summaryrefslogtreecommitdiff
path: root/doc/dev/notes
Commit message (Collapse)AuthorAgeFilesLines
...
* doc/dev/notes: keymgr-certificates: Clarify confusing wording.Gabriela Moldovan2024-11-141-3/+2
|
* doc/dev/notes: keymgr-certificates: Make the signing_key optionally present ↵Gabriela Moldovan2024-11-141-3/+37
| | | | in keystore.
* doc/dev/notes: keymgr-certificates: Remove redundant fields from ↵Gabriela Moldovan2024-11-141-5/+0
| | | | KeyCertificateSpecifier.
* doc/dev/notes: keymgr-certificates: Clarify what KeyType/CertType is about.Gabriela Moldovan2024-11-141-0/+7
|
* doc/dev/notes: keymgr-certificates: Remove misleading statement.Gabriela Moldovan2024-11-141-1/+0
|
* doc/dev/notes: keymgr-certificates: Add a revised proposal.Gabriela Moldovan2024-11-141-0/+358
| | | | | Based on Diziet's feedback in https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/2565#note_3099397
* doc/dev/notes: keymgr-certificates: Say that the original proposal is rejected.Gabriela Moldovan2024-11-141-7/+12
|
* doc/dev/notes: keymgr-certificates: Update key notation for clarity.Gabriela Moldovan2024-11-141-6/+8
|
* doc/dev/notes: keymgr-certificates: Add note about certificate management.Gabriela Moldovan2024-11-141-0/+177
| | | | | | | This describes the storage format and on-disk key store paths of `relaysign_ed` certificates (which we'll soon need to support). Part of #1617
* Move RPC documents into a new locationNick Mathewson2024-10-243-1894/+0
| | | | This will be the start of an mdbook document.
* Merge branch 'rpc-server-sketch' into 'main'Nick Mathewson2024-10-242-15/+201
|\ | | | | | | | | | | | | Sketch RPC server and superuser operations. Closes #1702 See merge request tpo/core/arti!2563
| * rpc-sketch: clean up some ungrammatical/hypothetical language.Nick Mathewson2024-10-241-2/+2
| |
| * rpc sketch: show how to override a connect point option.Nick Mathewson2024-10-241-0/+5
| |
| * rpc-sketch: specify and permit directories full of connect files.Nick Mathewson2024-10-241-10/+14
| | | | | | | | | | | | | | | | | | | | | | The main purpose of this commit is to RPC servers to configure connect points individually, while allowing clients to look at a configuration location that is full of multiple connect points. This change permits us to discard allow_missing_file, which is nice. This commit still pretends that the file extension is "json"; that will be fixed in #1711.
| * rpc-connect: revise description of superuser and fs-mistrust options.Nick Mathewson2024-10-231-5/+17
| |
| * rpc-connect: Rewrite server behavior section.Nick Mathewson2024-10-231-16/+58
| | | | | | | | | | | | | | | | | | | | | | | | | | | | The most salient change here is that _everything_, including the default connect string, is a configuration option, so that `--system-arti` (hypothetical) can override it. In order to make the default connect file locations behave like regular options, I've added a `allow_missing_file` sub-option that makes the absence of a file tolerable. There is a behavioral change here: Specifying your own `rpc.listen` entries in the arti.toml _does not_ disable checking the default connect file locations.
| * rpc-connect: Mention #1710 when talking about system-arti case.Nick Mathewson2024-10-231-0/+6
| |
| * rpc-connect-sketch: normalize some jsonNick Mathewson2024-10-211-6/+6
| |
| * Apply 2 suggestion(s) to 2 file(s)Nick Mathewson2024-10-212-2/+2
| | | | | | Co-authored-by: Ian Jackson <[email protected]>
| * rpc-*: sketch superuser operations.Nick Mathewson2024-10-212-1/+39
| |
| * rpc-connect-sketch: Sketch RPC server operationNick Mathewson2024-10-211-0/+44
| |
| * rpc-connect-sketch: Fix ambiguous use of "embedded"Nick Mathewson2024-10-211-1/+1
| |
| * rpc-connect-sketch: more sketching about embedded arti.Nick Mathewson2024-10-211-9/+25
| |
| * rpc-connect-sketch: expand on defaults.Nick Mathewson2024-10-211-1/+20
| |
* | tor-circmgr: Clarify that using guarded for client rend is an exception.Gabriela Moldovan2024-10-241-0/+13
| |
* | doc/dev/notes/vanguards: Use the new circuit stem terminology.Gabriela Moldovan2024-10-241-25/+28
| | | | | | | | | | | | | | | | | | "Circuit stubs" are now called "circuit stems". We are also replacing the STUB/STUB+ terminology (STUB/STUB+ circuits are now called NAIVE/GUARDED). Part of #1479
* | Merge branch 'rpc-cookie-auth-sketch' into 'main'Nick Mathewson2024-10-222-0/+136
|\ \ | | | | | | | | | | | | RPC cookie authentication spec sketch. See merge request tpo/core/arti!2440
| * | rpc-cookie: Formatting cleanup wrt `P`.Nick Mathewson2024-10-211-3/+3
| | |
| * | rpc-cookie: Make more text normative; defined a malformed cookie fileNick Mathewson2024-10-211-6/+11
| | |
| * | rpc-cookie: More naming consistencyNick Mathewson2024-10-211-8/+9
| | |
| * | rpc-sketches: Unify, clarify, and clean up socket_canonicalNick Mathewson2024-10-212-31/+32
| | |
| * | rpc-cookie-sketch: unify non-address field names.Nick Mathewson2024-10-211-9/+8
| | |
| * | rpc-cookie-sketch: re-order SADDR_USE and SADDR_VERIFY.Nick Mathewson2024-10-211-7/+8
| | |
| * | rpc-cookie-sketch: specify cookie IO failures.Nick Mathewson2024-10-211-0/+13
| | |
| * | cookie-sketch: Revise "in arti-rpc" section for clarityNick Mathewson2024-10-211-6/+12
| | | | | | | | | | | | In particular, specify which methods are invoked on which objects.
| * | rpc-cookie-sketch: Clarifications from @dizietNick Mathewson2024-10-211-6/+7
| | |
| * | cookie-sketch: More security concerns on addr_canonicalNick Mathewson2024-10-211-0/+13
| | |
| * | cookie-sketch: Use a separate set of methods for cookie-auth.Nick Mathewson2024-10-211-10/+16
| | |
| * | cookie-sketch: Describe use of TupleHashNick Mathewson2024-10-211-15/+17
| | | | | | | | | | | | | | | Also, rename values to S_MAC and C_MAC, and include SADDR_CANONICAL in messages.
| * | cookie-sketch: Use agreed-upon mitm prevention.Nick Mathewson2024-10-211-5/+12
| | |
| * | cookie-sketch: "nonce", not "secret".Nick Mathewson2024-10-211-3/+3
| | |
| * | RPC cookie authentication spec sketch.Nick Mathewson2024-10-211-0/+81
| |/ | | | | | | Part of #1521.
* | Merge branch 'inet_not_tcp' into 'main'David Goulet2024-10-221-5/+5
|\ \ | | | | | | | | | | | | | | | | | | general::SocketAddr: Say "inet" rather than "tcp" Closes #1701 See merge request tpo/core/arti!2554
| * | general::SocketAddr: Say "inet" rather than "tcp"Nick Mathewson2024-10-171-5/+5
| |/ | | | | | | | | | | | | | | | | | | "inet" makes more sense, since in principle these can also be used for udp, etc. Also making a corresponding change in rpc-connect-sketch.md, which uses this format. Closes #1701.
* / rpc-draft: Clarify and weaken cancel guaranteesNick Mathewson2024-10-211-9/+28
|/ | | | | | Part of #818. Tries to match the set of guarantees specified by @diziet on that ticket.
* rpc-connect-sketch: Clarify and restrict socket addr formatNick Mathewson2024-10-171-8/+16
|
* rpc-connect: add some example connect strings.Nick Mathewson2024-10-171-1/+32
|
* rpc-connect: clarify that "embedded" is not final.Nick Mathewson2024-10-171-0/+10
|
* rpc-connect: unknown builtins are "decline".Nick Mathewson2024-10-171-2/+2
|
* rpc-connect: replace a "may" with a "must"Nick Mathewson2024-10-171-1/+1
|