[tor-bugs] #3972 [Tor Relay]: Implement proposal 179: TLS certificate and handshake normalization

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Sat Oct 8 06:05:28 UTC 2011


#3972: Implement proposal 179: TLS certificate and handshake normalization
--------------------------+-------------------------------------------------
 Reporter:  ioerror       |          Owner:                    
     Type:  defect        |         Status:  new               
 Priority:  major         |      Milestone:  Tor: 0.2.3.x-final
Component:  Tor Relay     |        Version:  Tor: unspecified  
 Keywords:  needs_review  |         Parent:                    
   Points:                |   Actualpoints:                    
--------------------------+-------------------------------------------------

Comment(by ioerror):

 I'll call it a dynamic prime.

 I plan to remove the static cert stuff, though I suspect it might be
 useful to have some common defaults to ease configuration, I agree that we
 lack evidence to decide that it won't just end up as some kind of obvious
 network distinguisher.

 When other servers do 2048-bit RSA - what size DH does say, Apache do for
 cipher modes that we use?

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/3972#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list