ioerror / tlsdate

secure parasitic rdate replacement
Other
363 stars 74 forks source link

distributed trust #112

Closed adrelanos closed 10 years ago

adrelanos commented 11 years ago

From the Tails Time Syncing Design page.

HTP source pools

What sources should be trusted? [...]

The HTP pools used by Tails are based on stable and reliable webservers that get great amounts of traffic. They are categorized into three different pools according to their members relationship to the members in the other pools; any member in a one pool should be unlikely to share logs (or other identifying data), or to agree to send fake time information, with a member from the the other pools. The pools are as follows:

_The pools are listed in config/chroot local-includes/etc/default/htpdate._

Basically, Tails htpdate pick three random servers (one from each pool), and then build the mediate of the three advertised dates.

Could you please add such a feature to tlsdate as well?

ioerror commented 10 years ago

It's in the TODO list - if you want to submit a patch, I'd be happy to review it and I'll probably merge it.

adrelanos commented 10 years ago

I don't speak C, don't wait for me.

ioerror commented 10 years ago

This is a TODO item - I don't think it needs an open bug. If someone wants to implement it, I'd be happy to review the patch but it's low on my list of tasks.