bzr branch
http://bzr.recompile.se/loggerhead/mandos/release
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
1 |
-*- org -*- |
2 |
||
237.7.162
by Teddy Hogeborn
* mandos: Comment changes. |
3 |
* Testing |
4 |
** python-nemu |
|
5 |
||
237.7.10
by Teddy Hogeborn
* plugins.d/plymouth.c: Fixed comment to "Plymouth" instead of "Usplash". |
6 |
* mandos-applet |
7 |
||
171
by Teddy Hogeborn
Renamed "password-request" to "mandos-client". |
8 |
* mandos-client |
237.7.337
by Teddy Hogeborn
* initramfs-tools-hook: Don't try to chmod symlinks. |
9 |
** TODO A --server option which only adds to the server list. |
10 |
(Unlike --connect, which implicitly disables zeroconf.) |
|
237.2.128
by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid(). |
11 |
** TODO [#B] Use capabilities instead of seteuid(). |
237.7.287
by Teddy Hogeborn
mandos (Client.config_parser): Move comment to correct place. |
12 |
https://forums.grsecurity.net/viewtopic.php?f=7&t=2522 |
237.7.32
by Teddy Hogeborn
* Makefile (plugins.d/mandos-client): Bug fix: Put $^ before all |
13 |
** TODO [#B] Use getaddrinfo(hints=AI_NUMERICHOST) instead of inet_pton() |
237.7.150
by Teddy Hogeborn
* plugins.d/mandos-client (mandos_context): Moved to inside "main()". |
14 |
** TODO [#C] Make start_mandos_communication() take "struct server". |
237.7.282
by Teddy Hogeborn
* mandos.service ([Unit]/Documentation): New. |
15 |
** TODO [#C] --interfaces=regex,eth*,noregex (bridge-utils-interfaces(5)) |
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
16 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.2.118
by Teddy Hogeborn
* mandos: White-space fixes only. |
17 |
|
18 |
* splashy |
|
19 |
** TODO [#B] use scandir(3) instead of readdir(3) |
|
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
20 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.2.118
by Teddy Hogeborn
* mandos: White-space fixes only. |
21 |
|
237.7.60
by Björn Påhlsson
usplash is deprecated |
22 |
* usplash (Deprecated) |
237.7.309
by Teddy Hogeborn
mandos.service: Use Type=dbus (implicitly). |
23 |
** TODO [#B] Make it work again |
237.2.118
by Teddy Hogeborn
* mandos: White-space fixes only. |
24 |
** TODO [#B] use scandir(3) instead of readdir(3) |
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
25 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.2.128
by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid(). |
26 |
|
27 |
* askpass-fifo |
|
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
28 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.2.121
by Teddy Hogeborn
* plugins.d/mandos-client.c (start_mandos_communication): Check |
29 |
|
30 |
* password-prompt |
|
237.2.176
by Teddy Hogeborn
TODO file changes. |
31 |
** TODO [#B] lock stdin (with flock()?) |
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
32 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.7.32
by Teddy Hogeborn
* Makefile (plugins.d/mandos-client): Bug fix: Put $^ before all |
33 |
|
34 |
* plymouth |
|
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
35 |
** TODO [#A] Detect partial writes to stdout and exit with EX_TEMPFAIL |
237.2.118
by Teddy Hogeborn
* mandos: White-space fixes only. |
36 |
|
237.2.176
by Teddy Hogeborn
TODO file changes. |
37 |
* TODO [#B] passdev |
237.2.140
by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning. |
38 |
|
237.2.3
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
39 |
* plugin-runner |
24.1.174
by Björn Påhlsson
* Makefile (CFLAGS): Added "-lrt" to include real time library. |
40 |
** TODO handle printing for errors for plugins |
237.7.154
by Teddy Hogeborn
* mandos: New "--foreground" option. |
41 |
*** Hook up stderr of plugins, buffer them, and prepend "Mandos Plugin [plugin name]" |
237.2.107
by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1". |
42 |
** TODO [#C] use same file name rules as run-parts(8) |
24.1.145
by Björn Påhlsson
todo |
43 |
** kernel command line option for debug info |
237.7.414
by Teddy Hogeborn
mandos-client: Bug fix: flush stdout to detect write errors. |
44 |
** TODO [#A] Restart plugins which exit with EX_TEMPFAIL |
237.2.3
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
45 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
46 |
* mandos (server) |
237.7.295
by Teddy Hogeborn
mandos-keygen: Bug fix: Only use one SSH key from ssh-keyscan |
47 |
** TODO [#B] --notify-command |
48 |
This would allow the mandos.service to use |
|
237.7.385
by Teddy Hogeborn
Server: Make persistent state directory mode u=rwx,go= |
49 |
--notify-command="systemd-notify --pid --ready" |
237.7.394
by Teddy Hogeborn
debian/control: Update Standards-Version to 3.9.8 |
50 |
** TODO [#B] python-systemd |
51 |
*** import systemd.daemon; systemd.daemon.notify() |
|
237.2.176
by Teddy Hogeborn
TODO file changes. |
52 |
** TODO [#B] Log level :BUGS: |
53 |
*** TODO /etc/mandos/clients.d/*.conf |
|
54 |
Watch this directory and add/remove/update clients? |
|
55 |
** TODO [#C] config for TXT record |
|
237.15.11
by Björn Påhlsson
todo updates |
56 |
** TODO Log level dbus option |
57 |
SetLogLevel D-Bus call |
|
237.2.176
by Teddy Hogeborn
TODO file changes. |
58 |
** TODO [#C] DBusServiceObjectUsingSuper |
59 |
** TODO [#B] Global enable/disable flag |
|
237.15.11
by Björn Påhlsson
todo updates |
60 |
** TODO [#B] By-client countdown on number of secrets given |
237.7.132
by Teddy Hogeborn
* mandos (Client.runtime_expansions): Add "expires" and (bug fix) |
61 |
** D-Bus Client method NeedsPassword(50) - Timeout, default disapprove |
237.5.1
by Teddy Hogeborn
Initial design on approval system. |
62 |
+ SetPass(u"gazonk", True) -> Approval, persistent |
237.2.181
by teddy at bsnet
* TODO: Clarifications. |
63 |
+ Approve(False) -> Close client connection immediately |
237.5.2
by Teddy Hogeborn
* mandos (ClientHandler.handle): Set up the GnuTLS session object |
64 |
** TODO [#C] python-parsedatetime |
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
65 |
** TODO Separate logging logic to own object |
237.7.307
by Teddy Hogeborn
Merge change to add local route when network is "unreachable". |
66 |
** TODO [#B] Limit approval_delay to max gnutls/tls timeout value |
24.1.164
by Björn Påhlsson
merge |
67 |
** TODO [#B] break the wait on approval_delay if connection dies |
237.2.201
by Teddy Hogeborn
* mandos (Client.runtime_expansions): New attribute containing the |
68 |
** TODO Generate Client.runtime_expansions from client options + extra |
69 |
** TODO Allow %%(checker)s as a runtime expansion |
|
237.16.16
by teddy at bsnet
* network-hooks.d/bridge: Use "/usr/sbin/brctl" explicitly. |
70 |
** TODO D-Bus AddClient() method on server object |
237.7.159
by Teddy Hogeborn
* mandos (Client.start_checker): Add comment. Break long line. |
71 |
** TODO Use org.freedesktop.DBus.Method.NoReply annotation on async methods. :2: |
237.7.94
by Teddy Hogeborn
* debian/rules (binary-common): Exclude network-hooks.d from |
72 |
** TODO Save state periodically to recover better from hard shutdowns |
237.7.104
by Teddy Hogeborn
* DBUS-API (se.recompile.Mandos.Client.LastCheckerStatus): New |
73 |
** TODO CheckerCompleted method, deprecate CheckedOK |
237.7.111
by Teddy Hogeborn
* network-hooks.d/bridge: Move "start" and "stop" commands to separate |
74 |
** TODO Secret Service API? |
237.7.416
by Teddy Hogeborn
Change all http:// URLs to https:// wherever possible. |
75 |
https://standards.freedesktop.org/secret-service/ |
237.7.280
by Teddy Hogeborn
Emit D-Bus "org.freedesktop.DBus.Properties.PropertiesChanged" signal. |
76 |
** TODO Remove D-Bus interfaces with old domain name :2: |
237.7.368
by Teddy Hogeborn
Rename "gobject" to "GObject"; prefer the new python-gi |
77 |
** TODO Remove old string_to_delta format :2: |
237.7.256
by Teddy Hogeborn
mandos-keygen: Generate "checker" option to use SSH fingerprints. |
78 |
** TODO http://0pointer.de/blog/projects/stateless.html |
79 |
*** File in /usr/lib/sysusers.d to create user+group "_mandos" |
|
80 |
** TODO Error handling on error parsing config files |
|
81 |
** TODO init.d script error handling |
|
237.7.368
by Teddy Hogeborn
Rename "gobject" to "GObject"; prefer the new python-gi |
82 |
** TODO D-Bus server properties; address, port, interface, etc. :2: |
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
83 |
|
237.2.71
by Teddy Hogeborn
* plugin-runner.c: Comment change. |
84 |
* mandos-ctl |
237.7.368
by Teddy Hogeborn
Rename "gobject" to "GObject"; prefer the new python-gi |
85 |
** TODO Remove old string_to_delta format :2: |
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
86 |
|
237.2.140
by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning. |
87 |
* TODO mandos-dispatch |
88 |
Listens for specified D-Bus signals and spawns shell commands with |
|
89 |
arguments. |
|
90 |
||
237.2.138
by Teddy Hogeborn
* TODO: Updated. |
91 |
* mandos-monitor |
237.7.369
by Teddy Hogeborn
Add bug reporting information to manual pages |
92 |
** TODO --servicename :BUGS: |
24.1.174
by Björn Påhlsson
* Makefile (CFLAGS): Added "-lrt" to include real time library. |
93 |
** TODO help should be toggleable |
237.2.149
by Teddy Hogeborn
* mandos (DBusObjectWithProperties.Introspect): Add the name |
94 |
** Urwid client data displayer |
237.2.176
by Teddy Hogeborn
TODO file changes. |
95 |
Better view of client data in the listing |
237.2.90
by Teddy Hogeborn
Merge from pipe IPC branch. |
96 |
*** Properties popup |
237.7.85
by Björn Påhlsson
nicer stacktrace when mandos-monitor fail during startup |
97 |
** Print a nice "We are sorry" message, save stack trace to log. |
237.2.3
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
98 |
|
228
by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network |
99 |
* mandos-keygen |
100 |
** TODO "--secfile" option |
|
101 |
Using the "secfile" option instead of "secret" |
|
102 |
** TODO [#B] "--test" option |
|
103 |
For testing decryption before rebooting. |
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
104 |
|
237.2.38
by Teddy Hogeborn
* debian/mandos-client.postinst: Converted to Bourne shell. Also |
105 |
* Package |
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
106 |
** /usr/share/initramfs-tools/hooks/mandos |
237.2.107
by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1". |
107 |
*** TODO [#C] use same file name rules as run-parts(8) |
237.2.26
by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and |
108 |
*** TODO [#C] Do not install in initrd.img if configured not to. |
237.2.71
by Teddy Hogeborn
* plugin-runner.c: Comment change. |
109 |
Use "/etc/initramfs-tools/hooksconf.d/mandos"? |
237.7.306
by Teddy Hogeborn
plugin-runner.xml (EXAMPLE): Use the /usr/lib/<arch> directory. |
110 |
** TODO [#C] $(pkg-config --variable=completionsdir bash-completion) |
88
by Teddy Hogeborn
No code or documentation changes. |
111 |
From XML sources directly? |
24.1.30
by Björn Påhlsson
Added more stuff to do |
112 |
|
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
113 |
* Side Stuff |
237.11.8
by Teddy Hogeborn
* mandos-ctl: Update copyright year to 2011. |
114 |
** TODO Locate which package moves the other bin/sh when busybox is deactivated |
115 |
** TODO contact owner of package, and ask them to have that shell static in position regardless of busybox |
|
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
116 |
|
237.7.368
by Teddy Hogeborn
Rename "gobject" to "GObject"; prefer the new python-gi |
117 |
* [[http://www.undeadly.org/cgi?action=article&sid=20110530221728][OpenBSD]] |
118 |
||
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
119 |
|
120 |
#+STARTUP: showall |