139
| | | | | |
| * | | | | tor-dirserver: Operation test refactoringClara Engler2026-01-151-9/+7
| | | | | |
| * | | | | tor-dirserver: Add get_recent_authority_certificatesClara Engler2026-01-152-3/+111
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit adds the `get_recent_authority_certificates()` function to the operation of a directory mirror, which is responsible for looking up the certificates in the database, returning the parsed found ones as well as the missing ones.
| * | | | | tor-dirserver: `From<Timestamp> for SystemTime`Clara Engler2026-01-151-0/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The reverse direction already exists and it will be required when we act with functions outside the crate that only accept a `SystemTime` in situations where we just have a `Timestamp`.
| * | | | | tor-dirserver: Add `dir_key_published` to schemaClara Engler2026-01-151-1/+4
| | | | | |
| * | | | | tor-llcrypto: Add `RsaIdentity::as_hex_upper`Clara Engler2026-01-152-0/+11
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit adds the method `as_hex_upper(&self) -> String` to `RsaIdentity`, which returns the `RsaIdentity` as a hexadecimal string in uppercase. Although this type already implements `ToString`, this result is unsuitable for working with consensuses because they neither contain a `$` prefix, nor are encoded in lowercase.
| * | | | | tor-netdoc: Make ConsensusFlavor exhaustiveClara Engler2026-01-151-1/+5
| |/ / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit marks the ConsensusFlavor struct exhaustive because handling it in a non-exhaustive fashion would cause lots of redundant error handling in tor-dirserver. Besides, a change in the list of consensus flavors should indeed be breaking for applications making use of this struct, as it is quite a heavy change, from a netdoc point of view.
* | | | | Merge branch 'version-expose' into 'main'Alexander Hansen Færøy2026-01-154-9/+9
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | tor-netdoc: Rename Version and expose it as netstatus::SoftwareVersion See merge request tpo/core/arti!3594
| * | | | | tor-netdoc: Rename Version and expose it as netstatus::SoftwareVersionIan Jackson2026-01-154-9/+9
| |/ / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This struct is still a bit odd, and there's a todo saying we may change it again, but at least now it's now available. While we're here, rename the variant Tor to CTor.
* | | | | Merge branch 'install-runtime' into 'main'Ian Jackson2026-01-156-2/+39
|\ \ \ \ \ | |/ / / / |/| | | | | | | | | | | | | | Use and document `tor_log_ratelim::install_runtime()` See merge request tpo/core/arti!3593
| * | | | arti-client: document the need for `tor_log_ratelim::install_runtime()`Steven Engler2026-01-141-0/+25
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This function can only be called once within a program, so we can't call it ourselves from a `TorClient`. The user must call it themselves, so we should document this.
| * | | | arti-relay: call `tor_log_ratelim::install_runtime`Steven Engler2026-01-143-0/+6
| | | | |
| * | | | arti: call `tor_log_ratelim::install_runtime`Steven Engler2026-01-143-2/+8
|/ / / /
* | | | Merge branch 'authcert-constructor-non-exhaustive' into 'main'Clara Engler2026-01-146-13/+51
|\ \ \ \ | | | | | | | | | | | | | | | | | | | | tor-netdoc: Use manual non exhaustive in constructors See merge request tpo/core/arti!3571
| * | | | tor-netdoc: Fix typoIan Jackson2026-01-141-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | As per https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/3571#note_3325449
| * | | | tor-netdoc: constructors: Use manual non exhaustiveIan Jackson2026-01-143-3/+14
| | | | | | | | | | | | | | | | | | | | With `#[non_exhaustive]`, you're not allowed to write even `Thing { ..base }`.
| * | | | tor-netdoc: derives: New `skip` document field optionIan Jackson2026-01-144-10/+37
| | | | | | | | | | | | | | | | | | | | | | | | | This lets us having document items that are "manually non exhaustive" which is necessary for struct literal constructors.
* | | | | Merge branch 'download-test-speed' into 'main'Clara Engler2026-01-142-36/+7
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | Speedup in tor-dirserver tests See merge request tpo/core/arti!3591
| * | | | | tor-dirserver: Speedup tests using tokio's test-utilClara Engler2026-01-142-9/+7
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit speeds up the tests in `tor-dirserver` by using functionality from Tokio's `test-util`. Most notably, it runs the time intensive test in paused mode, which means that the clock gets advanced either explicitly or implicitly using auto-advance in case the runtime has nothing to do. In our case, the last one, auto-advancing, is used, leading to our sleep calls returning immediately. This is good enough for testing in this module. It is not the responsibility of tor-dirserver to ensure whether `RetryDelay` returns proper values, as this is the responsibility of `tor-basic-utils`. Still, it is a bit unfortunate that Tokio offers no way to manually disbale the auto-advancing. In the future, it might be useful to migrate more parts of this to crate to `tor-rtcompat`, but for now, this change is a good enough performance fix.
| * | | | | tor-dirserver: Remove slow ineffective testClara Engler2026-01-141-27/+0
| |/ / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit removes `mirror::download::test::request_fail_timeout` which takes more than five seconds (due to a timeout) and is generally ineffective in what it does, because testing whether a task is still sleeping after a certain time is not super trivial with the tools Tokio offers. All this test offers is testing that we enter a timeout at all.
* | | | | Merge branch 'rpc-auto-spec' into 'main'Nick Mathewson2026-01-141-11/+54
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | rpc: Document the intended behavior of inet-auto connpts See merge request tpo/core/arti!3587
| * | | | | rpc: Rename socket_stored_in_file => socket_address_fileNick Mathewson2026-01-141-2/+2
| | | | | |
| * | | | | Suggestions from @dizietNick Mathewson2026-01-141-0/+23
| | | | | |
| * | | | | rpc: Document the intended behavior of inet-auto connptsNick Mathewson2026-01-131-11/+31
| | |_|/ / | |/| | | | | | | | | | | | | Part of #1844.
* | | | | Merge branch 'oniux-web' into 'main'Alexander Hansen Færøy2026-01-143-0/+165
|\ \ \ \ \ | |_|/ / / |/| | | | | | | | | | | | | | web: Add oniux website See merge request tpo/core/arti!3562
| * | | | web: Update oniux to 0.7.0Clara Engler2026-01-141-1/+1
| | | | |
| * | | | web: Minor improvements to oniux introClara Engler2026-01-141-4/+5
| | | | |
| * | | | web: Add oniux websiteClara Engler2026-01-143-0/+164
|/ / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | For now, this is just a copy of the oniux blog post alongside some installation instructions. People still tend to refer to the blog post as the canonical source of information, which is rather bad, as updating the installation instructions there for every release is rather cumbersome.
* | | | Merge branch 'flaky-busy-timeout' into 'main'Ian Jackson2026-01-141-38/+58
|\ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | tor-dirserver: Eliminate use of sleep in tests Closes #2308 See merge request tpo/core/arti!3582
| * | | | tor-dirserver: Eliminate use of sleep in testsClara Engler2026-01-131-38/+58
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This commit eliminates the use of sleep in database tests because those can be flaky, especially when the CI scheduler is overloaded, leading to potential timeout invariants not holding true anymore. We now fix this by using synchronization primitives from Rust in order for threads to communicate. Documentation has been added explaining how these tests work in greater detail. Fixes #2308
* | | | | Merge branch 'post-release-bis' into 'main'Ian Jackson2026-01-148-330/+418
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | Post-release steps (conflicts resolved) See merge request tpo/core/arti!3585
| * | | | | slotmap-careful: Drop HopSlotMapIan Jackson2026-01-142-4/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | We aren't using this, and this crate still has a 0.x version. I think this is OK, rather than having a deprecation period.
| * | | | | tor-dirserver: Fix code broken by rusqlite upgradeClara Engler2026-01-141-2/+10
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | SQLite does not support u64 and the new version of SQLite makes a certain piece of tor-dirserver no longer compile due to the lack of `ToSql` for `u64`. This commit fixes it by converting these types from `u64` to `i64` saturatingly.
| * | | | | cargo: Upgrade dependencies potentially breakingClara Engler2026-01-145-34/+47
| | | | | |
| * | | | | cargo: Perform non-breaking upgradesClara Engler2026-01-141-291/+360
| | | | | | | | | | | | | | | | | | | | | | | | This commit is a simple invocation of `cargo update`.
* | | | | | Merge branch 'encode-authcert-sigs-doc' into 'main'Ian Jackson2026-01-141-0/+156
|\ \ \ \ \ \ | |/ / / / / |/| | | | | | | | | | | | | | | | | Notes about netdoc shift/reduce conflicts and authcert in netstatus See merge request tpo/core/arti!3565
| * | | | | authcert-in-consensus: Allow the `fingerprint` anomalyIan Jackson2026-01-121-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | As per https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/3565#note_3323304 https://gitlab.torproject.org/tpo/core/torspec/-/merge_requests/453#note_3323185
| * | | | | authcert-in-consensus: Fix some wrong intro item refsIan Jackson2026-01-121-2/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | As per https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/3565#note_3323305 https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/3565#note_3323306
| * | | | | authcert-in-consensus: Revised less-generic proposalIan Jackson2026-01-121-45/+67
| | | | | |
| * | | | | authcert-in-consensus: Improve, clarify, xref requirementsIan Jackson2026-01-121-13/+9
| | | | | |
| * | | | | authcert-in-consensus: Fix intro wording and semantic botchesIan Jackson2026-01-121-13/+12
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Firstly, this only applies to votes, not other kinds of nestatus. Secondly, we wrote "netstatus" a couple of times instead of "vote" which is very confusing.
| * | | | | authcert-in-consensus: Fix typoIan Jackson2026-01-121-1/+1
| | | | | |
| * | | | | Notes about netdoc shift/reduce conflicts and authcert in netstatusIan Jackson2026-01-121-0/+139
| | |_|_|/ | |/| | |