[tor-bugs] #27953 [Core Tor/Tor]: Authorization types for v3 onion service have to be clarified in documentation

Tor Bug Tracker & Wiki blackhole at torproject.org
Thu Oct 4 16:05:22 UTC 2018


#27953: Authorization types for v3 onion service have to be clarified in
documentation
--------------------------------+------------------------------
 Reporter:  geoip               |          Owner:  (none)
     Type:  enhancement         |         Status:  new
 Priority:  Medium              |      Component:  Core Tor/Tor
  Version:  Tor: 0.3.5.1-alpha  |       Severity:  Normal
 Keywords:                      |  Actual Points:
Parent ID:                      |         Points:
 Reviewer:  dgoulet             |        Sponsor:
--------------------------------+------------------------------
 Problem 1. Official [[https://gitweb.torproject.org/torspec.git/tree/rend-
 spec-v3.txt|spec]] mentions stealth auth:


 > [TODO: Also specify stealth client authorization.].


 However, stealth auth is only used for v2 onion services. It should be
 fixed.

 ----

 Problem 2. According to teor's
 [[https://trac.torproject.org/projects/tor/ticket/20700#comment:23|comment]]
 the following auth types were planned: 'descriptor', 'intro', and
 'standard'. However, only 'descriptor' type is documented by spec (man
 page for tor alpha refers to spec for details). Other auth types are not
 documented at all, though spec gives a strong impression that 'descriptor'
 is only one of possible authentication types.

 If tor project already has some understanding of these future planned auth
 types, they must be described at least in tickets. If it is not the case,
 somewhere (e.g. in man page which now refers to spec) we should write that
 'descriptor' is the only auth type which will be supported in foreseeable
 future.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/27953>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list