[tor-bugs] #23247 [Applications/Tor Browser]: Communicating security expectations for .onion: what to say about different padlock states for .onion services

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Apr 13 11:20:28 UTC 2018


#23247: Communicating security expectations for .onion: what to say about different
padlock states for .onion services
-------------------------------------------+--------------------------
 Reporter:  isabela                        |          Owner:  tbb-team
     Type:  project                        |         Status:  new
 Priority:  High                           |      Milestone:
Component:  Applications/Tor Browser       |        Version:
 Severity:  Normal                         |     Resolution:
 Keywords:  ux-team, TorBrowserTeam201804  |  Actual Points:
Parent ID:                                 |         Points:
 Reviewer:                                 |        Sponsor:
-------------------------------------------+--------------------------

Comment (by asn):

 Replying to [comment:34 tom]:
 > Replying to [comment:32 brade]:
 > > Replying to [comment:31 isabela]:
 > > > Cleaned up and updated all stated with icon and copy:
 > > >
 > > > https://docs.google.com/document/d/1bPrNLIl7Qy-
 sA7aTfElu80Xk2eXzTfH_5BGTOUDK8XU/edit#
 > >
 > > In looking over the above document, the only scenario that surprised
 me was "HTTPS Site with HTTPS Self-Signed Onion Subresources" which has an
 onion icon (I expected a padlock).
 >
 > Yes, I think it should have a padlock. I think isa may have missed this
 case when e updated the other ones in this section?

 Seems to me this is fixed now in the doc. I think the doc Looks Good To Me
 right now.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/23247#comment:35>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list