summaryrefslogtreecommitdiff
path: root/doc/dev/notes
Commit message (Collapse)AuthorAgeFilesLines
...
* doc/dev/notes: cell-lifecycle: We only describe the unbounded buffers.Gabriela Moldovan2024-11-211-3/+3
|
* doc/dev/notes: cell-lifecycle: Say that the reactor awaits rather than blocks.Gabriela Moldovan2024-11-211-1/+1
|
* doc/dev/notes: cell-lifecycle: Describe the current state of things.Gabriela Moldovan2024-11-201-0/+319
| | | | | | | | | | | | | | | | | These are my notes and observations about the circuit and channel reactors. In hindsight, this whole document is just stating the "obvious"[^1], so I'm not sure if it's going to be useful for anyone else. Also, since this isn't part of the code docs or tor-proto crate-level docs, it's very likely to become outdated in the near future. At the end of the document, I also wrote a very rough KIST implementation plan based on the discussion from #1712. Closes #1747 [^1]: scare quotes because the "obvious" is only obvious after you've stared at the circ/chan reactors for a while
* doc/dev/notes: keymgr-certificates: Clarify how keymgr might generate the cert.Gabriela Moldovan2024-11-141-2/+3
| | | | | This is not necessarily set in stone, but it seems like a plausible way of going about this.
* doc/dev/notes: keymgr-certificates: Emphasize that we won't manage arbitrary ↵Gabriela Moldovan2024-11-141-3/+8
| | | | certs.
* doc/dev/notes: keymgr-certificates: Abolish get_cert_entry.Gabriela Moldovan2024-11-141-16/+0
| | | | This also removes the reference to the `get_entry()` function.
* doc/dev/notes: keymgr-certificates: Allow the cert denotators to be absent.Gabriela Moldovan2024-11-141-11/+9
|
* doc/dev/notes: keymgr-certificates: Update proposed renaming.Gabriela Moldovan2024-11-141-28/+19
| | | | | Based on our discussion in https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/2565#note_3129065
* doc/dev/notes: keymgr-certificates: Apply key format clarifications from Diziet.Gabriela Moldovan2024-11-141-0/+7
|
* doc/dev/notes: keymgr-certificates: Apply suggestions from Diziet.gabi-2502024-11-141-2/+2
|
* doc/dev/notes: keymgr-certificates: Clarify code docs.Gabriela Moldovan2024-11-141-4/+8
|
* doc/dev/notes: keymgr-certificates: Fix typo.Gabriela Moldovan2024-11-141-1/+1
|
* doc/dev/notes: keymgr-certificates: Remove unreadable chunk from intro.Gabriela Moldovan2024-11-141-8/+3
|
* doc/dev/notes: keymgr-certificates: Remove unnecessary args.Gabriela Moldovan2024-11-141-4/+0
| | | | | We don't actually need a `KeyType` argument (`KeyTypes` are obtained from the `EncodableKey::key_type()` impl of the key/cert).
* doc/dev/notes: keymgr-certificates: Reorder args for clarity.Gabriela Moldovan2024-11-141-4/+4
|
* doc/dev/notes: keymgr-certificates: Move subject key specifier to trait.Gabriela Moldovan2024-11-141-2/+2
| | | | This helps us cut down on the number of args in `get_*_and_cert()`.
* doc/dev/notes: keymgr-certificates: Say that cert paths are derived from key ↵Gabriela Moldovan2024-11-141-26/+39
| | | | paths.
* doc/dev/notes: keymgr-certificates: Mention the uid we settled on in !2577.Gabriela Moldovan2024-11-141-5/+5
|
* doc/dev/notes: keymgr-certificates: Remove outdated design.Gabriela Moldovan2024-11-141-191/+33
| | | | | | | | We decided to go with the second proposed design, so we can safely remove this one now. This also updates the introduction to summarize how we arrived at this design.
* doc/dev/notes: keymgr-certificates: Clarify confusing wording.Gabriela Moldovan2024-11-141-3/+2
|
* doc/dev/notes: keymgr-certificates: Make the signing_key optionally present ↵Gabriela Moldovan2024-11-141-3/+37
| | | | in keystore.
* doc/dev/notes: keymgr-certificates: Remove redundant fields from ↵Gabriela Moldovan2024-11-141-5/+0
| | | | KeyCertificateSpecifier.
* doc/dev/notes: keymgr-certificates: Clarify what KeyType/CertType is about.Gabriela Moldovan2024-11-141-0/+7
|
* doc/dev/notes: keymgr-certificates: Remove misleading statement.Gabriela Moldovan2024-11-141-1/+0
|
* doc/dev/notes: keymgr-certificates: Add a revised proposal.Gabriela Moldovan2024-11-141-0/+358
| | | | | Based on Diziet's feedback in https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/2565#note_3099397
* doc/dev/notes: keymgr-certificates: Say that the original proposal is rejected.Gabriela Moldovan2024-11-141-7/+12
|
* doc/dev/notes: keymgr-certificates: Update key notation for clarity.Gabriela Moldovan2024-11-141-6/+8
|
* doc/dev/notes: keymgr-certificates: Add note about certificate management.Gabriela Moldovan2024-11-141-0/+177
| | | | | | | This describes the storage format and on-disk key store paths of `relaysign_ed` certificates (which we'll soon need to support). Part of #1617
* Move RPC documents into a new locationNick Mathewson2024-10-243-1894/+0
| | | | This will be the start of an mdbook document.
* Merge branch 'rpc-server-sketch' into 'main'Nick Mathewson2024-10-242-15/+201
|\ | | | | | | | | | | | | Sketch RPC server and superuser operations. Closes #1702 See merge request tpo/core/arti!2563
| * rpc-sketch: clean up some ungrammatical/hypothetical language.Nick Mathewson2024-10-241-2/+2
| |
| * rpc sketch: show how to override a connect point option.Nick Mathewson2024-10-241-0/+5
| |
| * rpc-sketch: specify and permit directories full of connect files.Nick Mathewson2024-10-241-10/+14
| | | | | | | | | | | | | | | | | | | | | | The main purpose of this commit is to RPC servers to configure connect points individually, while allowing clients to look at a configuration location that is full of multiple connect points. This change permits us to discard allow_missing_file, which is nice. This commit still pretends that the file extension is "json"; that will be fixed in #1711.
| * rpc-connect: revise description of superuser and fs-mistrust options.Nick Mathewson2024-10-231-5/+17
| |
| * rpc-connect: Rewrite server behavior section.Nick Mathewson2024-10-231-16/+58
| | | | | | | | | | | | | | | | | | | | | | | | | | | | The most salient change here is that _everything_, including the default connect string, is a configuration option, so that `--system-arti` (hypothetical) can override it. In order to make the default connect file locations behave like regular options, I've added a `allow_missing_file` sub-option that makes the absence of a file tolerable. There is a behavioral change here: Specifying your own `rpc.listen` entries in the arti.toml _does not_ disable checking the default connect file locations.
| * rpc-connect: Mention #1710 when talking about system-arti case.Nick Mathewson2024-10-231-0/+6
| |
| * rpc-connect-sketch: normalize some jsonNick Mathewson2024-10-211-6/+6
| |
| * Apply 2 suggestion(s) to 2 file(s)Nick Mathewson2024-10-212-2/+2
| | | | | | Co-authored-by: Ian Jackson <[email protected]>
| * rpc-*: sketch superuser operations.Nick Mathewson2024-10-212-1/+39
| |
| * rpc-connect-sketch: Sketch RPC server operationNick Mathewson2024-10-211-0/+44
| |
| * rpc-connect-sketch: Fix ambiguous use of "embedded"Nick Mathewson2024-10-211-1/+1
| |
| * rpc-connect-sketch: more sketching about embedded arti.Nick Mathewson2024-10-211-9/+25
| |
| * rpc-connect-sketch: expand on defaults.Nick Mathewson2024-10-211-1/+20
| |
* | tor-circmgr: Clarify that using guarded for client rend is an exception.Gabriela Moldovan2024-10-241-0/+13
| |
* | doc/dev/notes/vanguards: Use the new circuit stem terminology.Gabriela Moldovan2024-10-241-25/+28
| | | | | | | | | | | | | | | | | | "Circuit stubs" are now called "circuit stems". We are also replacing the STUB/STUB+ terminology (STUB/STUB+ circuits are now called NAIVE/GUARDED). Part of #1479
* | Merge branch 'rpc-cookie-auth-sketch' into 'main'Nick Mathewson2024-10-222-0/+136
|\ \ | | | | | | | | | | | | RPC cookie authentication spec sketch. See merge request tpo/core/arti!2440
| * | rpc-cookie: Formatting cleanup wrt `P`.Nick Mathewson2024-10-211-3/+3
| | |
| * | rpc-cookie: Make more text normative; defined a malformed cookie fileNick Mathewson2024-10-211-6/+11
| | |
| * | rpc-cookie: More naming consistencyNick Mathewson2024-10-211-8/+9
| | |
| * | rpc-sketches: Unify, clarify, and clean up socket_canonicalNick Mathewson2024-10-212-31/+32
| | |