From 714d37da91c34db5911e413d53ab544f7ef5a9a3 Mon Sep 17 00:00:00 2001 From: Nick Mathewson Date: Thu, 19 Mar 2009 12:03:04 -0400 Subject: Add lengths to the timestamp file. This might break old clients, but AFAICT there are no clients running versions prior to 15 Dec. It's necessary to avoid some DOS attacks. --- TODO | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'TODO') diff --git a/TODO b/TODO index e4a2fa1..6fec3a3 100644 --- a/TODO +++ b/TODO @@ -33,7 +33,7 @@ o Decouple install from check: they are not necessarily related. believable value to make sure we don't download too much o Include lengths in generated packages and bundles . Specify use of length field. - - Once everybody has been wanted to update their clients, include + o Once everybody has been wanted to update their clients, include lengths in timestamp files. - Make lengths mandatory - Maybe make lengths enforced for purposes other than a maximum -- cgit v1.2.3