aboutsummaryrefslogtreecommitdiff
path: root/changes/bug12585
diff options
context:
space:
mode:
Diffstat (limited to 'changes/bug12585')
-rw-r--r--changes/bug125859
1 files changed, 9 insertions, 0 deletions
diff --git a/changes/bug12585 b/changes/bug12585
new file mode 100644
index 0000000000..ccdcd17e6c
--- /dev/null
+++ b/changes/bug12585
@@ -0,0 +1,9 @@
+ o Major features (security)
+ - Implementation of SocksSocket option - SocksSocket implements a SOCKS
+ proxy reachable by Unix Domain Socket. This allows client applications to
+ communicate with Tor without having the ability to create AF_INET or
+ AF_INET6 family sockets. If an application has permission to create a socket
+ with AF_UNIX, it may directly communicate with Tor as if it were an other
+ SOCKS proxy. This should allow high risk applications to be entirely prevented
+ from connecting directly with TCP/IP, they will be able to only connect to the
+ internet through AF_UNIX and only through Tor.