| Commit message (Collapse) | Author | Age | Files | Lines | ||
|---|---|---|---|---|---|---|
| ... | ||||||
| | * | | | arti/tor-hsservice: warn on service autostart | hashcatHitman | 2025-10-16 | 2 | -2/+4 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The "enabled" config option now uses `tor_config::BoolOrAuto`. When unset (which defaults to "Auto"), the service will run with a warning. Signed-off-by: hashcatHitman <[email protected]> | |||||
| | * | | | arti(-client): graceful service disable in arti only | hashcatHitman | 2025-10-16 | 1 | -5/+4 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | When a service is disabled in the config, `arti::onion_proxy::Proxy` handles it gracefully, and `arti_client::client::TorClient::launch_onion_service_with_hsid` and `arti_client::client::TorClient::launch_onion_service` both hard error. The axum and hyper examples were updated again as a consequence. Signed-off-by: hashcatHitman <[email protected]> | |||||
| | * | | | arti/arti-client: add graceful service disable | hashcatHitman | 2025-10-16 | 1 | -5/+29 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Hidden services disabled in the config are now handled more gracefully by arti/arti-client, before the hard error occurs. The axum and hyper examples were updated as a consequence. Signed-off-by: hashcatHitman <[email protected]> | |||||
| | * | | | arti: add "enabled" config to the example config | hashcatHitman | 2025-10-16 | 1 | -0/+4 | |
| | | | | | | | | | | | | | | | | | Signed-off-by: hashcatHitman <[email protected]> | |||||
| * | | | | arti: better error when tokio-console in cfg but feature is absent. | Nick Mathewson | 2025-11-06 | 1 | -3/+27 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This is the pattern we used elsewhere with the "rpc" option. IMO, this kind of thing is another argument in favor if arti#1704 (redoing config types using derive-deftly.) | |||||
| * | | | | arti: Experimental support for tokio-console | Nick Mathewson | 2025-11-06 | 3 | -0/+60 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | This is controlled by a new option, `logging.tokio_console.enabled`. It requires building with `--cfg tokio_unstable`. See documentation and comments for more information. | |||||
| * | | | | Fix name of clippy lint to unchecked_time_subtraction (2) | Ian Jackson | 2025-11-06 | 10 | -10/+10 | |
| | | | | | | | | | | | | | | | | | Run maint/add_warning | |||||
| * | | | | all: replace all uses of `futures::task::SpawnExt` with `tor_rtcompat::SpawnExt` | Steven Engler | 2025-11-04 | 7 | -9/+9 | |
| | |_|/ |/| | | ||||||
| * | | | Replace copy_interactive with futures-copy. | Nick Mathewson | 2025-10-30 | 3 | -115/+34 | |
| | |/ |/| | | | | | | | | | | | | | This change lets us avoid spawning extra tasks (due to one-direction nature of copy_interactive), and avoid some lock contention (due to use of AsyncReadExt::split). Addresses part of #786. | |||||
| * | | Merge branch 'remove_socks' into 'main' | Nick Mathewson | 2025-10-28 | 4 | -10/+30 | |
| |\ \ | | | | | | | | | | | | | | | | | | | arti: Revise strings that implied that we were a SOCKS-only proxy. Closes #2225 See merge request tpo/core/arti!3398 | |||||
| | * | | arti: explain APP_STREAM_BUF_LEN is what it is. | Nick Mathewson | 2025-10-28 | 1 | -0/+6 | |
| | | | | ||||||
| | * | | arti: Revise strings that implied that we were a SOCKS-only proxy. | Nick Mathewson | 2025-10-28 | 4 | -7/+14 | |
| | | | | | | | | | | | | | Closes #2225 | |||||
| | * | | arti: Stop using SOCKS_BUF_LEN for non-SOCKS proxies. | Nick Mathewson | 2025-10-28 | 1 | -3/+10 | |
| | | | | ||||||
| * | | | arti: Remove now-needless cognitive_complexity exceptions | Nick Mathewson | 2025-10-28 | 2 | -2/+0 | |
| |/ / | | | | | | | | | | | | | Apparently the http_connect refactoring made these no longer trigger. Closes #2226 | |||||
| * | | http_connect: Remove (most) X- prefixes. | Nick Mathewson | 2025-10-28 | 2 | -32/+44 | |
| | | | | | | | | | | | | | We can't remove them all, since X-Tor-Stream-Isolation is recognized by C-Tor. I've added a non-deprecated Tor-Stream-Isolation that works indepenently. | |||||
| * | | http_connect: write our own hyper-futures replacement | Nick Mathewson | 2025-10-28 | 1 | -4/+77 | |
| | | | ||||||
| * | | http_connect: Forbid non-empty OPTIONS bodies. | Nick Mathewson | 2025-10-28 | 1 | -0/+8 | |
| | | | ||||||
| * | | http_connect: validate casei behavior of HeaderMap. | Nick Mathewson | 2025-10-28 | 1 | -0/+36 | |
| | | | ||||||
| * | | proxy: Revise rpc docs so they are not SOCKS-specific | Nick Mathewson | 2025-10-28 | 1 | -14/+20 | |
| | | | ||||||
| * | | http_connect: Advertise listener capabilities to RPC | Nick Mathewson | 2025-10-28 | 2 | -7/+25 | |
| | | | ||||||
| * | | http_connect: Declare that error messages are text/plain. | Nick Mathewson | 2025-10-28 | 1 | -1/+1 | |
| | | | ||||||
| * | | http_connect: Reject OPTIONS requests with bodies | Nick Mathewson | 2025-10-28 | 1 | -2/+11 | |
| | | | ||||||
| * | | http_connect: Implement stream isolation | Nick Mathewson | 2025-10-28 | 2 | -4/+82 | |
| | | | ||||||
| * | | http_connect: implement rpc support | Nick Mathewson | 2025-10-28 | 1 | -6/+76 | |
| | | | ||||||
| * | | http-connect: Implement X-Tor-Family-Preference | Nick Mathewson | 2025-10-28 | 1 | -5/+79 | |
| | | | ||||||
| * | | http_connect: Use consts for headers. | Nick Mathewson | 2025-10-28 | 1 | -4/+16 | |
| | | | ||||||
| * | | http_connect: Generate an X-Tor-Request-Failed header. | Nick Mathewson | 2025-10-28 | 1 | -2/+20 | |
| | | | ||||||
| * | | http_connect: Provide better status codes for ErrorKinds. | Nick Mathewson | 2025-10-28 | 2 | -4/+77 | |
| | | | ||||||
| * | | arti: Implement a "bilingual" HTTP CONNECT proxy. | Nick Mathewson | 2025-10-28 | 3 | -1/+328 | |
| | | | | | | | | | | | | | | | | | | | | | | | With his commit, our SOCKS ports now accept both SOCKS and HTTP CONNECT requests, per proposal 365. There are still some infelicities, marked with "XXXX" or "TODO". I've tested this with curl, though, and it works. :) Typo-fixes-by: Gabriela Moldovan <[email protected]> | |||||
| * | | arti: Detect proxy protocol _before_ starting SOCKS. | Nick Mathewson | 2025-10-28 | 3 | -26/+86 | |
| | | | | | | | | | | | This will let us speak HTTP CONNECT as well; there is a stub for initiating an http proxy. | |||||
| * | | arti: Pass a buffered stream to handle_socks_conn | Nick Mathewson | 2025-10-28 | 2 | -3/+15 | |
| | | | | | | | | | This will let us implement bilingual HTTP proxies. | |||||
| * | | arti: Renaming around socks/generic proxies | Nick Mathewson | 2025-10-28 | 3 | -40/+43 | |
| | | | | | | | | | This is _all_ renaming and comment adjustments. | |||||
| * | | arti: Split socks-specific parts out of handle_socks_conn | Nick Mathewson | 2025-10-28 | 2 | -448/+475 | |
| | | | | | | | | | | | | | | | | | | | We want to abstract every part of this code that knows that it's speaking SOCKS, so that we can in turn add a new proxy type. Note that several methods and types here have names that are no longer appropriate for their functionality. I'll revise those in a later commit. | |||||
| * | | arti::proxy: Small reformats. | Nick Mathewson | 2025-10-28 | 1 | -5/+7 | |
| | | | | | | | | | | | (I'm not sure why this wasn't already done, but let's do it as a separate MR.) | |||||
| * | | Rename "arti::socks" to "arti::proxy". | Nick Mathewson | 2025-10-28 | 3 | -3/+3 | |
| |/ | | | | I'm about to add another proxy type. | |||||
| * | arti: Ignore reload_cfg::test::watch_multiple. | Wesley Aptekar-Cassels | 2025-10-16 | 1 | -0/+2 | |
| | | | | | This is flaky, ignoring until #1607 is fixed. | |||||
| * | Merge branch 'fix-watch-single-file-flake' into 'main' | wesleyac | 2025-10-16 | 1 | -3/+5 | |
| |\ | | | | | | | | | | | | | arti config: Fix flaky watch_single_file test. Closes #1607 See merge request tpo/core/arti!2503 | |||||
| | * | arti config: Fix flaky watch_single_file test in a more principled way. | Wesley Aptekar-Cassels | 2025-10-07 | 1 | -12/+4 | |
| | | | | | | | | | Thanks to gabi for the suggestion. | |||||
| | * | arti config: Fix flaky watch_single_file test. | Wesley Aptekar-Cassels | 2025-10-07 | 1 | -2/+12 | |
| | | | | | | | | | Fixes: #1607 | |||||
| * | | arti: keys: Simplify `run_check_integrity` | hjrgrn | 2025-10-08 | 1 | -9/+7 | |
| | | | ||||||
| * | | arti: keys: Improve readability of `print_check_integrity_incipit` | hjrgrn | 2025-10-08 | 1 | -11/+7 | |
| | | | ||||||
| * | | arti: keys: Fix typo in `run_check_integrity` | hjrgrn | 2025-10-08 | 1 | -1/+1 | |
| | | | ||||||
| * | | arti: keys: Rename `invalid_entry` to `expired_entry` in `run_check_integrity` | hjrgrn | 2025-10-08 | 1 | -3/+3 | |
| | | | ||||||
| * | | arti: keys: Add warning for unexpected invalid keystore entry | hjrgrn | 2025-10-08 | 1 | -14/+16 | |
| | | | ||||||
| * | | arti: keys: Improve readability of `run_check_integrity` | hjrgrn | 2025-10-08 | 1 | -5/+4 | |
| | | | ||||||
| * | | arti: keys: Add comment explaining why `services` cannot be dropped | hjrgrn | 2025-10-08 | 1 | -0/+2 | |
| | | | ||||||
| * | | arti: keys: Add comment explaining difference between `affected_keystores` ↵ | hjrgrn | 2025-10-08 | 1 | -0/+5 | |
| | | | | | | | | | and `keystores` | |||||
| * | | arti: keys: Refactor `get_expired_keys` | hjrgrn | 2025-10-08 | 1 | -9/+6 | |
| | | | | | | | | | The function now returns `Result<Vec<InvalidKeystoreEntry<'a>>>` | |||||
| * | | arti: keys: Add integrity check for empty expired_entries | hjrgrn | 2025-10-08 | 1 | -0/+14 | |
| | | | | | | | | | | | | | | | Add a check in `run_check_integrity` to verify that the `expired_entries` collection is empty after processing all registered keystores. This should always be true, as all expired entries are expected to be removed during iteration. If not, it indicates a bug. | |||||
| * | | arti: keys: Introduce InvalidKeystoreEntry and InvalidKeystoreEntries structs | hjrgrn | 2025-10-08 | 1 | -33/+74 | |
| | | | | | | | | | | | Replace raw tuples with named structs to reduce type complexity and improve code clarity and maintainability. | |||||
