[tor-bugs] #12378 [Tor]: Tor configuration policies using network CIDR syntax should clamp mask bits appropriately

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Jun 13 12:57:00 UTC 2014


#12378: Tor configuration policies using network CIDR syntax should clamp mask bits
appropriately
------------------------+--------------------------------
     Reporter:  anon    |      Owner:
         Type:  defect  |     Status:  new
     Priority:  normal  |  Milestone:
    Component:  Tor     |    Version:
   Resolution:          |   Keywords:  config exit-policy
Actual Points:          |  Parent ID:
       Points:          |
------------------------+--------------------------------

Comment (by nickm):

 I think that warning in these cases makes more sense than clamping
 silently.  If somebody says "a.b.0.0/8", I don't feel comfortable
 concluding that they obviously meant "a.b.0.0/16" instead of "a.0.0.0/8".

 >but the exit policy summary is simply reject *:*, which doesn't seem like
 it is correct. Is that a different bug, or this bug?

 Could be "no bug".  The rule for policy summaries is basically that if you
 reject a bunch of non-private_nets addresses on a port, you aren't
 summarized as supporting that port.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/12378#comment:3>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list