bzr branch
http://bzr.recompile.se/loggerhead/mandos/trunk
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
1 |
-*- org -*- |
2 |
||
54
by Teddy Hogeborn
Merge. |
3 |
* [#A] README file |
44
by Teddy Hogeborn
* ca.pem: Removed. |
4 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
5 |
* plugin-runner |
24.1.52
by Björn Påhlsson
merge + minor adjustments |
6 |
** [#B] Add more comments to code |
7 |
** [#B] Add more if(debug) calls |
|
8 |
** [#B] Seperate more code to function for more readability |
|
9 |
** [#A] Man page: man8/plugin-runner.8mandos |
|
24.1.41
by Björn Påhlsson
updated mandos-client sections and added see also stuff |
10 |
*** EXIT STATUS |
95
by Teddy Hogeborn
* Makefile (MANPOST): Bug fix: corrected patterns. |
11 |
*** ENVIRONMENT |
12 |
Environment is modified according to options and passed to plugins |
|
13 |
*** EXAMPLE |
|
55
by Teddy Hogeborn
* TODO: More notes. |
14 |
Examples of normal usage, debug usage, debugging single or all |
83
by Teddy Hogeborn
* Makefile (MANPOST): Bug fix: do not replace *all* "een" with "en". |
15 |
plugins, etc. |
55
by Teddy Hogeborn
* TODO: More notes. |
16 |
*** FILES |
17 |
*** SECURITY |
|
88
by Teddy Hogeborn
No code or documentation changes. |
18 |
Note the danger of using this program, since you might lock |
19 |
yourself out of your system without any means of entering the root |
|
20 |
file system password. This is, however, very unlikely considering |
|
21 |
the fallback to getpass(3). |
|
55
by Teddy Hogeborn
* TODO: More notes. |
22 |
*** BUGS |
23 |
*** SEE ALSO |
|
82
by Teddy Hogeborn
* mandos-keygen.xml (NOTES): Removed section, since it is |
24 |
Explaining text on what you can read |
47
by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed. |
25 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
26 |
* password-request |
47
by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed. |
27 |
** [#A] Man page: man8/password-request.8mandos |
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
28 |
*** SYNOPSIS |
29 |
Document short options |
|
55
by Teddy Hogeborn
* TODO: More notes. |
30 |
*** DESCRIPTION |
31 |
State that this command is not meant to be invoked directly, but |
|
32 |
is run as a plugin from mandos-client(8) and only run in the |
|
33 |
initrd environment, not the real system. |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
34 |
*** PURPOSE |
35 |
As in mandos.xml |
|
36 |
*** OVERVIEW |
|
37 |
As in mandos.xml |
|
55
by Teddy Hogeborn
* TODO: More notes. |
38 |
*** EXIT STATUS |
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
39 |
*** ENVIRONMENT |
40 |
Note that it does *not* currently use cryptsource or crypttarget. |
|
41 |
*** FILES |
|
42 |
Describe the key files and the key ring files. Also note that |
|
43 |
they should normally have been automatically created. |
|
44 |
*** BUGS |
|
45 |
*** EXAMPLE |
|
55
by Teddy Hogeborn
* TODO: More notes. |
46 |
Examples of normal usage, debug usage, debugging by connecting |
47 |
directly, etc. |
|
48 |
*** SECURITY |
|
49 |
*** SEE ALSO |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
50 |
Update from mandos.xml |
51 |
** [#B] Temporarily lower kernel log level |
|
52 |
for less printouts during sucessfull boot. |
|
44
by Teddy Hogeborn
* ca.pem: Removed. |
53 |
** IPv4 support |
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
54 |
** use strsep instead of strtok? |
73
by Teddy Hogeborn
* Makefile (COVERAGE): Change back to "--coverage". |
55 |
** Do not depend on GnuPG key rings on disk |
56 |
This would mean creating new GnuPG key rings with GPGME by |
|
57 |
importing the key files from scratch on every program start. |
|
88
by Teddy Hogeborn
No code or documentation changes. |
58 |
** Keydir move: /etc/mandos -> /etc/keys/mandos |
59 |
Must create in preinst if not pre-depending on cryptsetup |
|
47
by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed. |
60 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
61 |
* password-prompt |
110
by Teddy Hogeborn
* mandos.xml (EXAMPLE): Replaced all occurences of command name with |
62 |
** [#C] Use getpass(3)? |
53
by Teddy Hogeborn
Merge. |
63 |
Man page says "obsolete", but [[info:libc:getpass][GNU LibC Manual: Reading Passwords]] |
64 |
does not. See also [[http://sources.redhat.com/ml/libc-alpha/2003-05/msg00251.html][Marcus Brinkmann: Re: getpass obsolete?]] and |
|
65 |
[[http://article.gmane.org/gmane.comp.lib.glibc.alpha/4906][Petter Reinholdtsen: Re: getpass obsolete?]], and especially also |
|
66 |
[[http://www.steve.org.uk/Reference/Unix/faq_4.html#SEC48][Unix Programming FAQ 3.1 How can I make my program not echo input?]] |
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
67 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
68 |
* mandos (server) |
53
by Teddy Hogeborn
Merge. |
69 |
** [#A] /etc/init.d/mandos-server :teddy: |
85
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Removed unnecessary 'choice="opt"' from <arg> |
70 |
** [#B] Log level :bugs: |
44
by Teddy Hogeborn
* ca.pem: Removed. |
71 |
** /etc/mandos/clients.d/*.conf |
72 |
Watch this directory and add/remove/update clients?
|
|
73 |
** config for TXT record
|
|
85
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Removed unnecessary 'choice="opt"' from <arg> |
74 |
** [#B] Run-time communication with server :bugs:
|
53
by Teddy Hogeborn
Merge. |
75 |
Probably using D-Bus
|
76 |
See also [[*Mandos-tools]]
|
|
85
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Removed unnecessary 'choice="opt"' from <arg> |
77 |
** Implement --foreground :bugs:
|
47
by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed. |
78 |
[[info:standards:Option%20Table][Table of Long Options]]
|
79 |
** Implement --socket
|
|
80 |
[[info:standards:Option%20Table][Table of Long Options]]
|
|
85
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Removed unnecessary 'choice="opt"' from <arg> |
81 |
** Date+time on console log messages :bugs:
|
64
by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'. |
82 |
Is this the default?
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
83 |
|
84 |
* Mandos-tools/utilities
|
|
85 |
All of this probably using D-Bus
|
|
86 |
** List clients
|
|
53
by Teddy Hogeborn
Merge. |
87 |
** Disable client
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
88 |
** Enable client
|
89 |
||
111
by Teddy Hogeborn
* mandos-clients.conf.xml (ENTITY TIMESTAMP): New. Automatically |
90 |
* Man pages
|
91 |
** Tags
|
|
92 |
Go through all man pages to conform to the style of tags chosen in
|
|
93 |
[[http://svn.debian.org/wsvn/debian-xml-sgml/packages/docbook-xsl/trunk/debian/examples/foo.1.example_manpage.xml?op=file&rev=0&sc=0][foo.1.example_manpage.xml]]. In particular:
|
|
115
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Split <term> tags for the "--help" and |
94 |
*** SYNOPSIS
|
95 |
<arg> with inner <replaceable> and <option> tags
|
|
119
by Teddy Hogeborn
* mandos-clients.conf.xml (SYNOPSIS): Remove line breaks. |
96 |
**** DONE mandos-keygen.xml
|
97 |
**** DONE plugins.d/password-request.xml
|
|
98 |
**** TODO mandos.conf.xml
|
|
99 |
**** TODO mandos.xml
|
|
100 |
**** TODO plugin-runner.xml
|
|
101 |
**** TODO plugins.d/password-prompt.xml
|
|
115
by Teddy Hogeborn
* mandos.xml (SYNOPSIS): Split <term> tags for the "--help" and |
102 |
*** OPTIONS
|
103 |
Separate <term> tags with <option> and <replaceable> tags
|
|
119
by Teddy Hogeborn
* mandos-clients.conf.xml (SYNOPSIS): Remove line breaks. |
104 |
**** DONE mandos-clients.conf.xml
|
105 |
**** TODO mandos-keygen.xml
|
|
106 |
**** DONE mandos.conf.xml
|
|
107 |
**** TODO mandos.xml
|
|
108 |
**** TODO plugin-runner.xml
|
|
109 |
**** TODO plugins.d/password-prompt.xml
|
|
110 |
**** TODO plugins.d/password-request.xml
|
|
111
by Teddy Hogeborn
* mandos-clients.conf.xml (ENTITY TIMESTAMP): New. Automatically |
111 |
** Use xinclude for common sections
|
112 |
Like copyright, authors, etc.
|
|
113 |
||
109
by Teddy Hogeborn
* .bzrignore: New. |
114 |
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
115 |
* Installer
|
88
by Teddy Hogeborn
No code or documentation changes. |
116 |
** Client-side
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
117 |
*** Update initrd.img after installation
|
86
by Teddy Hogeborn
* mandos-keygen.xml: Removed <?xml-stylesheet>. New entity |
118 |
This seems to use some kind of "trigger" system
|
109
by Teddy Hogeborn
* .bzrignore: New. |
119 |
[[file:/usr/share/doc/dpkg/triggers.txt.gz]]
|
120 |
dpkg-trigger(1), deb-triggers(5)
|
|
88
by Teddy Hogeborn
No code or documentation changes. |
121 |
*** Keydir move: /etc/mandos -> /etc/keys/mandos
|
122 |
Must create in preinst if not pre-depending on cryptsetup
|
|
123 |
*** mandos-keygen
|
|
106
by Teddy Hogeborn
* mandos-clients.conf.xml (DESCRIPTION): Do not imply that this is the |
124 |
**** "--passfile" option
|
125 |
Using the "secfile" option instead of "secret"
|
|
97
by Teddy Hogeborn
* mandos-keygen: Bug fix: Recognize new options --subtype and |
126 |
**** [#A] "--test" option
|
127 |
For testing decryption before rebooting.
|
|
88
by Teddy Hogeborn
No code or documentation changes. |
128 |
** Server-side
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
129 |
*** [#A] Create mandos user and group for server
|
130 |
*** [#A] Create /var/run/mandos directory with perm and ownership
|
|
131 |
||
57
by Teddy Hogeborn
* mandos (version): New variable. |
132 |
* [#A] Package
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
133 |
** /usr/share/initramfs-tools/hooks/mandos
|
82
by Teddy Hogeborn
* mandos-keygen.xml (NOTES): Removed section, since it is |
134 |
*** Do not install in initrd.img if configured not to.
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
135 |
Use "/etc/initramfs-tools/conf.d/mandos"? Definitely a debconf
|
136 |
question.
|
|
55
by Teddy Hogeborn
* TODO: More notes. |
137 |
** /etc/bash_completion.d/mandos
|
88
by Teddy Hogeborn
No code or documentation changes. |
138 |
From XML sources directly?
|
61
by Teddy Hogeborn
* mandos (console): Define handler globally. |
139 |
** unperish
|
140 |
** bzr-builddeb
|
|
55
by Teddy Hogeborn
* TODO: More notes. |
141 |
|
24.1.30
by Björn Påhlsson
Added more stuff to do |
142 |
* INSTALL file
|
143 |
||
56
by Teddy Hogeborn
Resolving merge commit. |
144 |
* Web site
|
24.1.30
by Björn Påhlsson
Added more stuff to do |
145 |
|
146 |
* Mailing list
|
|
147 |
||
148 |
* Announce project on news
|
|
56
by Teddy Hogeborn
Resolving merge commit. |
149 |
[[news:comp.os.linux.announce]]
|
24.1.30
by Björn Påhlsson
Added more stuff to do |
150 |
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
151 |
|
152 |
#+STARTUP: showall
|