summaryrefslogtreecommitdiff
path: root/crates
Commit message (Collapse)AuthorAgeFilesLines
...
| * | | Use named subprotocol versions throughout arti.Nick Mathewson2025-03-123-11/+12
| | | |
| * | | protover: Add support for subprotocol version mnemonics.Nick Mathewson2025-03-123-0/+161
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | It's error-prone to have to remember e.g. that "Desc=5" means "family ID support", so in torspec!251 we added mnemonic names like DESC_FAMILY_IDS. Here we use those names in tor-protover.
| * | | protover: Add Conflux protocol group.Nick Mathewson2025-03-121-1/+3
| | | |
* | | | Merge branch 'client-arti' into 'main'opara2025-03-201-16/+12
|\ \ \ \ | |_|/ / |/| | | | | | | | | | | replace state_dir and storage_mistrust with tor_persist::state_dir::StateDirectory See merge request tpo/core/arti!2863
| * | | replace state_dir and storage_mistrust with ↵abdul28012025-03-201-16/+12
| | | | | | | | | | | | | | | | tor_persist::state_dir::StateDirectory
* | | | Merge branch 'timeout_est_overflow' into 'main'Nick Mathewson2025-03-191-3/+11
|\ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Impose a maximum on our fallback estimated timeout Closes #1693 See merge request tpo/core/arti!2842
| * | | | Impose a maximum on our fallback estimated timeoutNick Mathewson2025-03-061-3/+11
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The fallback timeout is the one that we use when we have insufficient data. We reset our observations, and maybe rebuild our circuits, when we find that too many circuits have failed recently. When we do so, we double our fallback timeout. Previously we had no limit, which could lead to overflow (#1693). In this commit we impose a maximum of 2 hours, which is ridiculously high. (C tor uses a maximum of INT32_MAX seconds, which is even more ridiculously high.) Closes #1693.
* | | | | Merge branch 'rand-0.9' into 'main'Nick Mathewson2025-03-19117-462/+606
|\ \ \ \ \ | |_|/ / / |/| | | | | | | | | | | | | | Port to rand 0.9 See merge request tpo/core/arti!2869
| * | | | proto: make padding::Parameters construction fallible.Nick Mathewson2025-03-184-23/+106
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The constructor for rand::distr::Uniform is now fallible, so it makes sense to bubble up its restrictions. This is a breaking change.
| * | | | Update Cargo.lock in bench directories.Nick Mathewson2025-03-182-218/+256
| | | | |
| * | | | Add a semver note about rand 0.9Nick Mathewson2025-03-181-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | (This applies to every crate that has an API that takes a `rand::Rng` or any related trait.)
| * | | | Run cargo fmtNick Mathewson2025-03-181-11/+3
| | | | |
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-1823-45/+45
| | | | | | | | | | | | | | | | | | | | - The Rng::gen() functions have been renamed to Rng::random().
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-184-4/+4
| | | | | | | | | | | | | | | | | | | | - Several methods have been moved out of SliceRandom.
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-181-3/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - `rand::thread_rng()` has been deprecated and renamed to `rand::rng()` (I missed these cases because they were from prelude::*)
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-181-1/+2
| | | | | | | | | | | | | | | | | | | | - `Uniform::new_inclusive` is now fallible.
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-183-4/+7
| | | | | | | | | | | | | | | | | | | | - The Standard distribution has been renamed to StandardUniform.
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-184-21/+1
| | | | | | | | | | | | | | | | | | | | - `try_fill_bytes()` is no longer a member of RngCore.
| * | | | llcrypto: add an rng compatibility shim for dalek-cryptoNick Mathewson2025-03-185-5/+57
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | dalek-cryptography is still on rand 0.8, so we need a compatibility shim for the Rng. Fortunately, since we merged interface-abstraction-of-the-daleks (!2868), we no longer need to propagate this compatibility layer throughout our codebase.
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-181-1/+5
| | | | | | | | | | | | | | | | | | | | - `Rng::gen_range()` has been renamed to `Rng::random_range()`
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-187-15/+15
| | | | | | | | | | | | | | | | | | | | - The rand::distributions module has been renamed to rand::distr
| * | | | squash! Upgrade rand dependency to 0.9.Nick Mathewson2025-03-1856-79/+76
| | | | | | | | | | | | | | | | | | | | - `rand::thread_rng()` has been deprecated and renamed to `rand::rng()`
| * | | | Upgrade rand dependency to 0.9.Nick Mathewson2025-03-1830-37/+37
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | (Per discussion at #1774, we think the changes are acceptable.) This commit won't compile on its own; subsequent commits will fix it.
| * | | | key-forge: Use CryptoRng from rand.Nick Mathewson2025-03-181-2/+1
| | | | | | | | | | | | | | | | | | | | | | | | | Previously we used the version signature::rand_core for some reason, but that's now incompatible.
| * | | | Always use full path to rand::thread_rng().Nick Mathewson2025-03-184-10/+5
| | | | | | | | | | | | | | | | | | | | | | | | | This is partly for consistency, and partly to facilitate a global search-and-replace.
* | | | | Merge branch '1630-scrub-address-from-output' into 'main'gabi-2502025-03-192-24/+30
|\ \ \ \ \ | |/ / / / |/| | | | | | | | | | | | | | | | | | | | | | | | hsc: remove onion-address flag in favour of stdin Closes #1630 See merge request tpo/core/arti!2861
| * | | | test: Fix get-key-error testcase for hschjrgrn2025-03-192-3/+3
| | | | |
| * | | | test: Fix get-key-error testcase for hschjrgrn2025-03-182-2/+3
| | | | |
| * | | | hsc: Improve get_onion_address functionhjrgrn2025-03-181-2/+3
| | | | |
| * | | | hsc: Add --quite CLI flaghjrgrn2025-03-171-10/+15
| | | | | | | | | | | | | | | | | | | | | | | | | * Add `quite` to the common arguments * Substitute dialoguer in favor of `read_line` in `get_onion_address`
| * | | | hsc: Improve get_onion_address functionhjrgrn2025-03-171-4/+3
| | | | |
| * | | | test: Update testcase get-key-error for hschjrgrn2025-03-141-2/+2
| | | | |
| * | | | hsc: remove onion-address flag in favour of stdinhjrgrn2025-03-141-22/+22
| | | | | | | | | | | | | | | | | | | | | | | | | * The user will be prompted interactively for the onion-address to prevent onion-address leaking in shell history
* | | | | Merge branch 'interface-abstraction-of-the-daleks' into 'main'Nick Mathewson2025-03-1810-64/+278
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | Wrap x25519-dalek and ed25519-dalek types. See merge request tpo/core/arti!2868
| * | | | | llcrypto: add a semver file for new x25519-wrappersNick Mathewson2025-03-181-0/+1
| | | | | |
| * | | | | Wrap ed25519-dalek types.Nick Mathewson2025-03-188-54/+174
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | With this change, we'll no longer need to expose the types from dalek-cryptography as part of our API, and we'll have more freedom to switch ed25519 implementations, or to upgrade to a newer `rand` ahead of their schedule. Unlike with x25519-dalek, I had to tweak the API a bit: There's no way to get a &PublicKey out of a Keypair now, and implementing the old ed25519-dalek traits seemed unnecessary.
| * | | | | Wrap x25519-dalek types.Nick Mathewson2025-03-171-10/+103
| |/ / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | With this change, we'll no longer need to expose the types from dalek-cryptography as part of our API, and we'll have more freedom to switch curve25519 implementations, or to upgrade to a newer `rand` ahead of their schedule.
* | | | | Merge branch 'tests-rpc-client-msgs' into 'main'Nick Mathewson2025-03-182-1/+35
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | rpc-client: Increase test coverage for the msgs module See merge request tpo/core/arti!2865
| * | | | | rpc-client: Increase test coverage for the msgs modulevcrn2025-03-182-1/+35
| |/ / / /
* | | | | Merge branch 'hsc-lf' into 'main'gabi-2502025-03-181-1/+1
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | arti: hsc-key-get: Print LF after discovery key See merge request tpo/core/arti!2856
| * | | | | arti: hsc-key-get: Print LF after discovery keyplaybahn2025-03-131-1/+1
| | |_|/ / | |/| | | | | | | | | | | | | | | | | | Did not print a newline after service discovery key. Looked bad. Prints newline now. Looks better.
* | | | | Merge branch 'conflux-cells' into 'main'David Goulet2025-03-182-3/+62
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | tor-cell: Add constructors for the conflux cell types. See merge request tpo/core/arti!2858
| * | | | | tor-cell: Implement RelayMsg for all conflux message types.Gabriela Moldovan2025-03-171-1/+1
| | | | | |
| * | | | | tor-cell: Add setters for the V1LinkPayload seqnos.Gabriela Moldovan2025-03-131-0/+10
| | | | | |
| * | | | | tor-cell: Make V1_LINK_NONCE_LEN pub.Gabriela Moldovan2025-03-131-1/+1
| | | | | |
| * | | | | tor-cell: Add constructors for the conflux cell types.Gabriela Moldovan2025-03-131-0/+46
| | | | | | | | | | | | | | | | | | | | | | | | We will soon need these in the circuit reactor.
| * | | | | tor-cell: Add type alias for the V1LinkPayload nonce.Gabriela Moldovan2025-03-131-1/+4
| | | | | |
* | | | | | netdoc: Reject BOMs and NULs.Nick Mathewson2025-03-173-2/+56
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Per <https://spec.torproject.org/dir-spec/netdoc.html>, our netdocs never have a BOM, and never have internal NULs. This makes Arti reject such documents. For arguments on why it's okay to increase parser strictness, see the (forthcoming) proposal 356 at torspec!342, and see older discussion at torspec#296. Closes #1739.
* | | | | | netdoc: Make some parsing init functions fallible.Nick Mathewson2025-03-1711-40/+48
| |_|/ / / |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | I'm about to make our parsers reject some strings at construction time, so it makes sense to have these functions become fallible. This is a breaking change.
* | | | | Merge branch '1889-resolve-some-todos' into 'main'gabi-2502025-03-142-185/+174
|\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | tor-keymgr: Resolve TODOs from key_specifier::tests Closes #1889 See merge request tpo/core/arti!2849