summaryrefslogtreecommitdiff
path: root/doc
Commit message (Collapse)AuthorAgeFilesLines
...
* | dev doc: Lowercase the key paths.Gabriela Moldovan2024-02-051-6/+6
|/ | | | | We changed all key paths to be lowercased a while ago, but forgot to update this document.
* tor-hsservice: Rewrite maybe_generate_hsid using KeyMgr::generate.Gabriela Moldovan2024-02-011-1/+0
| | | | | | | | | | | | | | | We will soon remove the `KeyMgr::*_with_derived()` functions, so we need to rewrite `maybe_generate_hsid` using `KeyMgr::get` and `KeyMgr::generate`. An important point to note is that `maybe_generate_hsid` no longer stores the `KP_hs_id` in the key store. The reason we originally put the `KP_hs_id` in the keystore in the first place was to support offline HsId mode. However, offline HsId mode was never fully implemented (#1194), and the decision to put the public part of the HsId in the keystore is controversial (#1195). We can revisit this decision when we implement #1194, but for now, we don't need a separate `KP_hs_Id` entry in the keystore.
* tor-hsservice: Rename the service keystore dir to "hss".Gabriela Moldovan2024-02-011-5/+5
| | | | | | | | | | | The onion service keys now live in the `hss/<nickname>` subdirectory within the keystore. This layout change is **not** backwards-compatible, so if you want to use your existing hidden service keys, you will need to manually move them to `<keystore_root>/hss`. Closes #1260
* tor-keymgr: Strip .onion suffix from HsId before building Slug.Gabriela Moldovan2024-01-311-2/+2
| | | | | | We are about to replace `ArtiPathComponent` with `Slug`, but `Slug`s don't support `.`, so let's strip the `.onion` suffix before encoding it in the `ArtiPath`.
* Update sponsor 101 numbers.Alexander Færøy2024-01-231-0/+26
|
* Merge branch 'typos' into 'main'Ian Jackson2024-01-092-4/+4
|\ | | | | | | | | Fix typos See merge request tpo/core/arti!1852
| * Fix typosDimitris Apostolou2024-01-082-4/+4
| |
* | dev doc: Mention which keymgr APIs the CLI will be using.Gabriela Moldovan2024-01-081-7/+114
| |
* | dev doc: Add a TODO about `arti hss auth-clients`.Gabriela Moldovan2024-01-081-1/+2
| |
* | doc dev: Add a TODO about --pub-format=artiGabriela Moldovan2024-01-081-0/+3
| |
* | Revert "dev doc: Add import-key/export-key hsc subcommands."Gabriela Moldovan2024-01-081-96/+0
| | | | | | | | This reverts commit 2c4e3773baf18b0f40e0d96c56d72c5515691a63.
* | dev doc: Add TODO about converting C Tor state to Arti state.Gabriela Moldovan2024-01-081-0/+4
| |
* | dev doc: Clarify how new-service is supposed to work.Gabriela Moldovan2024-01-081-0/+11
| |
* | dev doc: Auth public keys should be printed to stdout (fmt).Gabriela Moldovan2024-01-081-6/+5
| |
* | dev doc: Auth public keys should be printed to stdout.Gabriela Moldovan2024-01-081-14/+14
| |
* | Add a note about destroy-and-recreate.Gabriela Moldovan2024-01-081-0/+27
| |
* | dev doc: Clarify how generate-online-keys is supposed to work.Gabriela Moldovan2024-01-081-16/+25
| |
* | dev doc: Make --up-to specify a timestamp/duration.Gabriela Moldovan2024-01-081-7/+13
| |
* | dev doc: Generalize the keys-verify description.Gabriela Moldovan2024-01-081-1/+1
| | | | | | | | This command is not specific to services.
* | doc dev: Rename destroy-service to destroy.Gabriela Moldovan2024-01-081-6/+6
| |
* | dev doc: Add import-key/export-key hsc subcommands.Gabriela Moldovan2024-01-081-0/+96
| |
* | dev doc: Add TODO about managing the authorized clients.Gabriela Moldovan2024-01-081-0/+22
| |
* | dev doc: s/new-identity/new-service and clarify its meaning.Gabriela Moldovan2024-01-081-14/+22
| |
* | dev doc: Explain what generate-online-keys is used for.Gabriela Moldovan2024-01-081-8/+13
| |
* | dev doc: s/generate-all/generate-online-keysGabriela Moldovan2024-01-081-11/+11
| |
* | dev doc: Move the plumbing subcommands under the keys-raw subcommand.Gabriela Moldovan2024-01-081-39/+77
| |
* | dev doc: Rename the subcommand for erasing service state.Gabriela Moldovan2024-01-081-6/+6
| |
* | dev doc: Add keymgr CLI doc sketch.Gabriela Moldovan2024-01-081-0/+856
|/ | | | | | | | | | This is the second draft of the keymgr CLI design. I've omitted a lot of details which I think ought to be included in the final CLI docs. This document lists the most important functionality we're going to need from this CLI.
* doc: Document how to find out your .onion address with `arti hss`.Gabriela Moldovan2023-12-141-3/+6
|
* Merge branch 'log_hsid_unconditionally' into 'main'Nick Mathewson2023-12-131-7/+3
|\ | | | | | | | | hsservice: Log hsid whether we just generated it or not. See merge request tpo/core/arti!1830
| * hsservice: Log hsid whether we just generated it or not.Nick Mathewson2023-12-131-7/+3
| | | | | | | | | | | | With this change you can find your hsid in your logs (if safe logging is off) even if you forgot to notice it the first time around.
* | arti-client: use sub_builder for ArtiNativeKeystoreConfigNick Mathewson2023-12-131-3/+1
| | | | | | | | | | | | | | | | | | The sub_builder pattern changes `StorageConfigBuilder` so that instead of holding an `Option<ArtiNativeKeystoreConfig>`, it holds an `ArtiNativeKeystoreConfigBuilder`. This makes it a little more ergonomic to use from Rust, and lets us use defaults for the builder fields so that we can make them optional in our configuration.
* | arti_client: enable keymgr when keymgr feature is configuredNick Mathewson2023-12-131-6/+1
|/ | | | | | | This change causes arti_client to have a configurable keymgr when the onion-service-service feature is present, so that you no longer need to configure "experimental" or "experimental-api" as well in order to get a working onion service.
* doc/OnionService: strengthen the warningsIan Jackson2023-12-121-0/+13
|
* doc/OnionService: warn about persistent stateIan Jackson2023-12-121-0/+20
|
* doc/OnionService: warn about future incompatIan Jackson2023-12-121-0/+12
|
* doc/OnionService: warn about stack backtracesIan Jackson2023-12-121-0/+1
|
* doc/OnionService: mention two security risksIan Jackson2023-12-121-1/+12
|
* doc/OnionService: mention Rust API instabilityIan Jackson2023-12-121-0/+10
| | | | This is implied by our other docs but it ought to be repeated here I guess.
* Tweaks from reviewNick Mathewson2023-12-121-0/+6
|
* Initial onion service howtoNick Mathewson2023-12-121-0/+133
|
* Merge branch 'hss-notes' into 'main'Ian Jackson2023-11-301-165/+19
|\ | | | | | | | | hssvc-ipt-algorithms.md: Move and fix up some text See merge request tpo/core/arti!1777
| * hssvc-ipt-algorithms.md: Minor updatesIan Jackson2023-11-291-10/+8
| |
| * hssvc-ipt-algorithms.md: Talk about ipt_set, which is nontrivial nowIan Jackson2023-11-291-7/+11
| |
| * hssvc-ipt-algorithms.md: Move some text to ipt_setIan Jackson2023-11-291-67/+0
| | | | | | | | | | This is describing the detailed algorithm in compute_iptsetstatus_publish. Move it there (and add an xref).
| * hssvc-ipt-algorithms.md: Move some text to ipt_mgrIan Jackson2023-11-291-32/+0
| | | | | | | | | | This is describing the detailed algorithm in idempotently_progress_things_now. Move it there (and add an xref).
| * hssvc-ipt-algorithms.md: Delete rendundant textIan Jackson2023-11-291-49/+0
| | | | | | | | | | | | | | | | This is describing our data structures and IPT states. But we have this documented elsewhere, largely. There are a few sentences here that can usefully be replaced with a bit of extra text in the data structure docs.
* | SupportPolicy: Replace specific MSRV with reference to README.Nick Mathewson2023-11-281-4/+1
|/
* dev doc: Update keymgr paths to mention the new denotator separator.Gabriela Moldovan2023-11-021-3/+3
|
* Fix date typo from Gabigabi-2502023-10-241-2/+2
|