[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #22006 [Core Tor/Tor]: prop224: Validate ed25519 pubkeys to remove torsion component



#22006: prop224: Validate ed25519 pubkeys to remove torsion component
------------------------------------+------------------------------------
 Reporter:  asn                     |          Owner:
     Type:  defect                  |         Status:  new
 Priority:  Medium                  |      Milestone:  Tor: 0.3.1.x-final
Component:  Core Tor/Tor            |        Version:
 Severity:  Normal                  |     Resolution:
 Keywords:  tor-hs prop224 ed25519  |  Actual Points:
Parent ID:  #21888                  |         Points:
 Reviewer:                          |        Sponsor:  SponsorR-can
------------------------------------+------------------------------------
Description changed by asn:

Old description:

> We should validate ed25519 pubkeys used in prop224 (like the blinded key)
> to make sure there is no torsion components. In the case of the blinded
> key, this ensures that there are no equivalent keys due to the torsion
> component.
>
> Please see:
> https://lists.torproject.org/pipermail/tor-dev/2017-April/012164.html
> https://lists.torproject.org/pipermail/tor-dev/2017-April/012213.html

New description:

 We should validate ed25519 pubkeys used in prop224 (like the blinded key)
 to make sure there is no torsion components. In the case of the onion
 address ed25519, this ensures that there are no equivalent onion addresses
 due to the torsion component.

 Please see:
 https://lists.torproject.org/pipermail/tor-dev/2017-April/012164.html
 https://lists.torproject.org/pipermail/tor-dev/2017-April/012213.html

--

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/22006#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs