summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
...
* | | Merge branch 'rustdoc_fix_2022_07_26' into 'main'Nick Mathewson2022-07-261-1/+1
|\ \ \ | |_|/ |/| | | | | | | | Fix a rustdoc link in tor-netdir. See merge request tpo/core/arti!647
| * | Fix a rustdoc link in tor-netdir.Nick Mathewson2022-07-261-1/+1
|/ /
* | Merge branch 'netdir_api' into 'main'Ian Jackson2022-07-2617-72/+157
|\ \ | | | | | | | | | | | | | | | | | | Refactor NetDirProvider APIs to better support timeliness. Closes #518 See merge request tpo/core/arti!642
| * | tor-dirmgr: Remove opt_netdir entirely.Nick Mathewson2022-07-263-12/+9
| | | | | | | | | | | | Its existence tended to hide bugs, and was just asking for trouble.
| * | CircMgr: Remove directory liveness testing.Nick Mathewson2022-07-262-23/+2
| | |
| * | tor-netdir: Remove latest_netdir method.Nick Mathewson2022-07-262-10/+1
| | |
| * | Update arti-client to new NetDirProvider API.Nick Mathewson2022-07-264-6/+35
| | | | | | | | | | | | | | | | | | This allows us to give better errors in the case where bootstrapping succeeds at first, but fails thereafter for long enough to make our directory expire.
| * | CircMgr: Update to new NetDirProvider APINick Mathewson2022-07-261-8/+7
| | | | | | | | | | | | | | | Everything here wants a timely directory, except that it is okay to build timeout-testing circuits with a stale one.
| * | ChanMgr: Only update parameters from a timely directory.Nick Mathewson2022-07-261-2/+2
| | |
| * | GuardMgr: Update to use new NetDirProvider API.Nick Mathewson2022-07-262-4/+4
| | |
| * | Remove unused DirMgr::netdir method, make opt_netdir private.Nick Mathewson2022-07-262-11/+2
| | |
| * | Add new APIs to NetDirProvider to better support timeliness.Nick Mathewson2022-07-265-6/+105
|/ / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Over the years we've found that most callers who want a netdir want what C Tor calls a "reasonably live" network directory: One that is not expired by too much, or too far in the future. But a few want a _strictly_ live directory: one that says it is valid now, with no tolerances. And a few want _any_ directory, no matter how expired it is. This commit adds net methods to NetDirProvider to provide these directories. I think that most use cases will want to explicitly think about what kind of directory they want, so I've made `netdir` the simplest method. I might remove `timely_netdir` by the end of this branch; see TODO comments. Part of #518.
* | Merge branch 'ticket_503' into 'main'eta2022-07-258-15/+33
|\ \ | | | | | | | | | | | | | | | | | | Rename DirSkewTolerance to DirTolerance, download_tolerance to dir_tolerance Closes #503 See merge request tpo/core/arti!638
| * | Rename download_tolerance to directory_toleranceNick Mathewson2022-07-224-5/+15
| | | | | | | | | | | | Closes #503.
| * | Rename DirSkewTolerance to DirToleranceNick Mathewson2022-07-226-11/+19
| | | | | | | | | | | | | | | | | | This name is more accurate because we aren't only dealing with clock skew here: we're also trying to tolerate the case where the authorities fail to reach consensus for a while.
* | | Merge branch 'cert-api-improv-bis' into 'main'Nick Mathewson2022-07-251-2/+2
|\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | use Ed25519 identity instead of PublicKey in tor-cert::rsa Closes #512 See merge request tpo/core/arti!643
| * | | use Ed25519 identity instead of PublicKey in tor-cert::rsatrinity-1686a2022-07-251-2/+2
|/ / /
* | | Merge branch 'cert-api-improv' into 'main'Nick Mathewson2022-07-2514-66/+62
|\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | change usage of PublicKey to Ed25519 in tor-cert Closes #512 See merge request tpo/core/arti!641
| * | | fix nighly clippytrinity-1686a2022-07-235-14/+9
| | | |
| * | | change usage of PublicKey to Ed25519 in tor-certtrinity-1686a2022-07-239-43/+43
| | | | | | | | | | | | | | | | and propagate to other affected crates
| * | | change check_key to take a Option<&_> instead of &Option<_>trinity-1686a2022-07-238-12/+13
|/ / /
* | | Merge branch 'onion-service-fixup' into 'main'Ian Jackson2022-07-221-2/+3
|\ \ \ | |_|/ |/| | | | | | | | Fix compilation of EstablishInto encoding. See merge request tpo/core/arti!640
| * | Fix compilation of EstablishInto encoding.Nick Mathewson2022-07-221-2/+3
|/ / | | | | | | It was based on the old `Writeable` API.
* | Merge branch 'hs-cells' into 'main'eta2022-07-224-1/+89
|\ \ | |/ |/| | | | | Implement ESTABLISH_INTRO relay cell See merge request tpo/core/arti!626
| * Implement ESTABLISH_INTRO relay cellYuan Lyu2022-07-184-1/+89
| |
* | Merge branch 'arti_client_error_cleanup' into 'main'Nick Mathewson2022-07-213-34/+73
|\ \ | | | | | | | | | | | | Clean-ups to error variants in arti-client See merge request tpo/core/arti!637
| * | arti-client: Split "Persist" into setup and access variants.Nick Mathewson2022-07-212-5/+16
| | |
| * | arti_client: turn "Proto" error into StreamFailed.Nick Mathewson2022-07-212-6/+22
| | |
| * | arti_client: Split DirMgr error into useful types.Nick Mathewson2022-07-213-6/+15
| | |
| * | arti-client: minor edits in error messages and commentsNick Mathewson2022-07-211-17/+20
|/ /
* | Merge branch 'phf_min_vers' into 'main'eta2022-07-202-50/+62
|\ \ | | | | | | | | | | | | Downgrade phf back to 0.10 See merge request tpo/core/arti!636
| * | Also downgrade serde_with: Version 2.0 requires Rust 1.60Nick Mathewson2022-07-202-41/+45
| | |
| * | Downgrade phf back to 0.10Nick Mathewson2022-07-202-9/+17
|/ / | | | | | | | | It turns out that phf 0.11 depends on Rust 1.60, which is above our MSRV.
* | Merge branch 'unicode-license' into 'main'eta2022-07-201-6/+20
|\ \ | | | | | | | | | | | | Teach check_licenses to accept license on `unicode-ident`. See merge request tpo/core/arti!635
| * | Teach check_licenses to accept license on `unicode-ident`.Nick Mathewson2022-07-201-6/+20
|/ / | | | | | | | | | | | | | | | | | | The license there is `(MIT OR Apache-2.0) AND Unicode-DFS-2016`, which fine, but the existing shell script doesn't actually handle "AND" correctly. This commit adds a workaround for licenses that are "AND", and some comments about weaknesses in our (lack of) boolean expression parsing. This should fix CI.
* | Merge branch 'permission-var' into 'main'eta2022-07-201-1/+0
|\ \ | | | | | | | | | | | | disable-fs-permission-checks: remove variable from help message See merge request tpo/core/arti!633
| * | disable-fs-permission-checks: remove variable from help messageJim Newsome2022-07-191-1/+0
| | | | | | | | | | | | | | | This option doesn't take an argument. This change drops the argument from the `--help` message.
* | | Run "cargo update" in preparation for next week's releases.Nick Mathewson2022-07-201-44/+48
|/ /
* | Upgrade to latest phf, serde_with, serial_test.Nick Mathewson2022-07-193-67/+56
| |
* | Bump to rusqlite 0.28.Nick Mathewson2022-07-192-10/+9
| |
* | Merge branch 'mistrust-envvar' into 'main'Nick Mathewson2022-07-1910-106/+257
|\ \ | | | | | | | | | | | | | | | | | | Move environment-variable checking into fs-mistrust Closes #483 See merge request tpo/core/arti!630
| * | fs-mistrust: accept "n" as "no".Nick Mathewson2022-07-191-2/+2
| | |
| * | Semver tweaks from review.Ian Jackson2022-07-192-2/+2
| | | | | | | | | | | | These aren't user facing comments, but getting them right will help us write better changelogs.
| * | arti-client: Remove code related to overriding fs-mistrust.Nick Mathewson2022-07-193-45/+8
| | | | | | | | | | | | | | | | | | | | | | | | This logic can now be adjusted via the config object so that it does its own overriding by looking at the environment as appropriate. Removing these methods helps simplify the code a bit. Enabled by #483.
| * | Arti: Use synthetic argument to implement --disable-fs-permission-checksNick Mathewson2022-07-192-22/+12
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Now that configuring the environment variables related to fs permissions works properly, we don't need to use the "override" feature any more: we can just add the option to the configuration when appropriate. With this design, `--disable-fs-permission-checks` is now mostly an alias for `--option storage.permissions.dangerously_trust_everyone=true` Enabled by #483.
| * | Move responsibility for disable-fs-mistrust envvar.Nick Mathewson2022-07-194-37/+22
| | | | | | | | | | | | | | | | | | | | | The variable is now handled when building the configuration, and no longer needs to be special-cased. Closes #483.
| * | fs-mistrust: API to disable based on environmentNick Mathewson2022-07-194-5/+218
| | | | | | | | | | | | | | | | | | | | | By default we look at `$FS_MISTRUST_DISABLE_PERMISSIONS_CHECKS`. Optionally, the user can provide another variable as well, or disable looking at the environment entirely.
* | | Merge branch 'fallible_writers_v2' into 'main'Nick Mathewson2022-07-1930-346/+551
|\ \ \ | | | | | | | | | | | | | | | | | | | | | | | | Revise tor_bytes::Writer::write to return a Result. Closes #513 See merge request tpo/core/arti!623
| * | | Apply 1 suggestion(s) to 1 file(s)eta2022-07-191-1/+1
| | | |
| * | | Remove the last vestiges of write_infallible.Nick Mathewson2022-07-113-41/+7
| | | | | | | | | | | | | | | | | | | | Now that everything has been converted to fallible writers, we get to finally remove write_infallible() from tor_bytes.