/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
1
Source: mandos
2
Section: admin
909 by Teddy Hogeborn
Change Debian package priority from "extra" to "optional".
3
Priority: optional
505.1.2 by Teddy Hogeborn
Change "fukt.bsnet.se" to "recompile.se" throughout.
4
Maintainer: Mandos Maintainers <mandos@recompile.se>
5
Uploaders: Teddy Hogeborn <teddy@recompile.se>,
6
	   Björn Påhlsson <belorn@recompile.se>
929 by Teddy Hogeborn
Build-depend on debhelper 10
7
Build-Depends: debhelper (>= 10), docbook-xml, docbook-xsl,
891 by Teddy Hogeborn
Fix mandos package dependencies for the GPGME library.
8
	libavahi-core-dev, libgpgme-dev | libgpgme11-dev,
1127 by Teddy Hogeborn
Add dracut(8) support
9
	libglib2.0-dev (>=2.40), libgnutls28-dev (>= 3.3.0),
977 by Teddy Hogeborn
Fix Debian package dependencies
10
	libgnutls28-dev (>= 3.6.6) | libgnutls28-dev (<< 3.6.0),
1291 by Teddy Hogeborn
Require correct version of systemd-dev or systemd
11
	xsltproc, pkg-config, libnl-route-3-dev,
1293 by Teddy Hogeborn
Fix minor deprecated syntax issue in debian/control
12
	systemd-dev | systemd (<< 256~rc2-1)
1172 by Teddy Hogeborn
Fix bug in Debian package dependencies
13
Build-Depends-Indep: python3 (>= 3), python3-dbus, python3-gi,
1171 by Teddy Hogeborn
Use Python 3 by default
14
	po-debconf
1271 by Teddy Hogeborn
Update Debian Policy version to 4.6.2; no other changes necessary.
15
Standards-Version: 4.6.2
862 by Teddy Hogeborn
Use HTTPS for Vcs-Bzr and Vcs-Browser package links.
16
Vcs-Bzr: https://ftp.recompile.se/pub/mandos/trunk
17
Vcs-Browser: https://bzr.recompile.se/loggerhead/mandos/trunk/files
844 by Teddy Hogeborn
Use HTTPS in home page links
18
Homepage: https://www.recompile.se/mandos
957 by Teddy Hogeborn
Use new header "Rules-Requires-Root" in debian/control
19
Rules-Requires-Root: binary-targets
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
20
21
Package: mandos
22
Architecture: all
1286 by Teddy Hogeborn
Use new package name "libgnutls30t64" when available
23
Depends: ${misc:Depends}, python3 (>= 3),
24
	libgnutls30t64 | libgnutls30 (>= 3.3.0),
25
	libgnutls30t64 | libgnutls30 (>= 3.6.6) | libgnutls30 (<< 3.6.0),
1171 by Teddy Hogeborn
Use Python 3 by default
26
	python3-dbus, python3-gi, avahi-daemon, adduser,
1282 by Teddy Hogeborn
Remove obsolete "gnupg2" dependency (Debian bug #1055402)
27
	python3-urwid, gnupg, systemd-sysv | lsb-base (>= 3.0-6),
967 by Teddy Hogeborn
Show debconf note about new TLS key IDs
28
	debconf (>= 1.5.5) | debconf-2.0
709 by Teddy Hogeborn
mandos: The Debian package should prefer "ssh-client" over "fping".
29
Recommends: ssh-client | fping
977 by Teddy Hogeborn
Fix Debian package dependencies
30
Suggests: libc6-dev | libc-dev, c-compiler
496 by Teddy Hogeborn
* debian/control: Fix language for lintian.
31
Description: server giving encrypted passwords to Mandos clients
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
32
 This is the server part of the Mandos system, which allows
33
 computers to have encrypted root file systems and at the
34
 same time be capable of remote and/or unattended reboots.
35
 .
36
 The computers run a small client program in the initial RAM
37
 disk environment which will communicate with a server over a
38
 network.  All network communication is encrypted using TLS.
962 by Teddy Hogeborn
Add support for using raw public keys in TLS (RFC 7250)
39
 The clients are identified by the server using a TLS public
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
40
 key; each client has one unique to it.  The server sends the
41
 clients an encrypted password.  The encrypted password is
962 by Teddy Hogeborn
Add support for using raw public keys in TLS (RFC 7250)
42
 decrypted by the clients using an OpenPGP key, and the
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
43
 password is then used to unlock the root file system,
44
 whereupon the computers can continue booting normally.
45
46
Package: mandos-client
237.6.2 by Robert Millan
* debian/changelog (1.5.3-1.2): New entry.
47
Architecture: linux-any
961 by Teddy Hogeborn
Depend on either old cryptsetup or new cryptsetup-initramfs
48
Depends: ${shlibs:Depends}, ${misc:Depends}, adduser,
49
	cryptsetup (<< 2:2.0.3-1) | cryptsetup-initramfs,
1127 by Teddy Hogeborn
Add dracut(8) support
50
	initramfs-tools (>= 0.99) | dracut (>= 044+241-3),
51
	dpkg-dev (>=1.16.0),
977 by Teddy Hogeborn
Fix Debian package dependencies
52
	gnutls-bin (>= 3.6.6) | libgnutls30 (<< 3.6.0),
967 by Teddy Hogeborn
Show debconf note about new TLS key IDs
53
	debconf (>= 1.5.5) | debconf-2.0
962 by Teddy Hogeborn
Add support for using raw public keys in TLS (RFC 7250)
54
Recommends: ssh
505.1.13 by Teddy Hogeborn
Miscellaneous fixes prompted by lintian:
55
Breaks: dropbear (<= 0.53.1-1)
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
56
Enhances: cryptsetup
1127 by Teddy Hogeborn
Add dracut(8) support
57
Conflicts: dracut-config-generic
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
58
Description: do unattended reboots with an encrypted root file system
59
 This is the client part of the Mandos system, which allows
60
 computers to have encrypted root file systems and at the
61
 same time be capable of remote and/or unattended reboots.
62
 .
63
 The computers run a small client program in the initial RAM
64
 disk environment which will communicate with a server over a
65
 network.  All network communication is encrypted using TLS.
962 by Teddy Hogeborn
Add support for using raw public keys in TLS (RFC 7250)
66
 The clients are identified by the server using a TLS public
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
67
 key; each client has one unique to it.  The server sends the
68
 clients an encrypted password.  The encrypted password is
962 by Teddy Hogeborn
Add support for using raw public keys in TLS (RFC 7250)
69
 decrypted by the clients using an OpenPGP key, and the
185 by Teddy Hogeborn
* .bzr-builddeb/default.conf: New.
70
 password is then used to unlock the root file system,
71
 whereupon the computers can continue booting normally.