2
configuration for OpenPGP key dir
3
header files/symbols tally
4
check exit codes of all system calls
6
protocol version header
7
use strsep instead of strtok?
10
header files/symbols tally
11
check exit codes of all system calls
12
change uid to nobody:nogroup
13
other drop privs stuff?
14
pass things in environment, like device name, etc
15
Does cryptsetup already do this?
16
use strsep instead of strtok?
21
protocol version header
22
Run-time communication with server
25
[Mandos-tools/utilities]
4
** TODO [#B] Temporarily lower kernel log level
5
for less printouts during sucessfull boot.
6
klogctl(6, NULL, 0); klogctl(7, NULL, 0);
7
** TODO [#C] IPv4 support
10
** TODO [#B] use scandir(3) instead of readdir(3)
13
** TODO [#B] Log level :bugs:
14
** TODO /etc/mandos/clients.d/*.conf
15
Watch this directory and add/remove/update clients?
16
** TODO config for TXT record
17
** TODO [#B] Run-time communication with server :bugs:
19
See also [[*Mandos-tools]]
20
** Handle non-existing D-Bus server.
21
Also, possibly a "--no-dbus" option?
25
syslogger.setLevel(logging.WARNING)
27
+ [[http://log.ometer.com/2007-05.html][Best D-Bus practices]]
28
** TODO Implement --foreground :bugs:
29
[[info:standards:Option%20Table][Table of Long Options]]
30
** TODO Implement --socket
31
[[info:standards:Option%20Table][Table of Long Options]]
32
** TODO Date+time on console log messages :bugs:
34
** TODO delete hook when clients fall out by timeout
35
This will not be strictly necessary when the D-Bus interface is
39
*** Handle no D-Bus server and/or no Mandos server found better
40
*** [#B] --dump option
41
** TODO Disable client
48
** TODO "--secfile" option
49
Using the "secfile" option instead of "secret"
50
** TODO [#B] "--test" option
51
For testing decryption before rebooting.
54
** /usr/share/initramfs-tools/hooks/mandos
55
*** TODO Do not install in initrd.img if configured not to.
56
Use "/etc/initramfs-tools/conf.d/mandos"? Definitely a debconf
58
** TODO /etc/bash_completion.d/mandos
59
From XML sources directly?