aboutsummaryrefslogtreecommitdiff
path: root/proposals/103-multilevel-keys.txt
diff options
context:
space:
mode:
authorNick Mathewson <nickm@torproject.org>2007-01-26 19:04:43 +0000
committerNick Mathewson <nickm@torproject.org>2007-01-26 19:04:43 +0000
commita6658f9d1a3f1e6a0948c06319210928d8dd5156 (patch)
tree249eabb08f92db169e85da78515019c99b902ef4 /proposals/103-multilevel-keys.txt
parent6e1f797ed9d3bdab9702129364b9db5967da9780 (diff)
downloadtorspec-a6658f9d1a3f1e6a0948c06319210928d8dd5156.tar.gz
torspec-a6658f9d1a3f1e6a0948c06319210928d8dd5156.zip
r11537@catbus: nickm | 2007-01-26 14:04:29 -0500
More templating: give each proposal an overview and a summary of its status. svn:r9428
Diffstat (limited to 'proposals/103-multilevel-keys.txt')
-rw-r--r--proposals/103-multilevel-keys.txt8
1 files changed, 8 insertions, 0 deletions
diff --git a/proposals/103-multilevel-keys.txt b/proposals/103-multilevel-keys.txt
index bdec440..1dc2b02 100644
--- a/proposals/103-multilevel-keys.txt
+++ b/proposals/103-multilevel-keys.txt
@@ -5,6 +5,14 @@ Last-Modified: $Date$
Author: Nick Mathewson
Created:
+Overview:
+
+ This document proposes a change in the way identity keys are used, so that
+ highly sensitive keys can be password-protected and seldom loaded into RAM.
+
+ It presents options; it is not yet a complete proposal.
+
+Proposal:
Replacing a directory authority's identity key in the event of a compromise
would be tremendously annoying. We'd need to tell every client to switch