[tor-bugs] #17135 [Tor]: Disable key-pinning for a few months.

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Sep 23 14:07:36 UTC 2015


#17135: Disable key-pinning for a few months.
------------------------+--------------------------------
     Reporter:  nickm   |      Owner:  nickm
         Type:  defect  |     Status:  assigned
     Priority:  major   |  Milestone:  Tor: 0.2.7.x-final
    Component:  Tor     |    Version:
   Resolution:          |   Keywords:
Actual Points:          |  Parent ID:
       Points:          |
------------------------+--------------------------------

Comment (by nickm):

 Proposed design:

  * Add a new option `AuthDirPinKeys`, defaulting to 0.  When it is set to
 1, we get the current behavior.  When it is set to 0, we still record key
 mappings, but allow new keys to replace old ones.
  * At some point in the future, like in the next few months, we make the
 default here become 1.  Or we come up with a better design if we think 1
 won't work.

 Thoughts?

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17135#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list