From: Roger Dingledine Date: Fri, 21 Jan 2005 08:20:01 +0000 (+0000) Subject: a few more thoughts about seeds X-Git-Tag: tor-0.1.0.1-rc~423 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=01cd23ef628cf0ff96743b04b18fb8573327d3fe;p=thirdparty%2Ftor.git a few more thoughts about seeds svn:r3399 --- diff --git a/doc/dir-spec.txt b/doc/dir-spec.txt index 32e71f92f8..0c349a5152 100644 --- a/doc/dir-spec.txt +++ b/doc/dir-spec.txt @@ -106,8 +106,12 @@ Piece two: (optional) and not fingerprints, it also means that dirservers can rotate their signing keys transparently. - But, keeping track of the seed keys becomes a critical security issue; - and rotating them in a backward-compatible way adds complexity. + But, keeping track of the seed keys becomes a critical security issue. + And rotating them in a backward-compatible way adds complexity. Also, + dirserver locations must be at least somewhere static, since each lost + dirserver degrades reachability for old clients. So as the dirserver + list rolls over we have no choice but to put out new versions. + Piece three: (optional)