/mandos/release

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/release
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
1
-*- org -*-
2
54 by Teddy Hogeborn
Merge.
3
* [#A] README file
44 by Teddy Hogeborn
* ca.pem: Removed.
4
54 by Teddy Hogeborn
Merge.
5
* [#A] COPYING file
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
6
  [[file:/usr/share/common-licenses/GPL-3][GPLv3]]
7
8
* Mandos-client
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
9
** [#A] Change syntax for arguments
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
10
** [#A] Man page: man8/mandos-client.8mandos
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
11
*** DESCRIPTION
55 by Teddy Hogeborn
* TODO: More notes.
12
    Describe the plus sign syntax for passing options from crypttab
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
13
*** EXIT STATUS
14
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
15
*** EXAMPLES
16
    Examples of normal usage, debug usage, debugging single or all
17
    plugins, examples of crypttab lines with plus syntax, etc.
18
*** FILES
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
19
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
20
*** SECURITY
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
21
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
22
*** NOTES
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
23
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
24
*** BUGS
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
25
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
26
*** SEE ALSO
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
27
    Explaining test on what you can read
60 by Teddy Hogeborn
* mandos-client.c (main): Cast pid_t to unsigned int before printing.
28
** Use asprintf instead of malloc and strcat?
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
29
** use strsep instead of strtok?
30
** use config file in addition to arguments
31
** pass things in environment, like device name, etc
32
33
* Password-request
34
** [#A] Man page: man8/password-request.8mandos
55 by Teddy Hogeborn
* TODO: More notes.
35
*** DESCRIPTION
36
    Move options to new OPTIONS section.
37
    State that this command is not meant to be invoked directly, but
38
    is run as a plugin from mandos-client(8) and only run in the
39
    initrd environment, not the real system.
40
*** EXIT STATUS
41
    Create this section
42
*** EXAMPLES
43
    Examples of normal usage, debug usage, debugging by connecting
44
    directly, etc.
45
*** FILES
46
    Describe the key files and the key ring files.  Also note that
47
    they should normally have been automatically created.
48
*** DIAGNOSTICS
49
    Create this section
50
*** SECURITY
51
    Create this section
52
*** NOTES
53
    Create this section (if needed)
54
*** BUGS
55
    Create this section
56
*** SEE ALSO
57
    Refer to mandos-client(8mandos) and password-prompt(8mandos)
60 by Teddy Hogeborn
* mandos-client.c (main): Cast pid_t to unsigned int before printing.
58
** Use asprintf instead of malloc and memcpy?
44 by Teddy Hogeborn
* ca.pem: Removed.
59
** IPv4 support
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
60
** use strsep instead of strtok?
44 by Teddy Hogeborn
* ca.pem: Removed.
61
** Do not depend on GPG key rings on disk
62
   This would mean creating new GPG key rings with GPGME by importing
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
63
   the key files from scratch on every program start.
64
65
* Password-prompt
66
** [#A] Man page: man8/password-prompt.8mandos
55 by Teddy Hogeborn
* TODO: More notes.
67
*** DESCRIPTION
68
    Move options to new OPTIONS section.
69
*** EXIT STATUS
70
    Create this section
71
*** EXAMPLES
72
    Examples of normal usage, debug usage, with a prefix, etc.
73
*** DIAGNOSTICS
74
    Create this section
75
*** SECURITY
76
    Create this section
77
    Not much to do here but it is noteworthy to state the danger of
78
    not having a fallback option.
79
*** NOTES
80
    Note that this is more or less a simple getpass(3) wrapper, even
81
    though actual use of getpass(3) is not guaranteed.
82
*** BUGS
83
    Create this section
84
*** SEE ALSO
85
    Refer to mandos-client(8mandos) and password-request(8mandos)
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
86
** Use getpass(3)?
53 by Teddy Hogeborn
Merge.
87
   Man page says "obsolete", but [[info:libc:getpass][GNU LibC Manual: Reading Passwords]]
88
   does not.  See also [[http://sources.redhat.com/ml/libc-alpha/2003-05/msg00251.html][Marcus Brinkmann: Re: getpass obsolete?]] and
89
   [[http://article.gmane.org/gmane.comp.lib.glibc.alpha/4906][Petter Reinholdtsen: Re: getpass obsolete?]], and especially also
90
   [[http://www.steve.org.uk/Reference/Unix/faq_4.html#SEC48][Unix Programming FAQ 3.1 How can I make my program not echo input?]]
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
91
** Replace completely with "/lib/cryptsetup/askpass"?
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
92
55 by Teddy Hogeborn
* TODO: More notes.
93
* Mandos (server)
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
94
** [#A] Command man page: man8/mandos.8
55 by Teddy Hogeborn
* TODO: More notes.
95
*** DESCRIPTION
96
    Move options to new OPTIONS section
97
*** EXIT STATUS
98
    Create this section
99
*** EXAMPLES
100
    Create this section
101
*** FILES
102
    Describe briefly that the server gets global settings from
103
    mandos.conf and clients from clients.conf, but refer to their man
104
    pages for more details.
105
*** DIAGNOSTICS
106
    Create this section
107
*** SECURITY
108
    Create this section
109
*** NOTES
110
    Create this section (if needed)
111
*** BUGS
112
    Create this section
113
*** SEE ALSO
114
    Refer to the client man page
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
115
** [#A] Config file man page: man5/mandos.conf (mandos.conf)
116
** [#A] Config file man page: man5/mandos-clients.conf (clients.conf)
53 by Teddy Hogeborn
Merge.
117
** [#A] /etc/init.d/mandos-server		:teddy:
44 by Teddy Hogeborn
* ca.pem: Removed.
118
** Log level
119
** /etc/mandos/clients.d/*.conf
120
   Watch this directory and add/remove/update clients?
121
** config for TXT record
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
122
** Run-time communication with server
53 by Teddy Hogeborn
Merge.
123
   Probably using D-Bus
124
   See also [[*Mandos-tools]]
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
125
** Implement --foreground
126
   [[info:standards:Option%20Table][Table of Long Options]]
127
** Implement --socket
128
   [[info:standards:Option%20Table][Table of Long Options]]
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
129
** Date+time on console log messages
130
   Is this the default?
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
131
132
* Mandos-tools/utilities
133
  All of this probably using D-Bus
134
** List clients
53 by Teddy Hogeborn
Merge.
135
** Disable client
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
136
** Enable client
137
138
* Installer
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
139
** Client
140
*** DONE [#A] Change initrd.img file to not be publically readable
141
    /usr/share/initramfs-tools/conf-hooks.d/mandos
142
    UMASK=027
143
*** Update initrd.img after installation
144
** Server
145
*** [#A] Create mandos user and group for server
146
*** [#A] Create /var/run/mandos directory with perm and ownership
147
148
** mandos-keygen
149
*** [#A] Command man page: man8/mandos-keygen.8
150
*** [#A] Output cut-and-paste ready snippet for clients.conf.
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
151
57 by Teddy Hogeborn
* mandos (version): New variable.
152
* [#A] Package
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
153
** /usr/share/initramfs-tools/hooks/mandos
154
*** Do not install in initrd.img if configured not to
155
    Use "/etc/initramfs-tools/conf.d/mandos"?  Definitely a debconf
156
    question.
55 by Teddy Hogeborn
* TODO: More notes.
157
** /etc/bash_completion.d/mandos
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
158
*** From xml sources directly?
61 by Teddy Hogeborn
* mandos (console): Define handler globally.
159
** unperish
160
** bzr-builddeb
55 by Teddy Hogeborn
* TODO: More notes.
161
24.1.30 by Björn Påhlsson
Added more stuff to do
162
* INSTALL file
163
56 by Teddy Hogeborn
Resolving merge commit.
164
* Web site
24.1.30 by Björn Påhlsson
Added more stuff to do
165
166
* Mailing list
167
168
* Announce project on news
56 by Teddy Hogeborn
Resolving merge commit.
169
  [[news:comp.os.linux.announce]]
24.1.30 by Björn Påhlsson
Added more stuff to do
170
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
171

172
#+STARTUP: showall