[tor-bugs] #5563 [Tor Relay]: Better support for ephemeral relay identity keys

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Wed Apr 4 07:49:58 UTC 2012


#5563: Better support for ephemeral relay identity keys
-------------------------+--------------------------------------------------
 Reporter:  mikeperry    |          Owner:       
     Type:  enhancement  |         Status:  new  
 Priority:  normal       |      Milestone:       
Component:  Tor Relay    |        Version:       
 Keywords:               |         Parent:  #5456
   Points:               |   Actualpoints:       
-------------------------+--------------------------------------------------

Comment(by rransom):

 Replying to [comment:5 mikeperry]:
 > Replying to [comment:4 arma]:
 > > Replying to [comment:3 mikeperry]:
 > > > arma: I don't think so. I think I'm actually most concerned about
 our TLS keys, which I believe are rotated daily.
 > >
 > > Every 2 hours:
 {{{
   /** 1b. Every MAX_SSL_KEY_LIFETIME_INTERNAL seconds, we change our
    * TLS context. */
 }}}
 >
 > Ah, tor-spec.txt says "should".. "at least once a day".

 If I remember correctly, `MAX_SSL_KEY_LIFETIME_INTERNAL` is greater than
 7200.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/5563#comment:6>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list