[tor-bugs] #30512 [Circumvention/Snowflake]: Enable cache for ACME certificates in broker

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon May 20 18:11:18 UTC 2019


#30512: Enable cache for ACME certificates in broker
-------------------------------------+--------------------------------
 Reporter:  dcf                      |          Owner:  (none)
     Type:  enhancement              |         Status:  needs_revision
 Priority:  Medium                   |      Milestone:
Component:  Circumvention/Snowflake  |        Version:
 Severity:  Normal                   |     Resolution:
 Keywords:  arlolra cohosh dcf phw   |  Actual Points:
Parent ID:                           |         Points:
 Reviewer:                           |        Sponsor:
-------------------------------------+--------------------------------
Changes (by dcf):

 * status:  needs_review => needs_revision


Comment:

 This looks good to me now. I would suggest one further change: change
 `letsencrypt-cert-cache` to `acme-cert-cache` for uniformity with other
 existing options.

 And do we care or should there be a way to disable the cert cache, if
 running on a read-only filesystem for example? Maybe `-acme-cert-cache
 ""`? Or maybe just logging the failure and continuing to run (what the
 patch does now) is the best way.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/30512#comment:7>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list