top | item 47165569

(no title)

mrexcess | 4 days ago

Looks awesome in many ways. The use of a shared secret instead of PKI limits the real-world applications pretty severely, but adding PKI support doesn't seem too difficult. If the PKI key was only used to establish the session "shared secret", virtually no changes would be needed in the main code.

Thanks for contributing!

discuss

order

smalltorch|2 days ago

This would be a great improvement and I'm going to look into how to implement!

The most obvious path is just integrating the authorized clients Tor has already built in. A way to export these keys efficiently to your intended recipient.