/mandos/release

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/release

« back to all changes in this revision

Viewing changes to intro.xml

  • Committer: Teddy Hogeborn
  • Date: 2018-08-15 09:26:02 UTC
  • mto: (237.7.594 trunk)
  • mto: This revision was merged to the branch mainline in revision 368.
  • Revision ID: teddy@recompile.se-20180815092602-xoyb5s6gf8376i7u
mandos-client: Set system clock if necessary

* plugins.d/mandos-client.c (init_gpgme/import_key): If the system
  clock is not set, or set to january 1970, set the system clock to
  the more plausible value that is the mtime of the key file.  This is
  required by GnuPG to be able to import the keys.  (We can't pass the
  --ignore-time-conflict or the --ignore-valid-from options though
  GPGME.)

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
1
<?xml version="1.0" encoding="UTF-8"?>
2
2
<!DOCTYPE refentry PUBLIC "-//OASIS//DTD DocBook XML V4.5//EN"
3
3
"http://www.oasis-open.org/docbook/xml/4.5/docbookx.dtd" [
4
 
<!ENTITY TIMESTAMP "2014-06-22">
 
4
<!ENTITY TIMESTAMP "2018-02-08">
5
5
<!ENTITY % common SYSTEM "common.ent">
6
6
%common;
7
7
]>
32
32
    <copyright>
33
33
      <year>2011</year>
34
34
      <year>2012</year>
 
35
      <year>2013</year>
 
36
      <year>2014</year>
 
37
      <year>2015</year>
 
38
      <year>2016</year>
 
39
      <year>2017</year>
 
40
      <year>2018</year>
35
41
      <holder>Teddy Hogeborn</holder>
36
42
      <holder>Björn Påhlsson</holder>
37
43
    </copyright>
73
79
  <refsect1 id="introduction">
74
80
    <title>INTRODUCTION</title>
75
81
    <para>
 
82
      <!-- This paragraph is a combination and paraphrase of two
 
83
           quotes from the 1995 movie “The Usual Suspects”. -->
76
84
      You know how it is.  You’ve heard of it happening.  The Man
77
85
      comes and takes away your servers, your friends’ servers, the
78
86
      servers of everybody in the same hosting facility. The servers
197
205
      </para>
198
206
    </refsect2>
199
207
    
 
208
    <refsect2 id="sniff">
 
209
      <title>How about sniffing the network traffic and decrypting it
 
210
      later by physically grabbing the Mandos client and using its
 
211
      key?</title>
 
212
      <para>
 
213
        We only use <acronym>PFS</acronym> (Perfect Forward Security)
 
214
        key exchange algorithms in TLS, which protects against this.
 
215
      </para>
 
216
    </refsect2>
 
217
    
200
218
    <refsect2 id="physgrab">
201
219
      <title>Physically grabbing the Mandos server computer?</title>
202
220
      <para>
365
383
    </para>
366
384
  </refsect1>
367
385
  
 
386
  <refsect1 id="bugs">
 
387
    <title>BUGS</title>
 
388
    <xi:include href="bugs.xml"/>
 
389
  </refsect1>
 
390
  
368
391
  <refsect1 id="see_also">
369
392
    <title>SEE ALSO</title>
370
393
    <para>
398
421
    <variablelist>
399
422
      <varlistentry>
400
423
        <term>
401
 
          <ulink url="http://www.recompile.se/mandos">Mandos</ulink>
 
424
          <ulink url="https://www.recompile.se/mandos">Mandos</ulink>
402
425
        </term>
403
426
        <listitem>
404
427
          <para>