Process ntor create cells before tap create cells?
|Reported by:||arma||Owned by:|
|Keywords:||tor-relay, maybe-proposal||Cc:||iang, nickm, gordon@…, isis@…, tor-admin@…, norman@…|
|Actual Points:||Parent ID:||#9657|
A) In the attack case: If we're under attack by somebody flooding us with tap create cells, it would be nice if the ntor creates get processed before this flood. If this strategy forces them to flood us with ntor create cells instead, that raises the expense.
B) In the normal case: Since handling ntor create cells is faster than handling tap create cells anyway, we could get them out of the way earlier and improve performance even more for folks using ntor-based circuit handshakes.
We already prioritize create-fast cells in exactly this way, though implementation-wise it'll probably be different. For the implementation here, maybe we'll be happiest just keeping two onionskin queues, one for each type.
The only downside I can see is that it'll be harder to measure how much of a performance improvement we get from ntor creates, since now we speed it up in two ways that are hard to separate.
Change History (38)
comment:28 Changed 8 months ago by arma
- Milestone changed from Tor: 0.2.5.x-final to Tor: 0.2.4.x-final
comment:34 Changed 7 months ago by arma
- Resolution set to implemented
- Status changed from needs_review to closed