3
* Use _attribute_((nonnull)) wherever possible.
5
* [[http://www.undeadly.org/cgi?action=article&sid=20110530221728][OpenBSD]]
10
** TODO [#B] Use capabilities instead of seteuid().
11
** TODO [#B] Use struct sockaddr_storage instead of a union
12
** TODO [#B] Use getaddrinfo(hints=AI_NUMERICHOST) instead of inet_pton()
13
** TODO [#B] Use getnameinfo(serv=NULL, NI_NUMERICHOST) instead of inet_ntop()
14
** TODO [#B] Prefer /run/tmp over /tmp, if it exists
17
** TODO [#B] use scandir(3) instead of readdir(3)
20
** TODO [#A] Make it work again
21
** TODO [#B] use scandir(3) instead of readdir(3)
22
** TODO Use [[info:libc:Argz%20Functions][argz_extract]]
25
** TODO [#B] Drop privileges after opening FIFO.
8
** [#B] Temporarily lower kernel log level
9
for less printouts during sucessfull boot.
11
** use strsep instead of strtok?
12
** Do not depend on GnuPG key rings on disk
13
This would mean creating new GnuPG key rings with GPGME by
14
importing the key files from scratch on every program start.
15
** Keydir move: /etc/mandos -> /etc/keys/mandos
16
Must create in preinst if not pre-depending on cryptsetup
28
** TODO [#B] lock stdin (with flock()?)
35
** TODO handle printing for errors for plugins
36
*** Hook up stderr of plugins, buffer them, and prepend mandos pluig [plugin name]
37
** TODO [#B] use scandir(3) instead of readdir(3)
38
** TODO [#C] use same file name rules as run-parts(8)
39
** kernel command line option for debug info
40
** TODO [#B] Use openat()
43
** TODO [#B] Log level :BUGS:
44
** TODO Persistent state :BUGS:
46
*** TODO /etc/mandos/clients.d/*.conf
47
Watch this directory and add/remove/update clients?
48
** TODO [#C] config for TXT record
49
** TODO Log level option
50
syslogger.setLevel(logging.WARNING)
51
+ SetLogLevel D-Bus call
52
** TODO Implement --foreground :BUGS:
53
[[info:standards:Option%20Table][Table of Long Options]]
54
** TODO Implement --socket
55
[[info:standards:Option%20Table][Table of Long Options]]
56
** TODO Date+time on console log messages :BUGS:
21
** [#A] /etc/init.d/mandos-server :teddy:
22
** [#B] Log level :bugs:
23
** /etc/mandos/clients.d/*.conf
24
Watch this directory and add/remove/update clients?
25
** config for TXT record
26
** [#B] Run-time communication with server :bugs:
28
See also [[*Mandos-tools]]
29
** Implement --foreground :bugs:
30
[[info:standards:Option%20Table][Table of Long Options]]
32
[[info:standards:Option%20Table][Table of Long Options]]
33
** Date+time on console log messages :bugs:
57
34
Is this the default?
58
** TODO [#C] DBusServiceObjectUsingSuper
59
** TODO [#B] Global enable/disable flag
60
** TODO [#B] By-client countdown on secrets given
61
** TODO [#B] Support RFC 3339 time duration syntax
63
*** NeedsPassword(50) - Timeout, default disapprove
64
+ SetPass(u"gazonk", True) -> Approval, persistent
65
+ Approve(False) -> Close client connection immediately
66
** TODO [#C] python-parsedatetime
67
** TODO [#C] systemd/launchd
68
http://0pointer.de/blog/projects/systemd.html
69
** TODO Separate logging logic to own object
70
** TODO make clients to a dict!
71
** TODO [#A] Limit approval_delay to max gnutls/tls timeout value
72
** TODO [#B] break the wait on approval_delay if connection dies
73
** TODO Generate Client.runtime_expansions from client options + extra
74
** TODO Allow %%(checker)s as a runtime expansion
75
** TODO Use python-tlslite?
78
** Add mandos contact info in manual pages
81
*** Handle "no D-Bus server" and/or "no Mandos server found" better
82
*** [#B] --dump option
83
** TODO Support RFC 3339 time duration syntax
85
* TODO mandos-dispatch
86
Listens for specified D-Bus signals and spawns shell commands with
90
** TODO help should be toggleable
91
** Urwid client data displayer
92
Better view of client data in the listing
94
** Nicer crashes. Stack traces Messes up shell.
95
*** Print a nice "We are sorry" message, save stack trace to log.
96
** Show timeout countdown for approval
99
** TODO "--secfile" option
100
Using the "secfile" option instead of "secret"
101
** TODO [#B] "--test" option
102
For testing decryption before rebooting.
105
** TODO [#C] Implement DEB_BUILD_OPTIONS
106
http://www.debian.org/doc/debian-policy/ch-source.html#s-debianrules-options
36
* Mandos-tools/utilities
37
All of this probably using D-Bus
44
** Use xinclude for common sections
50
*** Update initrd.img after installation
51
This seems to use some kind of "trigger" system
52
[[file:/usr/share/doc/dpkg/triggers.txt.gz]]
53
dpkg-trigger(1), deb-triggers(5)
54
*** Keydir move: /etc/mandos -> /etc/keys/mandos
55
Must create in preinst if not pre-depending on cryptsetup
57
**** "--passfile" option
58
Using the "secfile" option instead of "secret"
59
**** [#A] "--test" option
60
For testing decryption before rebooting.
62
*** [#A] Create mandos user and group for server
63
*** [#A] Create /var/run/mandos directory with perm and ownership
109
66
** /usr/share/initramfs-tools/hooks/mandos
110
*** TODO [#C] use same file name rules as run-parts(8)
111
*** TODO [#C] Do not install in initrd.img if configured not to.
112
Use "/etc/initramfs-tools/hooksconf.d/mandos"?
113
** TODO [#C] /etc/bash_completion.d/mandos
67
*** Do not install in initrd.img if configured not to.
68
Use "/etc/initramfs-tools/conf.d/mandos"? Definitely a debconf
70
** /etc/bash_completion.d/mandos
114
71
From XML sources directly?
117
** TODO Locate which packet move the other bin/sh when busy box is deactivated
118
** TODO contact owner of packet, and ask them to have that shell static in position regardless of busybox
81
* Announce project on news
82
[[news:comp.os.linux.announce]]
121
85
#+STARTUP: showall