/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
1
-*- org -*-
2
171 by Teddy Hogeborn
Renamed "password-request" to "mandos-client".
3
* mandos-client
355 by Teddy Hogeborn
* mandos: White-space fixes only.
4
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
5
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
6
** TODO use error() instead of perror()
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
7
** TODO [#B] Retry a server which has a non-definite reply:
363 by Teddy Hogeborn
* plugin-runner.c: Minor stylistic changes.
8
*** A closed connection during the TLS handshake
9
*** A TCP timeout
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
10
** TODO [#B] Use capabilities instead of seteuid().
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
11
** TODO use EX_* from <sysexits.h>
355 by Teddy Hogeborn
* mandos: White-space fixes only.
12
13
* splashy
14
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
15
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
16
** TODO use error() instead of perror()
355 by Teddy Hogeborn
* mandos: White-space fixes only.
17
18
* usplash
19
** TODO [#B] use scandir(3) instead of readdir(3)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
20
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
390 by Teddy Hogeborn
* plugins.d/askpass-fifo.c: Do close(STDOUT_FILENO) before exiting to
21
** TODO use error() instead of perror()
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
22
** TODO use EX_* from <sysexits.h>
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
23
24
* askpass-fifo
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
25
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
390 by Teddy Hogeborn
* plugins.d/askpass-fifo.c: Do close(STDOUT_FILENO) before exiting to
26
** TODO use error() instead of perror()
365 by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid().
27
** TODO [#B] Drop privileges after opening FIFO.
358 by Teddy Hogeborn
* plugins.d/mandos-client.c (start_mandos_communication): Check
28
29
* password-prompt
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
30
** TODO [#B] Prefix all debug output with "Mandos plugin " + program_invocation_short_name
390 by Teddy Hogeborn
* plugins.d/askpass-fifo.c: Do close(STDOUT_FILENO) before exiting to
31
** TODO use error() instead of perror()
391 by Teddy Hogeborn
* plugins.d/password-prompt.c: Use exit codes from <sysexits.h>. Do
32
** TODO lock stdin (with flock()?)
355 by Teddy Hogeborn
* mandos: White-space fixes only.
33
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
34
* TODO passdev
35
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
36
* plugin-runner
37
** TODO [#B] use scandir(3) instead of readdir(3)
344 by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1".
38
** TODO [#C] use same file name rules as run-parts(8)
389 by Teddy Hogeborn
* plugins.d/splashy.c: Use exit codes from <sysexits.h>.
39
** TODO use EX_* from <sysexits.h>
40
** TODO use error() instead of perror()
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
41
87 by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d".
42
* mandos (server)
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
43
** TODO [#B] Log level				:BUGS:
182 by Teddy Hogeborn
* Makefile (install): Use "install-client-nokey".
44
** TODO /etc/mandos/clients.d/*.conf
44 by Teddy Hogeborn
* ca.pem: Removed.
45
   Watch this directory and add/remove/update clients?
182 by Teddy Hogeborn
* Makefile (install): Use "install-client-nokey".
46
** TODO config for TXT record
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
47
** TODO [#B] Run-time communication with server :BUGS:
53 by Teddy Hogeborn
Merge.
48
   Probably using D-Bus
237.1.1 by Teddy Hogeborn
First steps of a D-Bus interface to the server.
49
*** Client class
50
*** Main server
237.1.2 by Teddy Hogeborn
Further steps towards a D-Bus server interface, plus minor syntax
51
    + SetLogLevel
237.1.1 by Teddy Hogeborn
First steps of a D-Bus interface to the server.
52
      syslogger.setLevel(logging.WARNING)
237.1.2 by Teddy Hogeborn
Further steps towards a D-Bus server interface, plus minor syntax
53
    + [[http://log.ometer.com/2007-05.html][Best D-Bus practices]]
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
54
** TODO Implement --foreground			:BUGS:
182 by Teddy Hogeborn
* Makefile (install): Use "install-client-nokey".
55
   [[info:standards:Option%20Table][Table of Long Options]]
56
** TODO Implement --socket
57
   [[info:standards:Option%20Table][Table of Long Options]]
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
58
** TODO Date+time on console log messages	:BUGS:
64 by Teddy Hogeborn
* mandos-client.c (print_out_password): Strip trailing '\n'.
59
   Is this the default?
333 by Teddy Hogeborn
Minor code cleanup; one minor bug fix.
60
** TODO DBusServiceObjectUsingSuper
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
61
** TODO Global enable/disable flag
62
** TODO By-client countdown on secrets given
63
** TODO Fix problem with fsck taking a really long time
367 by Teddy Hogeborn
* init.d-mandos: Bug fix: Correct the LSB header.
64
   Whenever a client successfully gets a secret it could get a
65
   one-time timeout boost to allow for an fsck-incurred delay
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
66
** TODO Delay before client receives key
67
   This would give an operator opportunity to cancel the request if
68
   desired.
69
** TODO Client manual approval mode
70
   A client needs manual approval on the server before it gets the
71
   secret
72
** TODO Persistent state
73
   /var/lib/mandos/*
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
74
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
75
* mandos.xml
76
** [[file:mandos.xml::XXX][Document D-Bus interface]]
77
78
* Provide and install /etc/dbus-1/system.d/mandos.conf
79
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
80
* mandos-ctl
243 by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a
81
*** Handle "no D-Bus server" and/or "no Mandos server found" better
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
82
*** [#B] --dump option
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
83
377 by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning.
84
* TODO mandos-dispatch
85
  Listens for specified D-Bus signals and spawns shell commands with
86
  arguments.
87
375 by Teddy Hogeborn
* TODO: Updated.
88
* mandos-monitor
386 by Teddy Hogeborn
* mandos (DBusObjectWithProperties.Introspect): Add the name
89
** D-Bus main loop w/ signal receiver
90
** Urwid client data displayer
91
*** Urwid scaffolding
327 by Teddy Hogeborn
Merge from pipe IPC branch.
92
*** Client Widgets
93
*** Properties popup
240 by Teddy Hogeborn
Merge "mandos-list" from belorn.
94
228 by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network
95
* mandos-keygen
24.1.126 by Björn Påhlsson
small stuff
96
** TODO Loop until passwords match when run interactively
228 by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network
97
** TODO "--secfile" option
98
   Using the "secfile" option instead of "secret"
99
** TODO [#B] "--test" option
100
   For testing decryption before rebooting.
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
101
370 by Teddy Hogeborn
* debian/control (Standards-Version): Updated to "2.8.3".
102
* Makefile
103
** Implement DEB_BUILD_OPTIONS
104
   http://www.debian.org/doc/debian-policy/ch-source.html#s-debianrules-options
105
275 by Teddy Hogeborn
* debian/mandos-client.postinst: Converted to Bourne shell. Also
106
* Package
67 by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on
107
** /usr/share/initramfs-tools/hooks/mandos
344 by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1".
108
*** TODO [#C] use same file name rules as run-parts(8)
263 by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and
109
*** TODO [#C] Do not install in initrd.img if configured not to.
308 by Teddy Hogeborn
* plugin-runner.c: Comment change.
110
    Use "/etc/initramfs-tools/hooksconf.d/mandos"?
263 by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and
111
** TODO [#C] /etc/bash_completion.d/mandos
88 by Teddy Hogeborn
No code or documentation changes.
112
   From XML sources directly?
24.1.30 by Björn Påhlsson
Added more stuff to do
113
36 by Teddy Hogeborn
* TODO: Converted to org-mode style
114

115
#+STARTUP: showall