Philipp Winter

Results 32 issues of Philipp Winter

In the future, we may want to add other IP address-related data for anti-fraud purposes, one example being the geo location of an IP address. In theory, the enclave image...

enhancement

One way to go about this is to ask for an attestation document and check if its PCR values are set. An enclave that's launched in debug mode has all...

enhancement
good first issue

For our STAR randomness server deployment, we want the ability to load an enclave application at runtime. This can happen in various ways, like via an HTTP API (e.g., we...

enhancement

We currently have no easy-to-use test to measure the requests per second that nitriding can sustain. This is important because we occasionally change the networking code and we ought to...

enhancement

With our current setup, it will be difficult to run more than one enclave in Kubernetes: When an enclave requests an HTTPS certificate from Let's Encrypt using the HTTP challenge,...

bug

I noticed that the user ID change we implemented in https://github.com/brave-experiments/star-randsrv/pull/33 is ineffective in an enclave. The UID always remains 0. I reached out to our AWS contacts and was...

E.g., `default-src 'none'; frame-ancestors 'none'; base-uri 'none';`

enhancement
security

We currently have the following direct dependencies: - github.com/brave-experiments/viproxy v0.1.0 - github.com/go-chi/chi/v5 v5.0.7 - github.com/hf/nsm v0.0.0-20211106132757-1ae65a6a69ae - github.com/mdlayher/vsock v1.1.1 - github.com/milosgajdos/tenus v0.0.3 - golang.org/x/crypto v0.0.0-20200622213623-75b288015ac9 - golang.org/x/sys v0.0.0-20220319134239-a9b59b0215f8 At least...

enhancement
good first issue

I've been working on some tooling that can help us measure nitriding's networking performance. So far, I have a minimal Go Web server that implements a simple "hello world" handler....

enhancement

This PR makes the following changes: * Fix the linter, address its warnings, and stop letting it fail. * Fix the address sanitizer and stop letting it fail. * Make...