6
** [#A] Change syntax for arguments
7
6
** [#B] Add more comments to code
8
7
** [#B] Add more if(debug) calls
9
8
** [#B] Seperate more code to function for more readability
10
9
** [#A] Man page: man8/plugin-runner.8mandos
12
Describe the plus sign syntax for passing options from crypttab
16
13
Examples of normal usage, debug usage, debugging single or all
17
plugins, examples of crypttab lines with plus syntax, etc.
27
Explaining test on what you can read
28
** Use asprintf instead of malloc and strcat?
29
** Support in configuration file for environment variables
22
Explaining text on what you can read
30
23
** Keydir move: /etc/mandos -> /etc/keys/mandos
31
24
Must create in preinst if not pre-depending on cryptsetup
51
44
Create this section
53
46
Create this section
55
Create this section (if needed)
57
48
Create this section
59
50
Refer to mandos-client(8mandos) and password-prompt(8mandos)
52
Document use of "cryptsource" and "crypttarget".
61
54
** use strsep instead of strtok?
62
55
** Do not depend on GnuPG key rings on disk
67
60
** [#A] Man page: man8/password-prompt.8mandos
68
** Show getenv("cryptsource") and getenv("crypttarget") if set
69
cryptsource will be the device, like "/dev/sda3", and crypttarget
70
will be the device mapper name, like "sda3_crypt".
72
62
Move options to new OPTIONS section.
63
Note that this is more or less a simple getpass(3) wrapper, even
64
though actual use of getpass(3) is not guaranteed.
74
66
Create this section
80
72
Create this section
81
73
Not much to do here but it is noteworthy to state the danger of
82
74
not having a fallback option.
84
Note that this is more or less a simple getpass(3) wrapper, even
85
though actual use of getpass(3) is not guaranteed.
87
76
Create this section
92
81
does not. See also [[http://sources.redhat.com/ml/libc-alpha/2003-05/msg00251.html][Marcus Brinkmann: Re: getpass obsolete?]] and
93
82
[[http://article.gmane.org/gmane.comp.lib.glibc.alpha/4906][Petter Reinholdtsen: Re: getpass obsolete?]], and especially also
94
83
[[http://www.steve.org.uk/Reference/Unix/faq_4.html#SEC48][Unix Programming FAQ 3.1 How can I make my program not echo input?]]
95
** Replace completely with "/lib/cryptsetup/askpass"?
98
** [#A] Command man page: man8/mandos.8
100
Move options to new OPTIONS section
106
Describe briefly that the server gets global settings from
107
mandos.conf and clients from clients.conf, but refer to their man
108
pages for more details.
114
Create this section (if needed)
118
Refer to the client man page
119
86
** [#A] Config file man page: man5/mandos.conf (mandos.conf)
120
87
** [#A] Config file man page: man5/mandos-clients.conf (clients.conf)
121
88
** [#A] /etc/init.d/mandos-server :teddy:
89
** [#B] Log level :bugs:
123
90
** /etc/mandos/clients.d/*.conf
124
91
Watch this directory and add/remove/update clients?
125
92
** config for TXT record
126
** Run-time communication with server
93
** [#B] Run-time communication with server :bugs:
127
94
Probably using D-Bus
128
95
See also [[*Mandos-tools]]
129
** Implement --foreground
96
** Implement --foreground :bugs:
130
97
[[info:standards:Option%20Table][Table of Long Options]]
131
98
** Implement --socket
132
99
[[info:standards:Option%20Table][Table of Long Options]]
133
** Date+time on console log messages
100
** Date+time on console log messages :bugs:
134
101
Is this the default?
136
103
* Mandos-tools/utilities
144
*** DONE [#A] Change initrd.img file to not be publically readable
145
/usr/share/initramfs-tools/conf-hooks.d/mandos
147
111
*** Update initrd.img after installation
112
This seems to use some kind of "trigger" system
149
114
*** [#A] Create mandos user and group for server
150
115
*** [#A] Create /var/run/mandos directory with perm and ownership
153
118
*** [#A] Command man page: man8/mandos-keygen.8
154
124
*** [#A] Output cut-and-paste ready snippet for clients.conf.
157
127
** /usr/share/initramfs-tools/hooks/mandos
158
*** Do not install in initrd.img if configured not to
128
*** Do not install in initrd.img if configured not to.
159
129
Use "/etc/initramfs-tools/conf.d/mandos"? Definitely a debconf
161
131
** /etc/bash_completion.d/mandos
162
*** From xml sources directly?
132
*** From XML sources directly?