Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2017-07-10 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
-+-
 Reporter:  nickm|  Owner:
 Type:  enhancement  | Status:  new
 Priority:  Medium   |  Milestone:  Tor:
 |  unspecified
Component:  Core Tor/Tor |Version:
 Severity:  Normal   | Resolution:
 Keywords:  testing crypto constant-time side-   |  Actual Points:
  channel disaster-waiting-to-happen |
Parent ID:   | Points:  medium
 Reviewer:   |Sponsor:
 |  Sponsor3-can
-+-

Comment (by isis):

 I [https://github.com/isislovecruft/ctgrind-valgrind revised agl's ctgrind
 patch for the latest valgrind]. Next we'd need to make tests which
 exercise the crypto code with the secrets poisoned in memory.

--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs

Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2017-07-10 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
-+-
 Reporter:  nickm|  Owner:
 Type:  enhancement  | Status:  new
 Priority:  Medium   |  Milestone:  Tor:
 |  unspecified
Component:  Core Tor/Tor |Version:
 Severity:  Normal   | Resolution:
 Keywords:  testing crypto constant-time side-   |  Actual Points:
  channel disaster-waiting-to-happen |
Parent ID:   | Points:  medium
 Reviewer:   |Sponsor:
 |  Sponsor3-can
-+-
Changes (by isis):

 * sponsor:  SponsorS-can => Sponsor3-can


--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs

Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2017-06-29 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
-+-
 Reporter:  nickm|  Owner:
 Type:  enhancement  | Status:  new
 Priority:  Medium   |  Milestone:  Tor:
 |  unspecified
Component:  Core Tor/Tor |Version:
 Severity:  Normal   | Resolution:
 Keywords:  testing crypto constant-time side-   |  Actual Points:
  channel disaster-waiting-to-happen |
Parent ID:   | Points:  medium
 Reviewer:   |Sponsor:
 |  SponsorS-can
-+-
Changes (by isis):

 * cc: isis (added)


Comment:

 Is SponsorS still accurate? Would Sponsor3 also cover this?

--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs

Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2017-06-28 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
-+-
 Reporter:  nickm|  Owner:
 Type:  enhancement  | Status:  new
 Priority:  Medium   |  Milestone:  Tor:
 |  unspecified
Component:  Core Tor/Tor |Version:
 Severity:  Normal   | Resolution:
 Keywords:  testing crypto constant-time side-   |  Actual Points:
  channel disaster-waiting-to-happen |
Parent ID:   | Points:  medium
 Reviewer:   |Sponsor:
 |  SponsorS-can
-+-
Changes (by nickm):

 * keywords:   => testing crypto constant-time side-channel disaster-
 waiting-to-happen


--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs

Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2016-06-20 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
--+--
 Reporter:  nickm |  Owner:
 Type:  enhancement   | Status:  new
 Priority:  Medium|  Milestone:  Tor: 0.2.???
Component:  Core Tor/Tor  |Version:
 Severity:  Normal| Resolution:
 Keywords:|  Actual Points:
Parent ID:| Points:  medium
 Reviewer:|Sponsor:  SponsorS-can
--+--
Changes (by nickm):

 * keywords:  029-proposed, 029-nickm-unsure =>
 * milestone:   => Tor: 0.2.???


--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs

Re: [tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2016-05-02 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
--+--
 Reporter:  nickm |  Owner:
 Type:  enhancement   | Status:  new
 Priority:  Medium|  Milestone:
Component:  Core Tor/Tor  |Version:
 Severity:  Normal| Resolution:
 Keywords:  029-proposed  |  Actual Points:
Parent ID:| Points:  medium
 Reviewer:|Sponsor:  SponsorS-can
--+--
Changes (by nickm):

 * points:   => medium


--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs


[tor-bugs] #18896 [Core Tor/Tor]: Test supposedly constant-time crypto primitives to verify that they are in fact constant-time

2016-04-26 Thread Tor Bug Tracker & Wiki
#18896: Test supposedly constant-time crypto primitives to verify that they are 
in
fact constant-time
--+--
 Reporter:  nickm |  Owner:
 Type:  enhancement   | Status:  new
 Priority:  Medium|  Milestone:
Component:  Core Tor/Tor  |Version:
 Severity:  Normal|   Keywords:  029-proposed
Actual Points:|  Parent ID:
   Points:|   Reviewer:
  Sponsor:  SponsorS-can  |
--+--


--
Ticket URL: 
Tor Bug Tracker & Wiki 
The Tor Project: anonymity online
___
tor-bugs mailing list
tor-bugs@lists.torproject.org
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs