| Commit message (Collapse) | Author | Age | Files | Lines | ||
|---|---|---|---|---|---|---|
| ... | ||||||
| * | | doc/dev/notes: keymgr-certificates: Apply suggestions from Diziet. | gabi-250 | 2024-11-14 | 1 | -2/+2 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Clarify code docs. | Gabriela Moldovan | 2024-11-14 | 1 | -4/+8 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Fix typo. | Gabriela Moldovan | 2024-11-14 | 1 | -1/+1 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Remove unreadable chunk from intro. | Gabriela Moldovan | 2024-11-14 | 1 | -8/+3 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Remove unnecessary args. | Gabriela Moldovan | 2024-11-14 | 1 | -4/+0 | |
| | | | | | | | | | | | We don't actually need a `KeyType` argument (`KeyTypes` are obtained from the `EncodableKey::key_type()` impl of the key/cert). | |||||
| * | | doc/dev/notes: keymgr-certificates: Reorder args for clarity. | Gabriela Moldovan | 2024-11-14 | 1 | -4/+4 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Move subject key specifier to trait. | Gabriela Moldovan | 2024-11-14 | 1 | -2/+2 | |
| | | | | | | | | | This helps us cut down on the number of args in `get_*_and_cert()`. | |||||
| * | | doc/dev/notes: keymgr-certificates: Say that cert paths are derived from key ↵ | Gabriela Moldovan | 2024-11-14 | 1 | -26/+39 | |
| | | | | | | | | | paths. | |||||
| * | | doc/dev/notes: keymgr-certificates: Mention the uid we settled on in !2577. | Gabriela Moldovan | 2024-11-14 | 1 | -5/+5 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Remove outdated design. | Gabriela Moldovan | 2024-11-14 | 1 | -191/+33 | |
| | | | | | | | | | | | | | | | | | We decided to go with the second proposed design, so we can safely remove this one now. This also updates the introduction to summarize how we arrived at this design. | |||||
| * | | doc/dev/notes: keymgr-certificates: Clarify confusing wording. | Gabriela Moldovan | 2024-11-14 | 1 | -3/+2 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Make the signing_key optionally present ↵ | Gabriela Moldovan | 2024-11-14 | 1 | -3/+37 | |
| | | | | | | | | | in keystore. | |||||
| * | | doc/dev/notes: keymgr-certificates: Remove redundant fields from ↵ | Gabriela Moldovan | 2024-11-14 | 1 | -5/+0 | |
| | | | | | | | | | KeyCertificateSpecifier. | |||||
| * | | doc/dev/notes: keymgr-certificates: Clarify what KeyType/CertType is about. | Gabriela Moldovan | 2024-11-14 | 1 | -0/+7 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Remove misleading statement. | Gabriela Moldovan | 2024-11-14 | 1 | -1/+0 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Add a revised proposal. | Gabriela Moldovan | 2024-11-14 | 1 | -0/+358 | |
| | | | | | | | | | | | Based on Diziet's feedback in https://gitlab.torproject.org/tpo/core/arti/-/merge_requests/2565#note_3099397 | |||||
| * | | doc/dev/notes: keymgr-certificates: Say that the original proposal is rejected. | Gabriela Moldovan | 2024-11-14 | 1 | -7/+12 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Update key notation for clarity. | Gabriela Moldovan | 2024-11-14 | 1 | -6/+8 | |
| | | | ||||||
| * | | doc/dev/notes: keymgr-certificates: Add note about certificate management. | Gabriela Moldovan | 2024-11-14 | 1 | -0/+177 | |
| | | | | | | | | | | | | | | | This describes the storage format and on-disk key store paths of `relaysign_ed` certificates (which we'll soon need to support). Part of #1617 | |||||
| * | | rpc-connect-sketch: clarify "no new critical members" principle. | Nick Mathewson | 2024-11-13 | 1 | -5/+11 | |
| | | | ||||||
| * | | rpc-connect-sketch: Per discussion, change non-localhost to "decline" | Nick Mathewson | 2024-11-12 | 1 | -1/+1 | |
| | | | ||||||
| * | | rpc-connect-sketc: Add question on TOML tolerance. | Nick Mathewson | 2024-11-07 | 1 | -0/+6 | |
| | | | ||||||
| * | | rpc-connect-sketch: more specific abort/decline documentation | Nick Mathewson | 2024-11-07 | 1 | -6/+12 | |
| | | | ||||||
| * | | rpc-connect-sketch: more on philosophy of client error handling | Nick Mathewson | 2024-11-07 | 1 | -2/+34 | |
| | | | ||||||
| * | | rpc-cookie: shell expansion happens before the addr is canonical | Nick Mathewson | 2024-11-07 | 1 | -0/+2 | |
| | | | ||||||
| * | | rpc-connect: Clarify server behavior on disabled entries. | Nick Mathewson | 2024-11-07 | 1 | -0/+2 | |
| |/ | | | | | The behavior in question is to ignore the entries entirely, and not check their files at all. | |||||
| * | Grammar fix. | Nick Mathewson | 2024-10-31 | 1 | -1/+1 | |
| | | ||||||
| * | RPC spec: note that embedded/owned need options. | Nick Mathewson | 2024-10-31 | 1 | -1/+6 | |
| | | ||||||
| * | RPC spec: clarify what is escaped | Nick Mathewson | 2024-10-31 | 1 | -2/+7 | |
| | | | | | | Specifically, only literal connect points (TOML strings) are escaped. | |||||
| * | RPC specs: Fix an inline TOML table syntax. | Nick Mathewson | 2024-10-31 | 1 | -1/+1 | |
| | | ||||||
| * | rpc: clarify percent-encoding rules. | Nick Mathewson | 2024-10-28 | 1 | -5/+10 | |
| | | ||||||
| * | rpc: refer to TOML tables, not sections. | Nick Mathewson | 2024-10-28 | 1 | -5/+5 | |
| | | ||||||
| * | rpc: centralize treatment of unrecognized sections/members. | Nick Mathewson | 2024-10-28 | 1 | -2/+2 | |
| | | ||||||
| * | rpc: clarify "hidden file" meaning. | Nick Mathewson | 2024-10-28 | 1 | -2/+3 | |
| | | ||||||
| * | rpc: tweak "connect string" terminology | Nick Mathewson | 2024-10-28 | 2 | -75/+78 | |
| | | | | | | With all the fanciness we've built up here here, it seems that "connect point" is a better term than "connect point". | |||||
| * | rpc-connect-sketch: convert to toml. | Nick Mathewson | 2024-10-27 | 1 | -50/+61 | |
| | | | | | | (We've decided to make this change because these files are meant to be written by humans.) | |||||
| * | Move RPC documents into a new location | Nick Mathewson | 2024-10-24 | 3 | -0/+0 | |
| | | | | | This will be the start of an mdbook document. | |||||
| * | Merge branch 'rpc-server-sketch' into 'main' | Nick Mathewson | 2024-10-24 | 2 | -15/+201 | |
| |\ | | | | | | | | | | | | | Sketch RPC server and superuser operations. Closes #1702 See merge request tpo/core/arti!2563 | |||||
| | * | rpc-sketch: clean up some ungrammatical/hypothetical language. | Nick Mathewson | 2024-10-24 | 1 | -2/+2 | |
| | | | ||||||
| | * | rpc sketch: show how to override a connect point option. | Nick Mathewson | 2024-10-24 | 1 | -0/+5 | |
| | | | ||||||
| | * | rpc-sketch: specify and permit directories full of connect files. | Nick Mathewson | 2024-10-24 | 1 | -10/+14 | |
| | | | | | | | | | | | | | | | | | | | | | | | The main purpose of this commit is to RPC servers to configure connect points individually, while allowing clients to look at a configuration location that is full of multiple connect points. This change permits us to discard allow_missing_file, which is nice. This commit still pretends that the file extension is "json"; that will be fixed in #1711. | |||||
| | * | rpc-connect: revise description of superuser and fs-mistrust options. | Nick Mathewson | 2024-10-23 | 1 | -5/+17 | |
| | | | ||||||
| | * | rpc-connect: Rewrite server behavior section. | Nick Mathewson | 2024-10-23 | 1 | -16/+58 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The most salient change here is that _everything_, including the default connect string, is a configuration option, so that `--system-arti` (hypothetical) can override it. In order to make the default connect file locations behave like regular options, I've added a `allow_missing_file` sub-option that makes the absence of a file tolerable. There is a behavioral change here: Specifying your own `rpc.listen` entries in the arti.toml _does not_ disable checking the default connect file locations. | |||||
| | * | rpc-connect: Mention #1710 when talking about system-arti case. | Nick Mathewson | 2024-10-23 | 1 | -0/+6 | |
| | | | ||||||
| | * | rpc-connect-sketch: normalize some json | Nick Mathewson | 2024-10-21 | 1 | -6/+6 | |
| | | | ||||||
| | * | Apply 2 suggestion(s) to 2 file(s) | Nick Mathewson | 2024-10-21 | 2 | -2/+2 | |
| | | | | | | | Co-authored-by: Ian Jackson <[email protected]> | |||||
| | * | rpc-*: sketch superuser operations. | Nick Mathewson | 2024-10-21 | 2 | -1/+39 | |
| | | | ||||||
| | * | rpc-connect-sketch: Sketch RPC server operation | Nick Mathewson | 2024-10-21 | 1 | -0/+44 | |
| | | | ||||||
| | * | rpc-connect-sketch: Fix ambiguous use of "embedded" | Nick Mathewson | 2024-10-21 | 1 | -1/+1 | |
| | | | ||||||
| | * | rpc-connect-sketch: more sketching about embedded arti. | Nick Mathewson | 2024-10-21 | 1 | -9/+25 | |
| | | | ||||||
