bzr branch
http://bzr.recompile.se/loggerhead/mandos/trunk
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
1 |
-*- org -*- |
2 |
||
418
by teddy at bsnet
* TODO: Clarifications. |
3 |
* Use _attribute_((nonnull)) wherever possible. |
24.1.155
by Björn Påhlsson
mandos server: Added debuglevel that adjust at what level information |
4 |
|
501
by Teddy Hogeborn
* mandos-clients.conf.xml (OPTIONS/timeout): No longer used when |
5 |
* [[http://www.undeadly.org/cgi?action=article&sid=20110530221728][OpenBSD]] |
6 |
||
462
by Teddy Hogeborn
* plugins.d/plymouth.c: Fixed comment to "Plymouth" instead of "Usplash". |
7 |
* mandos-applet |
8 |
||
171
by Teddy Hogeborn
Renamed "password-request" to "mandos-client". |
9 |
* mandos-client |
365
by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid(). |
10 |
** TODO [#B] Use capabilities instead of seteuid(). |
484
by Teddy Hogeborn
* Makefile (plugins.d/mandos-client): Bug fix: Put $^ before all |
11 |
** TODO [#B] Use struct sockaddr_storage instead of a union |
12 |
** TODO [#B] Use getaddrinfo(hints=AI_NUMERICHOST) instead of inet_pton() |
|
13 |
** TODO [#B] Use getnameinfo(serv=NULL, NI_NUMERICHOST) instead of inet_ntop() |
|
494
by Teddy Hogeborn
* mandos-keygen: Loop until passwords match when run interactively. |
14 |
** TODO [#B] Prefer /run/tmp over /tmp, if it exists |
355
by Teddy Hogeborn
* mandos: White-space fixes only. |
15 |
|
16 |
* splashy |
|
17 |
** TODO [#B] use scandir(3) instead of readdir(3) |
|
18 |
||
512
by Björn Påhlsson
usplash is deprecated |
19 |
* usplash (Deprecated) |
414
by Teddy Hogeborn
Bug fix: mandos-client needs GnuPG but lacked a dependency on it. The |
20 |
** TODO [#A] Make it work again |
355
by Teddy Hogeborn
* mandos: White-space fixes only. |
21 |
** TODO [#B] use scandir(3) instead of readdir(3) |
24.1.155
by Björn Påhlsson
mandos server: Added debuglevel that adjust at what level information |
22 |
** TODO Use [[info:libc:Argz%20Functions][argz_extract]] |
365
by Teddy Hogeborn
* plugins.d/mandos-client.c (main): Bug fix: Check result of setgid(). |
23 |
|
24 |
* askpass-fifo |
|
25 |
** TODO [#B] Drop privileges after opening FIFO. |
|
358
by Teddy Hogeborn
* plugins.d/mandos-client.c (start_mandos_communication): Check |
26 |
|
27 |
* password-prompt |
|
413
by Teddy Hogeborn
TODO file changes. |
28 |
** TODO [#B] lock stdin (with flock()?) |
484
by Teddy Hogeborn
* Makefile (plugins.d/mandos-client): Bug fix: Put $^ before all |
29 |
|
30 |
* plymouth |
|
355
by Teddy Hogeborn
* mandos: White-space fixes only. |
31 |
|
413
by Teddy Hogeborn
TODO file changes. |
32 |
* TODO [#B] passdev |
377
by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning. |
33 |
|
240
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
34 |
* plugin-runner |
24.1.174
by Björn Påhlsson
* Makefile (CFLAGS): Added "-lrt" to include real time library. |
35 |
** TODO handle printing for errors for plugins |
36 |
*** Hook up stderr of plugins, buffer them, and prepend mandos pluig [plugin name] |
|
240
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
37 |
** TODO [#B] use scandir(3) instead of readdir(3) |
344
by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1". |
38 |
** TODO [#C] use same file name rules as run-parts(8) |
24.1.145
by Björn Påhlsson
todo |
39 |
** kernel command line option for debug info |
418
by teddy at bsnet
* TODO: Clarifications. |
40 |
** TODO [#B] Use openat() |
240
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
41 |
|
87
by Teddy Hogeborn
* Makefile: Bug fix: fixed creation of man pages in "plugins.d". |
42 |
* mandos (server) |
413
by Teddy Hogeborn
TODO file changes. |
43 |
** TODO [#B] Log level :BUGS: |
518.1.1
by Björn Påhlsson
Persistent state: New feature. Client state is now stored when mandos |
44 |
|
413
by Teddy Hogeborn
TODO file changes. |
45 |
** TODO [#C] config for TXT record |
46 |
** TODO Log level option |
|
47 |
syslogger.setLevel(logging.WARNING) |
|
48 |
+ SetLogLevel D-Bus call |
|
49 |
** TODO Implement --foreground :BUGS: |
|
182
by Teddy Hogeborn
* Makefile (install): Use "install-client-nokey". |
50 |
[[info:standards:Option%20Table][Table of Long Options]] |
51 |
** TODO Implement --socket |
|
52 |
[[info:standards:Option%20Table][Table of Long Options]] |
|
413
by Teddy Hogeborn
TODO file changes. |
53 |
** TODO [#C] DBusServiceObjectUsingSuper |
54 |
** TODO [#B] Global enable/disable flag |
|
55 |
** TODO [#B] By-client countdown on secrets given |
|
56 |
** TODO [#B] Support RFC 3339 time duration syntax |
|
416.1.1
by Teddy Hogeborn
Initial design on approval system. |
57 |
** More D-Bus methods |
58 |
*** NeedsPassword(50) - Timeout, default disapprove |
|
59 |
+ SetPass(u"gazonk", True) -> Approval, persistent |
|
418
by teddy at bsnet
* TODO: Clarifications. |
60 |
+ Approve(False) -> Close client connection immediately |
416.1.2
by Teddy Hogeborn
* mandos (ClientHandler.handle): Set up the GnuTLS session object |
61 |
** TODO [#C] python-parsedatetime |
62 |
** TODO [#C] systemd/launchd |
|
63 |
http://0pointer.de/blog/projects/systemd.html |
|
505.1.15
by Teddy Hogeborn
Bug fix: Make D-Bus properties settable again. |
64 |
http://wiki.debian.org/systemd |
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
65 |
** TODO Separate logging logic to own object |
422
by Teddy Hogeborn
Rename all D-Bus properties to conform to D-Bus naming conventions; |
66 |
** TODO [#A] Limit approval_delay to max gnutls/tls timeout value |
24.1.164
by Björn Påhlsson
merge |
67 |
** TODO [#B] break the wait on approval_delay if connection dies |
438
by Teddy Hogeborn
* mandos (Client.runtime_expansions): New attribute containing the |
68 |
** TODO Generate Client.runtime_expansions from client options + extra |
69 |
** TODO Allow %%(checker)s as a runtime expansion |
|
484
by Teddy Hogeborn
* Makefile (plugins.d/mandos-client): Bug fix: Put $^ before all |
70 |
** TODO Use python-tlslite? |
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
71 |
|
243
by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a |
72 |
* mandos.xml |
24.1.143
by Björn Påhlsson
added documentation todo |
73 |
** Add mandos contact info in manual pages |
243
by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a |
74 |
|
308
by Teddy Hogeborn
* plugin-runner.c: Comment change. |
75 |
* mandos-ctl |
243
by Teddy Hogeborn
* mandos (Client.timeout, Client.interval): Changed from being a |
76 |
*** Handle "no D-Bus server" and/or "no Mandos server found" better |
240
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
77 |
*** [#B] --dump option |
411
by Teddy Hogeborn
More consistent terminology: Clients are no longer "invalid" - they |
78 |
** TODO Support RFC 3339 time duration syntax |
505.1.15
by Teddy Hogeborn
Bug fix: Make D-Bus properties settable again. |
79 |
** TODO Send milliseconds if bare integer is passed as time duration |
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
80 |
|
377
by Teddy Hogeborn
* plugins.d/password-prompt.c (main): Fix "-Wconversion" warning. |
81 |
* TODO mandos-dispatch |
82 |
Listens for specified D-Bus signals and spawns shell commands with |
|
83 |
arguments. |
|
84 |
||
375
by Teddy Hogeborn
* TODO: Updated. |
85 |
* mandos-monitor |
24.1.174
by Björn Påhlsson
* Makefile (CFLAGS): Added "-lrt" to include real time library. |
86 |
** TODO help should be toggleable |
386
by Teddy Hogeborn
* mandos (DBusObjectWithProperties.Introspect): Add the name |
87 |
** Urwid client data displayer |
413
by Teddy Hogeborn
TODO file changes. |
88 |
Better view of client data in the listing |
327
by Teddy Hogeborn
Merge from pipe IPC branch. |
89 |
*** Properties popup |
24.1.154
by Björn Påhlsson
merge |
90 |
** Nicer crashes. Stack traces Messes up shell. |
91 |
*** Print a nice "We are sorry" message, save stack trace to log. |
|
442
by Teddy Hogeborn
* DBUS-API: Document new "LastApprovalRequest" client property. |
92 |
** Show timeout countdown for approval |
240
by Teddy Hogeborn
Merge "mandos-list" from belorn. |
93 |
|
228
by Teddy Hogeborn
* INSTALL: Add instructions on how to set the correct network |
94 |
* mandos-keygen |
95 |
** TODO "--secfile" option |
|
96 |
Using the "secfile" option instead of "secret" |
|
97 |
** TODO [#B] "--test" option |
|
98 |
For testing decryption before rebooting. |
|
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
99 |
|
370
by Teddy Hogeborn
* debian/control (Standards-Version): Updated to "2.8.3". |
100 |
* Makefile |
413
by Teddy Hogeborn
TODO file changes. |
101 |
** TODO [#C] Implement DEB_BUILD_OPTIONS |
370
by Teddy Hogeborn
* debian/control (Standards-Version): Updated to "2.8.3". |
102 |
http://www.debian.org/doc/debian-policy/ch-source.html#s-debianrules-options |
103 |
||
275
by Teddy Hogeborn
* debian/mandos-client.postinst: Converted to Bourne shell. Also |
104 |
* Package |
67
by Teddy Hogeborn
* mandos-keygen: New program to generate new client keys on |
105 |
** /usr/share/initramfs-tools/hooks/mandos |
344
by Teddy Hogeborn
* debian/control (Standards-Version): Changed to "3.8.1". |
106 |
*** TODO [#C] use same file name rules as run-parts(8) |
263
by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and |
107 |
*** TODO [#C] Do not install in initrd.img if configured not to. |
308
by Teddy Hogeborn
* plugin-runner.c: Comment change. |
108 |
Use "/etc/initramfs-tools/hooksconf.d/mandos"? |
263
by Teddy Hogeborn
* README (The Plugin System): Removed redundant text about options and |
109 |
** TODO [#C] /etc/bash_completion.d/mandos |
88
by Teddy Hogeborn
No code or documentation changes. |
110 |
From XML sources directly? |
24.1.30
by Björn Påhlsson
Added more stuff to do |
111 |
|
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
112 |
* Side Stuff |
505.1.8
by Teddy Hogeborn
* mandos-ctl: Update copyright year to 2011. |
113 |
** TODO Locate which package moves the other bin/sh when busybox is deactivated |
114 |
** TODO contact owner of package, and ask them to have that shell static in position regardless of busybox |
|
24.1.149
by Björn Påhlsson
Changed ForkingMixIn in favor of multiprocessing |
115 |
|
36
by Teddy Hogeborn
* TODO: Converted to org-mode style |
116 |
|
117 |
#+STARTUP: showall
|