Re: [tor-dev] A Proposal for a hidden service revocation system

2015-03-08 Thread Adrien Johnson
Hi Donncha, Thanks for the feedback! This is an issue I'm passionate about and would really like to help implement. Since the CA/Browser Forum recently adopted rules letting anyone who has the master secret key get an EV SSL certificate for a .onion domain, a hijacker can even present itself a

Re: [tor-dev] A Proposal for a hidden service revocation system

2015-03-07 Thread Donncha O'Cearbhaill
Hi Adrien, Good job on writing up a draft for this proposal! It looks good! On 07/03/15 21:33, Adrien Johnson wrote: > Filename: xxx-rend-revoke.txt > Title: Hidden Service Revocation > Author: Adrien Johnson > Created: 2015-03-04 > Status: Draft > > Hidden service operators need to be able to r

[tor-dev] A Proposal for a hidden service revocation system

2015-03-07 Thread Adrien Johnson
Filename: xxx-rend-revoke.txt Title: Hidden Service Revocation Author: Adrien Johnson Created: 2015-03-04 Status: Draft Hidden service operators need to be able to revoke trust in their hidden service if they know or suspect their hidden service secret key has been compromised. 1. Motivation