[tor-bugs] #16530 [Tor]: uploaded a descriptor with a Ed25519 key but the <rsa, ed25519> keys don't match what they were before.

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Jul 14 13:28:50 UTC 2015


#16530: uploaded a descriptor with a Ed25519 key but the <rsa,ed25519> keys don't
match what they were before.
-------------------------+--------------------------------
     Reporter:  arma     |      Owner:
         Type:  defect   |     Status:  new
     Priority:  blocker  |  Milestone:  Tor: 0.2.7.x-final
    Component:  Tor      |    Version:
   Resolution:           |   Keywords:  tor-auth
Actual Points:           |  Parent ID:
       Points:           |
-------------------------+--------------------------------

Comment (by nickm):

 Hmmm. So here's how I'm leaning on this issue for 0.2.7.2-alpha:

  * Ensure that there is a way for authority operators to un-pin keys in
 cases like this.
  * On a relay, *always* read at least the public master key, and ensure
 that it matches any certificate we send out.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/16530#comment:8>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list