| Commit message (Collapse) | Author | Age | Files | Lines |
| ... | |
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
This function returns a `TimeRangeBound`. That implies a
responsibility on the caller to check the time. It doesn't make sense
for this function to do the check as well.
But, it turns out that in tor-hsclient, the `TimeRangeBound<HsDesc>`
is sometimes processed with `.dangerously` on the assumption that it
was checked earlier. I considered changing this, and storing plain
`HsDesc` and a separate `TimeRange` - but that's not right, because
there are places where the `TimeRangeBound<HsDesc>` is used well after
it was verified.
Instead, in this commit, I (effectively) move the `.check_valid_at`
call from `parse_decrypt_validate` to its principal call site.
This involves a change to the error representation. Previously,
validity time errors ended up as `DescriptorErrorDetail::Descriptor`
containing an `HsDescError::OuterValidation` HsDescError::
InnerValidation`, which in turn contains a
`tor_netdoc::Error`. (`tor_netdoc::Error` is a rather awkward type.)
Now we have our own error variant. The overall behaviour is
unchanged.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
Replace open-coding of various is_valid_at and various dangerously and
intersect. In more detail:
* Do most of the processing inside `TimeRangeBound::build_intersect`
* Replace uses of dangerously_peek etc. with `TimeBound::unwrap_with`
* The timebound machinery now takes care of doing the intersection
* Remove the individual `.is_valid_at` calls and replace them with
one at the end, on the intersection. This preserves the current
behaviour except that sometimes time validity errors will now be
reported as having occurred the wrong level. We'll deal with this
in a moment (by deleting these checks from here entirely).
* There is no need to handle a `None` from `intersect` any more.
TimeBound handles conflicting time ranges differently: it
allows ranges which are empty due to being ill-formed.
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
This variable had a different name inside the block, to outside. This
was confusing, and, fixing it makes the next commit clearer.
|
| | | | | |
|
| | | | | |
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
I find this names confusing. To my mind "is" implies a function
returning `bool`.
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
I find these names confusing. To my mind "check" implies a function
returning `Result<(), _>`.
Some other APIs use `unwrap` here but I think `if` is good.
|
| | | | | |
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
It wouldn't make much sense for one concrete type to be unwrappable
variously as different inner types.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
It is better to return a more cooked type. `TimeRange` aka
`TimeRangeBound<()>` is perfect for this.
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
Now that we have `bounds()`, we can centralise this implementation and
delete the implementations.
I don't think it's necessary to provide an engineered safeguard
against downstreams overriding this method. Any existing implementors
of this trait will break because they must provide `.bounds()` now,
which is an opportunity to notice that the `is_valid_at` can be
deleted. But, if it is not deleted, nothing goes wrong.
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
This was always TimeValidityError. And we want to rely on that so we
can do the validity checking more centrally.
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
This makes a `TimeBound` much more convenient to work with, will allow
more centralisation.
This replaces temporary `bound` inherent method on `TimeRangeBound`.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
This is our time range type, so it wants a bunch of useful methods and
conversions.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
It was confusing that one of these functions had "which bound"
mentioned in its name, but the other didn't. So add `end` and switch
from `tolerance` to `bound` (see previous commit message).
*This* commit should deal only in `extend_tolerance` and `end` and
shouldn't touch `extend_start_bound` or `extend_pre_tolerance`.
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
Although it is often used to apply a tolerance, it doesn't make sense
to say that this is extending the "tolerance" of a `TimeRangeBound`.
A `TimeRangeBound` doesn't have a tolerance, only bounds.
Also we should be consistent in our terminology, and use `start`
rather than `pre`.
We'll rename the other method too. Doing them one at a time will
makes it easier to spot any "pre/start" vs "<nothing>/end" slips:
*this* commit should deal only in `pre` and `start` and shouldn't
touch `extend_tolerance`.
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
This puts the start bounds extension function before the end one.
That makes sense because starts are before ends.
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
This just returns a tuple.
We're going to introduce a new method that returns a `TimeRagne` and
will want to be called `bounds`.
That method will want to be in the `TimeBound` trait, but for now we
add it here. Various call sites will be added in forthcoming commits.
|
| | | | |
| | | |
| | | |
| | | | |
I find this hard to read without them.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
This module has only few public items - currently, only one. And it
has the word "time" in it. It doesn't make sense to expect callers to
write `timed::`.
|
| |/ / /
| | |
| | |
| | |
| | | |
I noticed this clumsiness while passing. We can't do the same
for SystemTime because we have the wasm SystemTime thing too :-/.
|
| |\ \ \
| | | |
| | | |
| | | |
| | | | |
Bump edition of tor-dirserver and tor-dirauth
See merge request tpo/core/arti!4227
|
| | | | | |
|
| | |/ /
| | |
| | |
| | |
| | | |
Apparently these crate creations were outstanding when the workspace's
edition was increased.
|
| |\ \ \
| | | |
| | | |
| | | |
| | | | |
Update to derive-deftly 1.11.4
See merge request tpo/core/arti!4228
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
To pick up this fix:
* BETA: Allow user-defined expansions whose definition is just
a string literal `"..." within `${concat }` and `$"..."`.
which I have just released.
|
| |\ \ \ \
| |/ / /
|/| | |
| | | |
| | | | |
tor-netdoc testdata-live: Update and expand
See merge request tpo/core/arti!4224
|
| | | | | |
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
Run crates/tor-netdoc/testdata-live-download with the locally saved,
previously downloaded, network statuses.
It downloaded these descriptors.
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
(effect)
Run crates/tor-netdoc/testdata-live-download with the locally saved,
previously downloaded, network statuses.
(It didn't download anything extra, but it did produced these new
output files, as expected.)
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
This will be convenient for saving their descriptors, and may be
useful for other purposes too.
|
| | | | |
| | | |
| | | |
| | | | |
Precisely a run of crates/tor-netdoc/testdata-live-download.
|
| | | | | |
|
| | | | | |
|
| | | | |
| | | |
| | | |
| | | | |
We don't fetch files to the names we commit.
|
| | | | |
| | | |
| | | |
| | | | |
curl infers this, but we should include it.
|
| | | | | |
|
| | |/ /
| | |
| | |
| | |
| | |
| | |
| | |
| | |
| | | |
Ideally we would have Arti sort things sensibly but currently we have
no types in Arti that are (1) faithful (2) sort correctly.
Most of the existing types eventually have a `TorVersion` inside,
which is lossy, so we can't use them for (eg) dirauth network status
processing.
|
| |\ \ \
| | | |
| | | |
| | | |
| | | | |
arti-relay: Spawn DirMirror, start handling BEGIN_DIR
See merge request tpo/core/arti!4222
|
| | | | |
| | | |
| | | |
| | | |
| | | | |
Context:
https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/4222#note_3437336
|