6
[[file:/usr/share/common-licenses/GPL-3][GPLv3]]
9
** [#A] Man page: man8/mandos-client.8mandos
10
** [#B] Fix %d format strings to use [[https://secure.wikimedia.org/wikipedia/en/wiki/Inttypes.h][<inttypes.h>]]
4
** Use argp instead of getopt_long
5
** header files/symbols tally
6
** check exit codes of all system calls
8
** protocol version header
9
** use strsep instead of strtok?
10
** change uid to nobody:nogroup
11
other drop privs stuff?
14
** header files/symbols tally
15
** check exit codes of all system calls
16
** [#C] pass things in environment, like device name, etc
17
Does cryptsetup already do this?
11
18
** use strsep instead of strtok?
12
19
** use config file in addition to arguments
13
** pass things in environment, like device name, etc
16
** [#A] Man page: man8/password-request.8mandos
17
** [#B] Fix %d format strings to use [[https://secure.wikimedia.org/wikipedia/en/wiki/Inttypes.h][<inttypes.h>]]
19
** use strsep instead of strtok?
20
** Do not depend on GPG key rings on disk
21
This would mean creating new GPG key rings with GPGME by importing
22
the key files from scratch on every program start.
25
** [#A] Man page: man8/password-prompt.8mandos
27
Man page says "obsolete", but [[info:libc:getpass][GNU LibC Manual: Reading Passwords]]
28
does not. See also [[http://sources.redhat.com/ml/libc-alpha/2003-05/msg00251.html][Marcus Brinkmann: Re: getpass obsolete?]] and
29
[[http://article.gmane.org/gmane.comp.lib.glibc.alpha/4906][Petter Reinholdtsen: Re: getpass obsolete?]], and especially also
30
[[http://www.steve.org.uk/Reference/Unix/faq_4.html#SEC48][Unix Programming FAQ 3.1 How can I make my program not echo input?]]
33
** [#A] Command man page: man8/mandos.8
34
** [#A] Config file man page: man5/mandos.conf (mandos.conf)
35
** [#A] Config file man page: man5/mandos-clients.conf (clients.conf)
36
** [#A] /etc/init.d/mandos-server :teddy:
38
** /etc/mandos/clients.d/*.conf
39
Watch this directory and add/remove/update clients?
40
** config for TXT record
24
** protocol version header
41
25
** Run-time communication with server
43
See also [[*Mandos-tools]]
44
** Implement --foreground
45
[[info:standards:Option%20Table][Table of Long Options]]
47
[[info:standards:Option%20Table][Table of Long Options]]
49
28
* Mandos-tools/utilities
50
29
All of this probably using D-Bus
56
** [#A] Change initrd.img file to not be publically readable
57
** [#A] Create /etc/initramfs-tools/hooks/mandos
58
[[file:/usr/share/doc/initramfs-tools/examples/example_hook][Example initramfs-tools hook script]]
59
** [#A] Create GPG key ring files in initrd
60
** [#A] Create mandos user and group for server
61
** [#A] Create /var/run/mandos directory with perm and ownership
63
* [[http://en.tldp.org/HOWTO/Software-Release-Practice-HOWTO/][Software Release Practice HOWTO]]