| Commit message (Collapse) | Author | Age |
|
|
|
| |
svn:r498
|
|
|
|
| |
svn:r496
|
|
|
|
| |
svn:r487
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
ERR is if something fatal just happened
WARNING is something bad happened, but we're still running. The bad thing
is either a bug in the code, an attack or buggy protocol/implementation
of the remote peer, etc. The operator should examine the bad thing and
try to correct it.
(No error or warning messages should be expected. I expect most people
to run on -l warning eventually.)
NOTICE is never ever used.
INFO means something happened (maybe bad, maybe ok), but there's nothing
you need to (or can) do about it.
DEBUG is for everything louder than INFO.
svn:r486
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
redo all the config files for the new format (we'll redo them again soon)
fix (another! yuck) segfault in log_fn when input is too large
tor_tls_context_new() returns -1 for error, not NULL
fix segfault in check_conn_marked() on conn's that die during tls handshake
make ORs also initialize conn from router when we're the receiving node
make non-dirserver ORs upload descriptor to every dirserver on startup
add our local address to the descriptor
add Content-Length field to POST command
revert the Content-Length search in fetch_from_buf_http() to previous code
fix segfault in memmove in fetch_from_buf_http()
raise maximum allowed headers/body size in directory.c
svn:r484
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
'buf_t' is now an opaque type defined in buffers.c .
Router descriptors now include all keys; routers generate keys as
needed on startup (in a newly defined "data directory"), and generate
their own descriptors. Descriptors are now self-signed.
Implementation is not complete: descriptors are never published; and
upon receiving a descriptor, the directory doesn't do anything with
it.
At least "routers.or" and orkeygen are now obsolete, BTW.
svn:r483
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Fixed up the assert_*_ok funcs some (more work remains)
Changed config so it reads either /etc/torrc or the -f arg, never both
Finally tracked down a nasty bug with our use of tls:
It turns out that if you ask SSL_read() for no more than n bytes, it
will read the entire record from the network (and maybe part of the next
record, I'm not sure), give you n bytes of it, and keep the remaining
bytes internally. This is fine, except our poll-for-read looks at the
network, and there are no bytes pending on the network, so we never know
to ask SSL_read() for more bytes. Currently I've hacked it so if we ask
for n bytes and it returns n bytes, then it reads again right then. This
will interact poorly with our rate limiting; we need a cleaner solution.
svn:r481
|
|
|
|
| |
svn:r476
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
deal with content-length headers better when reading http
don't assume struct socks4_info is a packed struct
fail the socks handshake if destip is zero
flesh out conn_state_to_string() for dir conn
fix typo (bug) in connection_handle_read()
directory get is now called fetch, post is now upload
reopen logs on sighup
svn:r475
|
|
|
|
|
|
|
|
|
|
|
| |
this paves the way for supporting socks5 and other handshakes
it also removes those pesky AP-only variables from connection_t
also hacked a fix for a bug where some streams weren't ending properly --
maybe because marked connections weren't flushing properly?
svn:r472
|
|
|
|
| |
svn:r471
|
|
|
|
| |
svn:r470
|
|
|
|
| |
svn:r468
|
|
|
|
| |
svn:r466
|
|
|
|
| |
svn:r464
|
|
|
|
| |
svn:r462
|
|
|
|
| |
svn:r461
|
|
|
|
| |
svn:r460
|
|
|
|
|
|
|
| |
still several (many) tls-related bugs outstanding.
svn:r454
|
|
|
|
| |
svn:r452
|
|
|
|
| |
svn:r451
|
|
|
|
|
|
|
| |
things are still a bit shaky
svn:r450
|
|
|
|
| |
svn:r445
|
|
|
|
| |
svn:r441
|
|
|
|
| |
svn:r439
|
|
|
|
| |
svn:r434
|
|
|
|
|
|
|
|
| |
write new certfile if you don't have one already
set up a tls context on startup
svn:r432
|
|
|
|
| |
svn:r430
|
|
|
|
|
|
|
| |
not there yet
svn:r429
|
|
|
|
| |
svn:r428
|
|
|
|
| |
svn:r426
|
|
|
|
|
|
| |
needs work and testing.
svn:r424
|
|
|
|
| |
svn:r418
|
|
|
|
|
|
|
|
|
| |
your client exits if you're running a version not in the
directory's list of acceptable versions (unless you have a
config variable set to override).
svn:r408
|
|
|
|
|
|
|
|
|
|
| |
please poke at it and report bugs
still needs polishing, and only handles onions now (should handle
OR handshakes too)
svn:r402
|
|
|
|
| |
svn:r398
|
|
|
|
|
|
|
|
|
| |
add NumCpus config variable in preparation for cpuworkers
hardcode /etc/torrc path for config (simplifies win32 port)
improve exit policy debugging during router entry parsing
svn:r397
|
|
|
|
|
|
| |
sockets stuff
svn:r393
|
|
|
|
| |
svn:r385
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- signal support
- forking for DNS farm
- changes for async IO
- daemonizing
In other words, some files still don't build, and the ones that do build,
do nonblocking IO incorrectly.
I'm also not checking in the project files till I have a good place
for them.
svn:r380
|
|
|
|
| |
svn:r376
|
|
|
|
| |
svn:r371
|
|
|
|
|
|
|
| |
nick: is this all there is to it? :)
svn:r366
|
|
|
|
| |
svn:r365
|
|
|
|
| |
svn:r364
|
|
|
|
| |
svn:r359
|
|
|
|
|
|
|
|
|
|
| |
(expiry time set to 100 seconds so we can play with it)
exit connections are now informed when pending resolves fail
we kill off the oldest busy worker when we're under attack and need to
resolve something new
svn:r356
|
|
|
|
|
|
| |
convert to symbolic constants -- Roger, was this what you had in mind?
svn:r342
|
|
|
|
| |
svn:r336
|
|
|
|
|
|
|
|
|
|
| |
i've eliminated the master dns process, so now the workers just
act like regular connections and are handled by the normal pollarray.
everything seems to still work. ;)
svn:r327
|