aboutsummaryrefslogtreecommitdiff
path: root/doc/dev/notes/key-management.md
Commit message (Collapse)AuthorAgeFilesLines
* Use "typos-cli" to fix a bunch of typos.Nick Mathewson2023-08-221-2/+2
|
* key-management.md: Fix typosgabi-2502023-08-081-3/+3
|
* key-management.md: Use scenariosIan Jackson2023-07-281-0/+143
|
* key-management.md: Fix pandoc formattingIan Jackson2023-07-281-0/+1
| | | | Add a missing blank line.
* Fix typosDimitris Apostolou2023-07-221-3/+3
|
* key-management.md: Add a note deprecating unescorted ed secretsNick Mathewson2023-05-181-0/+1
|
* dev docs: The key store version file should specify a minimum supported version.Gabriela Moldovan2023-05-161-2/+10
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove unused arguments.Gabriela Moldovan2023-05-161-12/+9
| | | | | | There are several places where he `KeyType` isn't needed anymore. Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Clarify how C Tor key store loads keys from multiple different key ↵Gabriela Moldovan2023-05-161-26/+66
| | | | | | | | | | | dirs. This also moves the `extension` function out of `KeyType` because for the C Tor key store, a key's file extension depends on the role/user of the key, which isn't known by `KeyType` (`KeyType` is a tor-agnostic key type such as `Ed25519Private`). Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Distinguish between arti_extension and ctor_extension.Gabriela Moldovan2023-05-161-2/+7
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Clarify that ArtiPath/CTorPath are relative to the key store root.Gabriela Moldovan2023-05-161-1/+9
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add note about key store versioning.Gabriela Moldovan2023-05-161-0/+9
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add note about C Tor store configuration.Gabriela Moldovan2023-05-161-1/+49
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Move the key passphrases subsection to the Arti store section.Gabriela Moldovan2023-05-161-6/+6
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Create a separate section for the C tor key store discussion.Gabriela Moldovan2023-05-161-5/+17
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Rename {Key, HsClient}Identity.Gabriela Moldovan2023-05-161-45/+45
| | | | | | | | This renames `KeyIdentity` to `KeySpecifier` so it doesn't get confused with the concept of an "identity key". `HsClientIdentity` is also renamed for consistency. Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add a few lines about handling concurrent access.Gabriela Moldovan2023-04-251-0/+14
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Fill out insert/remove APIs.Gabriela Moldovan2023-04-251-8/+31
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove incoherent waffle.Gabriela Moldovan2023-04-251-19/+4
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Update KeyMgr implementation based on latest discussions.Gabriela Moldovan2023-04-251-113/+314
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove unnecessary trait bounds.Gabriela Moldovan2023-04-251-1/+1
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove outdated reference to the comment field.Gabriela Moldovan2023-04-251-6/+0
| | | | | | We decided against using it. Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add namespacing for client/hs/relay/.. keys.Gabriela Moldovan2023-04-251-39/+42
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove KeyIdentityResult.Gabriela Moldovan2023-04-251-10/+0
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Remove HSM APIs.Gabriela Moldovan2023-04-251-22/+0
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: clarify what a "key identity" is.Gabriela Moldovan2023-04-251-35/+99
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Allow multiple key stores to be in use at the same time.Gabriela Moldovan2023-04-251-18/+92
| | | | | | | | | The key manager needs to be flexible enough to support loading keys from one of several key stores. This is because when we add support for smart cards, users will want to be able to store some keys on the smart card, and others in one of the disk key stores (for example). Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add some impls for `LocalUserIdentity`.Gabriela Moldovan2023-04-251-1/+4
| | | | Signed-off-by: Gabriela Moldovan <[email protected]>
* dev docs: Add key manager API sketch.Gabriela Moldovan2023-04-251-0/+239
This is the first draft of the key manager API. I don't expect this to be the final version of the API, and I'm sure there are plenty of improvements to be made. This is mostly a request for comments. Closes #834 Signed-off-by: Gabriela Moldovan <[email protected]>