Opened 12 days ago

#24876 new defect

Directory Authorities should test reachability of relays in their family

Reported by: teor Owned by:
Priority: Medium Milestone: Tor: 0.3.4.x-final
Component: Core Tor/Tor Version:
Severity: Minor Keywords: tor-dirauth, easy
Cc: Actual Points:
Parent ID: Points: 1
Reviewer: Sponsor:

Description

Sebastian reported on #tor-dev that directory authorities can't set MyFamily, because it makes the relays in the family get marked as not Running.

I'm not sure if this restriction is in the connecting code on authorities or relays, or the accepting code on relays.

If it's on the connecting side, we can disable it on authorities.

If it is in the accepting code on relays, maybe we need to keep it as a defence in depth measure. But we could disable it for authority IP addresses. (It wouldn't work with multiple authority IPs or OutboundBindAddress, but that's getting obscure.)

Child Tickets

Change History (0)

Note: See TracTickets for help on using tickets.