[tor-bugs] #11457 [Tor]: Making a signing cert in the future will make everybody discard your real signing cert and then want it again

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Apr 9 07:56:33 UTC 2014


#11457: Making a signing cert in the future will make everybody discard your real
signing cert and then want it again
------------------------+--------------------------------
     Reporter:  arma    |      Owner:
         Type:  defect  |     Status:  new
     Priority:  normal  |  Milestone:  Tor: 0.2.6.x-final
    Component:  Tor     |    Version:
   Resolution:          |   Keywords:
Actual Points:          |  Parent ID:
       Points:          |
------------------------+--------------------------------

Comment (by arma):

 Some fixes that come to mind include:

 A) If you're a directory authority, and you're about to discard your own
 signing cert that's in keys/authority_certificate, don't.

 B) If you're about to discard a signing cert that signed a consensus or
 vote you're holding, don't.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/11457#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list