[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #5565 [Tor Relay]: MyFamily should provide an alternate non-idhex subscription mechanism



#5565: MyFamily should provide an alternate non-idhex subscription mechanism
-------------------------+--------------------------------------------------
 Reporter:  mikeperry    |          Owner:                    
     Type:  enhancement  |         Status:  new               
 Priority:  normal       |      Milestone:  Tor: 0.2.4.x-final
Component:  Tor Relay    |        Version:                    
 Keywords:               |         Parent:  #5563             
   Points:               |   Actualpoints:                    
-------------------------+--------------------------------------------------

Comment(by rransom):

 Reasons to keep MyFamily include:

  * If someone administers many relays, they are likely to all have similar
 configurations, so there will be some attacks which compromise all relays
 in a family and would not compromise unrelated relays.
  * If someone administers many relays, he/she/it may want to reduce the
 amount of traffic which his/her/its relays could potentially correlate, in
 order to reduce the value of performing a rubber-hose attack.  (But this
 doesn't work so well if people don't pay attention to MyFamily or if relay
 operators suck at setting it.)

 More reasons to throw away MyFamily include:

  * The current implementation takes up a lot of space in relay
 descriptors, and presumably also in microdescriptors.
  * Adding a better implementation will take a lot of developer resources,
 and in particular, it will take a lot of my resources if you want to go
 for the 160-bit elliptic curve (rather than using the Curve25519 group and
 spending 512 or 768 bits per signature).

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/5565#comment:13>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs