[tor-bugs] #11448 [Tor]: Dirauths must support multiple relay identity keys at once

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Apr 8 19:11:54 UTC 2014


#11448: Dirauths must support multiple relay identity keys at once
-------------------------+-------------------------------------
     Reporter:  rransom  |      Owner:
         Type:  defect   |     Status:  new
     Priority:  major    |  Milestone:  Tor: 0.2.6.x-final
    Component:  Tor      |    Version:
   Resolution:           |   Keywords:  tor-auth needs-proposal
Actual Points:           |  Parent ID:
       Points:           |
-------------------------+-------------------------------------

Comment (by rransom):

 Replying to [comment:3 nickm]:
 > Actually, I'm not sure you actually need to put extra ORPorts in the
 descriptors at all.  I think it would work fine if we just support having
 an extra, non-advertised ORPort that uses an old identity key.

 I didn't say that multiple ORPorts needed to be in a single descriptor
 (and I'm pretty sure that can't be a good thing to do).  And I don't think
 that dirauths need to sign a ''single'' relay descriptor using multiple
 relay identity keys at once, or that that would be a good idea either.

 But I assume that some/many/most/all clients will misbehave if they
 connect to an ORPort with relay identity key X and can't get a relay
 descriptor signed by X, and it's not good to have clients misbehave in the
 general direction of a dirauth.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/11448#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list