[tor-bugs] #31011 [Core Tor/Tor]: Make the bridge authority reject private PT addresses when DirAllowPrivateAddresses is 0
Tor Bug Tracker & Wiki
blackhole at torproject.org
Fri Jun 28 05:49:37 UTC 2019
#31011: Make the bridge authority reject private PT addresses when
DirAllowPrivateAddresses is 0
--------------------------+----------------------------------
Reporter: teor | Owner: (none)
Type: defect | Status: new
Priority: Medium | Milestone: Tor: unspecified
Component: Core Tor/Tor | Version:
Severity: Normal | Resolution:
Keywords: | Actual Points:
Parent ID: #31009 | Points: 0.5
Reviewer: | Sponsor:
--------------------------+----------------------------------
Comment (by arma):
Another option here is to leave the bridge authority alone, and teach
bridgedb that if there's an internal address in the extrainfo descriptor,
it should swap it out in favor of the public address in the descriptor.
Then once the #31009 fix is sufficiently deployed, it shouldn't matter
anymore.
(That way we could make use of the current obfs4 bridges even if they
haven't upgraded yet.)
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/31011#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
More information about the tor-bugs
mailing list