/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
1
-*- org -*-
2
54 by Teddy Hogeborn
Merge.
3
* [#A] README file
44 by Teddy Hogeborn
* ca.pem: Removed.
4
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
5
* Mandos-client
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
6
** [#A] Change syntax for arguments
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
7
** [#A] Man page: man8/mandos-client.8mandos
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
8
*** DESCRIPTION
55 by Teddy Hogeborn
* TODO: More notes.
9
    Describe the plus sign syntax for passing options from crypttab
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
10
*** EXIT STATUS
11
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
12
*** EXAMPLES
13
    Examples of normal usage, debug usage, debugging single or all
14
    plugins, examples of crypttab lines with plus syntax, etc.
15
*** FILES
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
16
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
17
*** SECURITY
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
18
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
19
*** NOTES
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
20
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
21
*** BUGS
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
22
    Text needed
55 by Teddy Hogeborn
* TODO: More notes.
23
*** SEE ALSO
24.1.41 by Björn Påhlsson
updated mandos-client sections and added see also stuff
24
    Explaining test on what you can read
60 by Teddy Hogeborn
* mandos-client.c (main): Cast pid_t to unsigned int before printing.
25
** Use asprintf instead of malloc and strcat?
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
26
** use strsep instead of strtok?
27
** use config file in addition to arguments
28
** pass things in environment, like device name, etc
29
30
* Password-request
31
** [#A] Man page: man8/password-request.8mandos
24.1.46 by Björn Påhlsson
mandos-client
32
** [#B] Temporarily lower kernel log level
33
   for less printouts during sucessfull boot.
55 by Teddy Hogeborn
* TODO: More notes.
34
*** DESCRIPTION
35
    Move options to new OPTIONS section.
36
    State that this command is not meant to be invoked directly, but
37
    is run as a plugin from mandos-client(8) and only run in the
38
    initrd environment, not the real system.
39
*** EXIT STATUS
40
    Create this section
41
*** EXAMPLES
42
    Examples of normal usage, debug usage, debugging by connecting
43
    directly, etc.
44
*** FILES
45
    Describe the key files and the key ring files.  Also note that
46
    they should normally have been automatically created.
47
*** DIAGNOSTICS
48
    Create this section
49
*** SECURITY
50
    Create this section
51
*** NOTES
52
    Create this section (if needed)
53
*** BUGS
54
    Create this section
55
*** SEE ALSO
56
    Refer to mandos-client(8mandos) and password-prompt(8mandos)
60 by Teddy Hogeborn
* mandos-client.c (main): Cast pid_t to unsigned int before printing.
57
** Use asprintf instead of malloc and memcpy?
44 by Teddy Hogeborn
* ca.pem: Removed.
58
** IPv4 support
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
59
** use strsep instead of strtok?
44 by Teddy Hogeborn
* ca.pem: Removed.
60
** Do not depend on GPG key rings on disk
61
   This would mean creating new GPG key rings with GPGME by importing
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
62
   the key files from scratch on every program start.
63
64
* Password-prompt
65
** [#A] Man page: man8/password-prompt.8mandos
55 by Teddy Hogeborn
* TODO: More notes.
66
*** DESCRIPTION
67
    Move options to new OPTIONS section.
68
*** EXIT STATUS
69
    Create this section
70
*** EXAMPLES
71
    Examples of normal usage, debug usage, with a prefix, etc.
72
*** DIAGNOSTICS
73
    Create this section
74
*** SECURITY
75
    Create this section
76
    Not much to do here but it is noteworthy to state the danger of
77
    not having a fallback option.
78
*** NOTES
79
    Note that this is more or less a simple getpass(3) wrapper, even
80
    though actual use of getpass(3) is not guaranteed.
81
*** BUGS
82
    Create this section
83
*** SEE ALSO
84
    Refer to mandos-client(8mandos) and password-request(8mandos)
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
85
** Use getpass(3)?
53 by Teddy Hogeborn
Merge.
86
   Man page says "obsolete", but [[info:libc:getpass][GNU LibC Manual: Reading Passwords]]
87
   does not.  See also [[http://sources.redhat.com/ml/libc-alpha/2003-05/msg00251.html][Marcus Brinkmann: Re: getpass obsolete?]] and
88
   [[http://article.gmane.org/gmane.comp.lib.glibc.alpha/4906][Petter Reinholdtsen: Re: getpass obsolete?]], and especially also
89
   [[http://www.steve.org.uk/Reference/Unix/faq_4.html#SEC48][Unix Programming FAQ 3.1 How can I make my program not echo input?]]
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
90
** Replace completely with "/lib/cryptsetup/askpass"?
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
91
55 by Teddy Hogeborn
* TODO: More notes.
92
* Mandos (server)
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
93
** [#A] Command man page: man8/mandos.8
55 by Teddy Hogeborn
* TODO: More notes.
94
*** DESCRIPTION
95
    Move options to new OPTIONS section
96
*** EXIT STATUS
97
    Create this section
98
*** EXAMPLES
99
    Create this section
100
*** FILES
101
    Describe briefly that the server gets global settings from
102
    mandos.conf and clients from clients.conf, but refer to their man
103
    pages for more details.
104
*** DIAGNOSTICS
105
    Create this section
106
*** SECURITY
107
    Create this section
108
*** NOTES
109
    Create this section (if needed)
110
*** BUGS
111
    Create this section
112
*** SEE ALSO
113
    Refer to the client man page
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
114
** [#A] Config file man page: man5/mandos.conf (mandos.conf)
115
** [#A] Config file man page: man5/mandos-clients.conf (clients.conf)
53 by Teddy Hogeborn
Merge.
116
** [#A] /etc/init.d/mandos-server		:teddy:
44 by Teddy Hogeborn
* ca.pem: Removed.
117
** Log level
118
** /etc/mandos/clients.d/*.conf
119
   Watch this directory and add/remove/update clients?
120
** config for TXT record
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
121
** Run-time communication with server
53 by Teddy Hogeborn
Merge.
122
   Probably using D-Bus
123
   See also [[*Mandos-tools]]
47 by Teddy Hogeborn
* plugbasedclient.c: Renamed to "mandos-client.c". All users changed.
124
** Implement --foreground
125
   [[info:standards:Option%20Table][Table of Long Options]]
126
** Implement --socket
127
   [[info:standards:Option%20Table][Table of Long Options]]
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
128
** Date+time on console log messages
129
   Is this the default?
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
130
131
* Mandos-tools/utilities
132
  All of this probably using D-Bus
133
** List clients
53 by Teddy Hogeborn
Merge.
134
** Disable client
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
135
** Enable client
136
137
* Installer
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
138
** Client
139
*** DONE [#A] Change initrd.img file to not be publically readable
140
    /usr/share/initramfs-tools/conf-hooks.d/mandos
141
    UMASK=027
142
*** Update initrd.img after installation
143
** Server
144
*** [#A] Create mandos user and group for server
145
*** [#A] Create /var/run/mandos directory with perm and ownership
146
147
** mandos-keygen
148
*** [#A] Command man page: man8/mandos-keygen.8
149
*** [#A] Output cut-and-paste ready snippet for clients.conf.
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
150
57 by Teddy Hogeborn
* mandos (version): New variable.
151
* [#A] Package
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
152
** /usr/share/initramfs-tools/hooks/mandos
153
*** Do not install in initrd.img if configured not to
154
    Use "/etc/initramfs-tools/conf.d/mandos"?  Definitely a debconf
155
    question.
55 by Teddy Hogeborn
* TODO: More notes.
156
** /etc/bash_completion.d/mandos
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
157
*** From xml sources directly?
61 by Teddy Hogeborn
* mandos (console): Define handler globally.
158
** unperish
159
** bzr-builddeb
55 by Teddy Hogeborn
* TODO: More notes.
160
24.1.30 by Björn Påhlsson
Added more stuff to do
161
* INSTALL file
162
56 by Teddy Hogeborn
Resolving merge commit.
163
* Web site
24.1.30 by Björn Påhlsson
Added more stuff to do
164
165
* Mailing list
166
167
* Announce project on news
56 by Teddy Hogeborn
Resolving merge commit.
168
  [[news:comp.os.linux.announce]]
24.1.30 by Björn Påhlsson
Added more stuff to do
169
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
170

171
#+STARTUP: showall