Expand description
Encrypted onion circuit data plane.
Security model: forward layers are wrapped from exit to entry with the selected hop session public keys. Each relay decrypts exactly one ElGamal-AEAD layer and learns only the immediate next hop plus an opaque inner layer. Backward frames carry a client-encrypted AEAD payload and relays forward them with local return state.
Structs§
- Onion
Authenticated Payload - Client-decrypted backward payload plus the exit session proof that authenticated it.
- Onion
Backward Frame - Backward direction: exit -> relays -> client.
- Onion
Backward Nonce - Random nonce for one backward payload on a circuit.
- Onion
Backward Path - Authenticated immediate path used to originate one backward cell at an exit.
- Onion
Backward Sequence - Monotonic exit-to-client sequence number within one circuit.
- Onion
Circuit Event - One typed onion-circuit input accepted by the pure reducer.
- Onion
Circuit Exit Frame - Fully decrypted forward frame that has reached the exit adapter.
- Onion
Circuit Id - Edge-local circuit id.
- Onion
Circuit Payload - Opaque application payload carried over a route-aware onion circuit.
- Onion
Circuit Protocol - Encrypted onion circuit protocol.
- Onion
Circuit Shell - Interpreter for route-aware circuit effects.
- Onion
Circuit State - Stateful return-hop table for encrypted relay circuits.
- Onion
Client Return - Client return key encrypted into the exit layer.
- Onion
Forward Frame - Forward direction: client -> relays -> exit.
- Onion
Forward Nonce - Random nonce for one forward exit payload on a circuit.
- Onion
Forward Sequence - Monotonic client-to-exit sequence number within one circuit.
- Onion
Return Id - Client/exit-only id used to authenticate backward payloads.
- Onion
Verified Payload - Backward payload that has passed exit identity, signature, and freshness checks.
Enums§
- Onion
Cell Bucket - Public size classes used by encrypted onion cells.
- Onion
Circuit Capabilities - Capabilities this node enables for the onion circuit data plane.
- Onion
Circuit Effect - Effects emitted by the route-aware circuit reducer.
- Onion
Circuit Security - Security mode implemented by the current circuit wire format.
Constants§
- MAX_
ONION_ CIRCUIT_ HOPS - Maximum route length encoded by local clients and maximum relay hop-budget value accepted per decrypted layer.
- ONION_
CIRCUIT_ NAMESPACE - Namespace used by route-aware onion circuit messages.
- ONION_
CIRCUIT_ SECURITY - Current circuit security mode.
Traits§
- Onion
Circuit Handler - Runtime-specific circuit handling.
Functions§
- encode_
initial_ forward - Encode the first forward frame for
route. - route_
first_ hop - Return the first overlay hop of a route that was validated at construction.