4
4
<!DOCTYPE refentry PUBLIC "-//OASIS//DTD DocBook XML V4.5//EN"
5
5
"http://www.oasis-open.org/docbook/xml/4.5/docbookx.dtd" [
6
6
<!ENTITY VERSION "1.0">
7
<!ENTITY COMMANDNAME "mandos-client">
7
<!ENTITY COMMANDNAME "plugin-runner">
8
<!ENTITY TIMESTAMP "2008-08-31">
12
<title>&COMMANDNAME;</title>
13
<title>Mandos Manual</title>
13
14
<!-- NWalsh's docbook scripts use this to generate the footer: -->
14
<productname>&COMMANDNAME;</productname>
15
<productname>Mandos</productname>
15
16
<productnumber>&VERSION;</productnumber>
17
<date>&TIMESTAMP;</date>
18
20
<firstname>Björn</firstname>
67
70
<refname><command>&COMMANDNAME;</command></refname>
69
get password for encrypted rootdisk
72
Run Mandos plugins. Pass data from first succesful one.
75
78
<command>&COMMANDNAME;</command>
76
<arg choice='opt' rep='repeat'>OPTION</arg>
80
<arg choice="plain"><option>--global-envs=<replaceable
81
>VAR</replaceable><literal>=</literal><replaceable
82
>value</replaceable></option></arg>
83
<arg choice="plain"><option>-e
84
<replaceable>VAR</replaceable><literal>=</literal><replaceable
85
>value</replaceable> </option></arg>
89
<arg choice="plain"><option>--envs-for=<replaceable
90
>PLUGIN</replaceable><literal>:</literal><replaceable
91
>ENV</replaceable><literal>=</literal><replaceable
92
>value</replaceable></option></arg>
93
<arg choice="plain"><option>-f<replaceable>
94
PLUGIN</replaceable><literal>:</literal><replaceable
95
>ENV</replaceable><literal>=</literal><replaceable
96
>value</replaceable> </option></arg>
100
<arg choice="plain"><option>--global-options=<replaceable
101
>OPTIONS</replaceable></option></arg>
102
<arg choice="plain"><option>-g<replaceable>
103
OPTIONS</replaceable> </option></arg>
107
<arg choice="plain"><option>--options-for=<replaceable
108
>PLUGIN</replaceable><literal>:</literal><replaceable
109
>OPTIONS</replaceable></option></arg>
110
<arg choice="plain"><option>-f<replaceable>
111
PLUGIN</replaceable><literal>:</literal><replaceable
112
>OPTIONS</replaceable> </option></arg>
116
<arg choice="plain"><option>--disable=<replaceable
117
>PLUGIN</replaceable></option></arg>
118
<arg choice="plain"><option>-d
119
<replaceable>PLUGIN</replaceable> </option></arg>
122
<arg><option>--groupid=<replaceable
123
>ID</replaceable></option></arg>
125
<arg><option>--userid=<replaceable
126
>ID</replaceable></option></arg>
128
<arg><option>--plugin-dir=<replaceable
129
>DIRECTORY</replaceable></option></arg>
131
<arg><option>--debug</option></arg>
134
<command>&COMMANDNAME;</command>
136
<arg choice='plain'><option>--help</option></arg>
137
<arg choice='plain'><option>-?</option></arg>
141
<command>&COMMANDNAME;</command>
142
<arg choice='plain'><option>--usage</option></arg>
145
<command>&COMMANDNAME;</command>
147
<arg choice='plain'><option>--version</option></arg>
148
<arg choice='plain'><option>-V</option></arg>
83
156
<command>&COMMANDNAME;</command> is a plugin runner that waits
84
157
for any of its plugins to return sucessfull with a password, and
85
passes it to cryptsetup. plugins is defined as any executables
86
in the plugins directory will by default will be
87
/conf/conf.d/mandos/plugins.d. to stdout.
158
passes it to cryptsetup as stdout message. This command is not
159
meant to be invoked directly, but is instead meant to be run by
160
cryptsetup by being specified in /etc/crypttab as a keyscript
161
and subsequlently started in the initrd environment. See
162
<citerefentry><refentrytitle>crypttab</refentrytitle>
163
<manvolnum>5</manvolnum></citerefentry> for more information on
168
plugins is looked for in the plugins directory which by default will be
169
/conf/conf.d/mandos/plugins.d if not changed by option --plugin-dir.
173
<title>OPTIONS</title>
92
<term><literal>-g</literal>,<literal>--global-options
93
<replaceable>OPTIONS</replaceable></literal></term>
176
<term><option>--global-options
177
<replaceable>OPTIONS</replaceable></option></term>
179
<replaceable>OPTIONS</replaceable></option></term>
96
182
Global options given to all plugins as additional start
97
183
arguments. Options are specified with a -o flag followed
98
184
by a comma separated string of options.
104
<term><literal>-o</literal>,<literal> --options-for
105
<replaceable>PLUGIN</replaceable>:<replaceable>OPTION</replaceable>
190
<term><option>--options-for
191
<replaceable>PLUGIN</replaceable><literal>:</literal
192
><replaceable>OPTION</replaceable></option></term>
194
<replaceable>PLUGIN</replaceable><literal>:</literal
195
><replaceable>OPTION</replaceable></option></term>
109
198
Plugin specific options given to the plugin as additional
110
199
start arguments. Options are specified with a -o flag
111
200
followed by a comma separated string of options.
117
<term><literal>-d</literal>,<literal> --disable
118
<replaceable>PLUGIN</replaceable>
206
<term><option> --disable
207
<replaceable>PLUGIN</replaceable></option></term>
209
<replaceable>PLUGIN</replaceable></option></term>
122
212
Disable a specific plugin
128
<term><literal>--groupid <replaceable>ID</replaceable>
218
<term><option>--groupid
219
<replaceable>ID</replaceable></option></term>
132
222
Group ID the plugins will run as
138
<term><literal>--userid <replaceable>ID</replaceable>
228
<term><option>--userid
229
<replaceable>ID</replaceable></option></term>
142
232
User ID the plugins will run as
148
<term><literal>--plugin-dir <replaceable>DIRECTORY</replaceable>
238
<term><option>--plugin-dir
239
<replaceable>DIRECTORY</replaceable></option></term>
152
242
Specify a different plugin directory
158
<term><literal>--debug</literal></term>
248
<term><option>--debug</option></term>
185
<term><literal>-V</literal>, <literal>--version</literal></term>
276
<term><option>--version</option></term>
277
<term><option>-V</option></term>
188
280
Prints the program version
287
<refsect1 id="exit_status">
288
<title>EXIT STATUS</title>
299
<refsect1 id="notes">
311
<refsect1 id="examples">
312
<title>EXAMPLE</title>
317
<refsect1 id="security">
318
<title>SECURITY</title>
323
<refsect1 id="see_also">
324
<title>SEE ALSO</title>
326
<citerefentry><refentrytitle>cryptsetup</refentrytitle>
327
<manvolnum>8</manvolnum></citerefentry>,
328
<citerefentry><refentrytitle>mandos</refentrytitle>
329
<manvolnum>8</manvolnum></citerefentry>,
330
<citerefentry><refentrytitle>password-prompt</refentrytitle>
331
<manvolnum>8mandos</manvolnum></citerefentry>,
332
<citerefentry><refentrytitle>password-request</refentrytitle>
333
<manvolnum>8mandos</manvolnum></citerefentry>
338
<!-- Local Variables: -->
339
<!-- time-stamp-start: "<!ENTITY TIMESTAMP [\"']" -->
340
<!-- time-stamp-end: "[\"']>" -->
341
<!-- time-stamp-format: "%:y-%02m-%02d" -->