/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
1
-*- org -*-
2
171 by Teddy Hogeborn
Renamed "password-request" to "mandos-client".
3
* mandos-client
355 by Teddy Hogeborn
* mandos: White-space fixes only.
4
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
5
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
6
** TODO use error() instead of perror()
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
7
** TODO [#B] Retry a server which has a non-definite reply:
363 by Teddy Hogeborn
* plugin-runner.c: Minor stylistic changes.
8
*** A closed connection during the TLS handshake
9
*** A TCP timeout
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
10
** TODO [#B] Use capabilities instead of seteuid().
413 by Teddy Hogeborn
TODO file changes.
11
** TODO [#A] Retry --connect forever
355 by Teddy Hogeborn
* mandos: White-space fixes only.
12
13
* splashy
14
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
15
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
413 by Teddy Hogeborn
TODO file changes.
16
** TODO [#B] use error() instead of perror()
355 by Teddy Hogeborn
* mandos: White-space fixes only.
17
18
* usplash
414 by Teddy Hogeborn
Bug fix: mandos-client needs GnuPG but lacked a dependency on it. The
19
** TODO [#A] Make it work again
355 by Teddy Hogeborn
* mandos: White-space fixes only.
20
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
21
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
413 by Teddy Hogeborn
TODO file changes.
22
** TODO [#B] use error() instead of perror()
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
23
24
* askpass-fifo
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
25
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
413 by Teddy Hogeborn
TODO file changes.
26
** TODO [#B] use error() instead of perror()
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
27
** TODO [#B] Drop privileges after opening FIFO.
358 by Teddy Hogeborn
* plugins.d/mandos-client.c (start_mandos_communication): Check
28
29
* password-prompt
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
30
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
413 by Teddy Hogeborn
TODO file changes.
31
** TODO [#B] use error() instead of perror()
32
** TODO [#B] lock stdin (with flock()?)
355 by Teddy Hogeborn
* mandos: White-space fixes only.
33
413 by Teddy Hogeborn
TODO file changes.
34
* TODO [#B] passdev
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
35
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
36
* plugin-runner
37
** TODO [#B] use scandir(3) instead of readdir(3)
344 by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1".
38
** TODO [#C] use same file name rules as run-parts(8)
24.1.145 by Björn Påhlsson
todo
39
** kernel command line option for debug info
413 by Teddy Hogeborn
TODO file changes.
40
** TODO [#B] use error() instead of perror()
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
41
87 by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d".
42
* mandos (server)
413 by Teddy Hogeborn
TODO file changes.
43
** TODO [#B] Log level							  :BUGS:
44
** TODO Persistent state						  :BUGS:
45
   /var/lib/mandos/*
46
*** TODO /etc/mandos/clients.d/*.conf
47
    Watch this directory and add/remove/update clients?
48
** TODO [#C] config for TXT record
49
** TODO Log level option
50
   syslogger.setLevel(logging.WARNING)
51
   + SetLogLevel D-Bus call
52
** TODO Implement --foreground						  :BUGS:
182 by Teddy Hogeborn
* Makefile (install): Use "install-client-nokey".
53
   [[info:standards:Option%20Table][Table of Long Options]]
54
** TODO Implement --socket
55
   [[info:standards:Option%20Table][Table of Long Options]]
413 by Teddy Hogeborn
TODO file changes.
56
** TODO Date+time on console log messages				  :BUGS:
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
57
   Is this the default?
413 by Teddy Hogeborn
TODO file changes.
58
** TODO [#C] DBusServiceObjectUsingSuper
59
** TODO [#B] Global enable/disable flag
60
** TODO [#B] By-client countdown on secrets given
61
** TODO [#B] Fix problem with fsck taking a really long time
367 by Teddy Hogeborn
* init.d-mandos: Bug fix: Correct the LSB header.
62
   Whenever a client successfully gets a secret it could get a
63
   one-time timeout boost to allow for an fsck-incurred delay
413 by Teddy Hogeborn
TODO file changes.
64
** TODO [#A] Delay before client receives key
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
65
   This would give an operator opportunity to cancel the request if
66
   desired.
413 by Teddy Hogeborn
TODO file changes.
67
** TODO [#A] Client manual approval mode
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
68
   A client needs manual approval on the server before it gets the
69
   secret
413 by Teddy Hogeborn
TODO file changes.
70
** TODO [#B] Support RFC 3339 time duration syntax
416.1.1 by Teddy Hogeborn
Initial design on approval system.
71
** More D-Bus methods
72
*** NeedsApproval(50, True) -> timeout, default approve
73
    Default approval is configurable, but True by default
74
    + Approval(True) -> approve sending saved
75
    + Approval(False) -> Close client connection immediately
76
*** NeedsPassword(50) - Timeout, default disapprove
77
    + SetPass(u"gazonk", True) -> Approval, persistent
78
    + Approval(False) -> Close client connection immediately
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
79
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
80
* mandos.xml
81
** [[file:mandos.xml::XXX][Document D-Bus interface]]
413 by Teddy Hogeborn
TODO file changes.
82
   Remove mention of lack of such interface in BUGS section
24.1.143 by Björn Påhlsson
added documentation todo
83
** Add mandos contact info in manual pages
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
84
413 by Teddy Hogeborn
TODO file changes.
85
* TODO [#A] Provide and install /etc/dbus-1/system.d/mandos.conf
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
86
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
87
* mandos-ctl
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
88
*** Handle "no D-Bus server" and/or "no Mandos server found" better
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
89
*** [#B] --dump option
411 by Teddy Hogeborn
More consistent terminology: Clients are no longer "invalid" - they
90
** TODO Support RFC 3339 time duration syntax
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
91
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
92
* TODO mandos-dispatch
93
  Listens for specified D-Bus signals and spawns shell commands with
94
  arguments.
95
375 by Teddy Hogeborn
* TODO: Updated.
96
* mandos-monitor
386 by Teddy Hogeborn
* mandos (DBusObjectWithProperties.Introspect): Add the name
97
** Urwid client data displayer
413 by Teddy Hogeborn
TODO file changes.
98
   Better view of client data in the listing
327 by Teddy Hogeborn
Merge from pipe IPC branch.
99
*** Properties popup
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
100
228 by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network
101
* mandos-keygen
24.1.126 by Björn Påhlsson
small stuff
102
** TODO Loop until passwords match when run interactively
228 by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network
103
** TODO "--secfile" option
104
   Using the "secfile" option instead of "secret"
105
** TODO [#B] "--test" option
106
   For testing decryption before rebooting.
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
107
370 by Teddy Hogeborn
* debian/control (Standards-Version): Updated to "2.8.3".
108
* Makefile
413 by Teddy Hogeborn
TODO file changes.
109
** TODO [#C] Implement DEB_BUILD_OPTIONS
370 by Teddy Hogeborn
* debian/control (Standards-Version): Updated to "2.8.3".
110
   http://www.debian.org/doc/debian-policy/ch-source.html#s-debianrules-options
111
275 by Teddy Hogeborn
* debian/mandos-client.postinst: Converted to Bourne shell. Also
112
* Package
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
113
** /usr/share/initramfs-tools/hooks/mandos
344 by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1".
114
*** TODO [#C] use same file name rules as run-parts(8)
263 by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and
115
*** TODO [#C] Do not install in initrd.img if configured not to.
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
116
    Use "/etc/initramfs-tools/hooksconf.d/mandos"?
263 by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and
117
** TODO [#C] /etc/bash_completion.d/mandos
88 by Teddy Hogeborn
No code or documentation changes.
118
   From XML sources directly?
24.1.30 by Björn Påhlsson
Added more stuff to do
119
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
120

121
#+STARTUP: showall