7
** [#A] check exit codes of all system calls
8
** [#B] header files/symbols tally
10
** use strsep instead of strtok?
11
** Do not depend on GPG key rings on disk
12
This would mean creating new GPG key rings with GPGME by importing
13
the key files from scratch every time we start the program.
20
** [#A] check exit codes of all system calls
21
** [#B] header files/symbols tally
22
** use strsep instead of strtok?
23
** use config file in addition to arguments
24
** pass things in environment, like device name, etc
28
** [#A] write PID file
29
** [#A] /etc/init.d/mandos-server
31
** /etc/mandos/clients.d/*.conf
4
** TODO [#C] IPv4 support
7
** TODO [#B] use scandir(3) instead of readdir(3)
10
** TODO [#B] Log level :bugs:
11
** TODO /etc/mandos/clients.d/*.conf
32
12
Watch this directory and add/remove/update clients?
33
** config for TXT record
34
** Run-time communication with server
37
* Mandos-tools/utilities
38
All of this probably using D-Bus
44
** Change initrd.img file to not be publically readable
45
** Create GPG key ring files in initrd
13
** TODO config for TXT record
14
** TODO [#B] Run-time communication with server :bugs:
16
See also [[*Mandos-tools]]
20
syslogger.setLevel(logging.WARNING)
22
+ [[http://log.ometer.com/2007-05.html][Best D-Bus practices]]
23
** TODO Implement --foreground :bugs:
24
[[info:standards:Option%20Table][Table of Long Options]]
25
** TODO Implement --socket
26
[[info:standards:Option%20Table][Table of Long Options]]
27
** TODO Date+time on console log messages :bugs:
29
** TODO delete hook when clients fall out by timeout
30
This will not be strictly necessary when the D-Bus interface is
34
** [[file:mandos.xml::XXX][Document D-Bus interface]]
36
* Provide and install /etc/dbus-1/system.d/mandos.conf
39
*** Handle "no D-Bus server" and/or "no Mandos server found" better
40
*** [#B] --dump option
45
** TODO "--secfile" option
46
Using the "secfile" option instead of "secret"
47
** TODO [#B] "--test" option
48
For testing decryption before rebooting.
51
** /usr/share/initramfs-tools/hooks/mandos
52
*** TODO [#C] Do not install in initrd.img if configured not to.
53
Use "/etc/initramfs-tools/conf.d/mandos"? Definitely a debconf
55
** TODO [#C] /etc/bash_completion.d/mandos
56
From XML sources directly?
57
** TODO initramfs-tools-script :test:
58
Do not insert plugin-runner as keyscript if a kernel parameter
59
"mandos=off" is passed.