/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk

« back to all changes in this revision

Viewing changes to mandos-keygen.xml

  • Committer: Teddy Hogeborn
  • Date: 2008-08-31 15:06:39 UTC
  • Revision ID: teddy@fukt.bsnet.se-20080831150639-tqdkyea3b9p3rou7
* Makefile: Make all DocBook rules include legalnotice.xml as a
            dependency.

* legalnotice.xml: New file with just the <legalnotice> tag in it.

* mandos-clients.conf.xml (/refentry): Add XInclude namespace.
  (/refentry/refentryinfo/legalnotice): Replaced with an inclusion of
                                        "legalnotice.xml".
* mandos-keygen.xml (/refentry/refentryinfo/legalnotice): - '' -
* mandos-conf.xml (/refentry/refentryinfo/legalnotice): - '' -
* mandos.xml (/refentry/refentryinfo/legalnotice): - '' -

* overview.xml: Changed root node tag name in DOCTYPE declaration.

* plugin-runner.xml (/refentry): Add XInclude namespace.
  (/refentry/refentryinfo/legalnotice): Replaced with an inclusion of
                                        "legalnotice.xml".

* plugins.d/password-prompt.xml (/refentry): Add XInclude namespace.
  (/refentry/refentryinfo/legalnotice): Replaced with an inclusion of
                                        "legalnotice.xml".

* plugins.d/password-request.xml (/refentry): Add XInclude namespace.
  (/refentry/refentryinfo/legalnotice): Replaced with an inclusion of
                                        "legalnotice.xml".

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
1
<?xml version="1.0" encoding="UTF-8"?>
2
2
<!DOCTYPE refentry PUBLIC "-//OASIS//DTD DocBook XML V4.5//EN"
3
3
        "http://www.oasis-open.org/docbook/xml/4.5/docbookx.dtd" [
 
4
<!ENTITY VERSION "1.0">
4
5
<!ENTITY COMMANDNAME "mandos-keygen">
5
 
<!ENTITY TIMESTAMP "2011-10-03">
6
 
<!ENTITY % common SYSTEM "common.ent">
7
 
%common;
 
6
<!ENTITY TIMESTAMP "2008-08-31">
8
7
]>
9
8
 
10
9
<refentry xmlns:xi="http://www.w3.org/2001/XInclude">
12
11
    <title>Mandos Manual</title>
13
12
    <!-- NWalsh’s docbook scripts use this to generate the footer: -->
14
13
    <productname>Mandos</productname>
15
 
    <productnumber>&version;</productnumber>
 
14
    <productnumber>&VERSION;</productnumber>
16
15
    <date>&TIMESTAMP;</date>
17
16
    <authorgroup>
18
17
      <author>
19
18
        <firstname>Björn</firstname>
20
19
        <surname>Påhlsson</surname>
21
20
        <address>
22
 
          <email>belorn@recompile.se</email>
 
21
          <email>belorn@fukt.bsnet.se</email>
23
22
        </address>
24
23
      </author>
25
24
      <author>
26
25
        <firstname>Teddy</firstname>
27
26
        <surname>Hogeborn</surname>
28
27
        <address>
29
 
          <email>teddy@recompile.se</email>
 
28
          <email>teddy@fukt.bsnet.se</email>
30
29
        </address>
31
30
      </author>
32
31
    </authorgroup>
33
32
    <copyright>
34
33
      <year>2008</year>
35
 
      <year>2009</year>
36
 
      <year>2011</year>
37
34
      <holder>Teddy Hogeborn</holder>
38
35
      <holder>Björn Påhlsson</holder>
39
36
    </copyright>
40
37
    <xi:include href="legalnotice.xml"/>
41
38
  </refentryinfo>
42
 
  
 
39
 
43
40
  <refmeta>
44
41
    <refentrytitle>&COMMANDNAME;</refentrytitle>
45
42
    <manvolnum>8</manvolnum>
51
48
      Generate key and password for Mandos client and server.
52
49
    </refpurpose>
53
50
  </refnamediv>
54
 
  
 
51
 
55
52
  <refsynopsisdiv>
56
53
    <cmdsynopsis>
57
54
      <command>&COMMANDNAME;</command>
125
122
      <group choice="req">
126
123
        <arg choice="plain"><option>--password</option></arg>
127
124
        <arg choice="plain"><option>-p</option></arg>
128
 
        <arg choice="plain"><option>--passfile
129
 
        <replaceable>FILE</replaceable></option></arg>
130
 
        <arg choice="plain"><option>-F</option>
131
 
        <replaceable>FILE</replaceable></arg>
132
125
      </group>
133
126
      <sbr/>
134
127
      <group>
166
159
    <para>
167
160
      <command>&COMMANDNAME;</command> is a program to generate the
168
161
      OpenPGP key used by
169
 
      <citerefentry><refentrytitle>mandos-client</refentrytitle>
 
162
      <citerefentry><refentrytitle>password-request</refentrytitle>
170
163
      <manvolnum>8mandos</manvolnum></citerefentry>.  The key is
171
164
      normally written to /etc/mandos for later installation into the
172
165
      initrd image, but this, and most other things, can be changed
174
167
    </para>
175
168
    <para>
176
169
      This program can also be used with the
177
 
      <option>--password</option> or <option>--passfile</option>
178
 
      options to generate a ready-made section for
179
 
      <filename>clients.conf</filename> (see
 
170
      <option>--password</option> option to generate a ready-made
 
171
      section for <filename>clients.conf</filename> (see
180
172
      <citerefentry><refentrytitle>mandos-clients.conf</refentrytitle>
181
173
      <manvolnum>5</manvolnum></citerefentry>).
182
174
    </para>
205
197
          </para>
206
198
        </listitem>
207
199
      </varlistentry>
208
 
      
 
200
 
209
201
      <varlistentry>
210
202
        <term><option>--dir
211
203
        <replaceable>DIRECTORY</replaceable></option></term>
214
206
        <listitem>
215
207
          <para>
216
208
            Target directory for key files.  Default is
217
 
            <filename class="directory">/etc/mandos</filename>.
 
209
            <filename>/etc/mandos</filename>.
218
210
          </para>
219
211
        </listitem>
220
212
      </varlistentry>
221
 
      
 
213
 
222
214
      <varlistentry>
223
215
        <term><option>--type
224
216
        <replaceable>TYPE</replaceable></option></term>
230
222
          </para>
231
223
        </listitem>
232
224
      </varlistentry>
233
 
      
 
225
 
234
226
      <varlistentry>
235
227
        <term><option>--length
236
228
        <replaceable>BITS</replaceable></option></term>
242
234
          </para>
243
235
        </listitem>
244
236
      </varlistentry>
245
 
      
 
237
 
246
238
      <varlistentry>
247
239
        <term><option>--subtype
248
240
        <replaceable>KEYTYPE</replaceable></option></term>
255
247
          </para>
256
248
        </listitem>
257
249
      </varlistentry>
258
 
      
 
250
 
259
251
      <varlistentry>
260
252
        <term><option>--sublength
261
253
        <replaceable>BITS</replaceable></option></term>
267
259
          </para>
268
260
        </listitem>
269
261
      </varlistentry>
270
 
      
 
262
 
271
263
      <varlistentry>
272
264
        <term><option>--email
273
265
        <replaceable>ADDRESS</replaceable></option></term>
279
271
          </para>
280
272
        </listitem>
281
273
      </varlistentry>
282
 
      
 
274
 
283
275
      <varlistentry>
284
276
        <term><option>--comment
285
277
        <replaceable>TEXT</replaceable></option></term>
292
284
          </para>
293
285
        </listitem>
294
286
      </varlistentry>
295
 
      
 
287
 
296
288
      <varlistentry>
297
289
        <term><option>--expire
298
290
        <replaceable>TIME</replaceable></option></term>
306
298
          </para>
307
299
        </listitem>
308
300
      </varlistentry>
309
 
      
 
301
 
310
302
      <varlistentry>
311
303
        <term><option>--force</option></term>
312
304
        <term><option>-f</option></term>
334
326
          </para>
335
327
        </listitem>
336
328
      </varlistentry>
337
 
      <varlistentry>
338
 
        <term><option>--passfile
339
 
        <replaceable>FILE</replaceable></option></term>
340
 
        <term><option>-F
341
 
        <replaceable>FILE</replaceable></option></term>
342
 
        <listitem>
343
 
          <para>
344
 
            The same as <option>--password</option>, but read from
345
 
            <replaceable>FILE</replaceable>, not the terminal.
346
 
          </para>
347
 
        </listitem>
348
 
      </varlistentry>
349
329
    </variablelist>
350
330
  </refsect1>
351
 
  
 
331
 
352
332
  <refsect1 id="overview">
353
333
    <title>OVERVIEW</title>
354
334
    <xi:include href="overview.xml"/>
358
338
      <filename>clients.conf</filename> on the server.
359
339
    </para>
360
340
  </refsect1>
361
 
  
 
341
 
362
342
  <refsect1 id="exit_status">
363
343
    <title>EXIT STATUS</title>
364
344
    <para>
384
364
    </variablelist>
385
365
  </refsect1>
386
366
  
387
 
  <refsect1 id="files">
 
367
  <refsect1 id="file">
388
368
    <title>FILES</title>
389
369
    <para>
390
370
      Use the <option>--dir</option> option to change where
411
391
        </listitem>
412
392
      </varlistentry>
413
393
      <varlistentry>
414
 
        <term><filename class="directory">/tmp</filename></term>
 
394
        <term><filename>/tmp</filename></term>
415
395
        <listitem>
416
396
          <para>
417
397
            Temporary files will be written here if
421
401
      </varlistentry>
422
402
    </variablelist>
423
403
  </refsect1>
424
 
  
425
 
<!--   <refsect1 id="bugs"> -->
426
 
<!--     <title>BUGS</title> -->
427
 
<!--     <para> -->
428
 
<!--     </para> -->
429
 
<!--   </refsect1> -->
430
 
  
 
404
 
 
405
  <refsect1 id="bugs">
 
406
    <title>BUGS</title>
 
407
    <para>
 
408
      None are known at this time.
 
409
    </para>
 
410
  </refsect1>
 
411
 
431
412
  <refsect1 id="example">
432
413
    <title>EXAMPLE</title>
433
414
    <informalexample>
452
433
    </informalexample>
453
434
    <informalexample>
454
435
      <para>
455
 
        Prompt for a password, encrypt it with the key in <filename
456
 
        class="directory">/etc/mandos</filename> and output a section
457
 
        suitable for <filename>clients.conf</filename>.
 
436
        Prompt for a password, encrypt it with the key in
 
437
        <filename>/etc/mandos</filename> and output a section suitable
 
438
        for <filename>clients.conf</filename>.
458
439
      </para>
459
440
      <para>
460
441
        <userinput>&COMMANDNAME; --password</userinput>
474
455
      </para>
475
456
    </informalexample>
476
457
  </refsect1>
477
 
  
 
458
 
478
459
  <refsect1 id="security">
479
460
    <title>SECURITY</title>
480
461
    <para>
489
470
      <manvolnum>8</manvolnum></citerefentry>.
490
471
    </para>
491
472
  </refsect1>
492
 
  
 
473
 
493
474
  <refsect1 id="see_also">
494
475
    <title>SEE ALSO</title>
495
476
    <para>
496
 
      <citerefentry><refentrytitle>intro</refentrytitle>
497
 
      <manvolnum>8mandos</manvolnum></citerefentry>,
498
477
      <citerefentry><refentrytitle>gpg</refentrytitle>
499
478
      <manvolnum>1</manvolnum></citerefentry>,
500
479
      <citerefentry><refentrytitle>mandos-clients.conf</refentrytitle>
501
480
      <manvolnum>5</manvolnum></citerefentry>,
502
481
      <citerefentry><refentrytitle>mandos</refentrytitle>
503
482
      <manvolnum>8</manvolnum></citerefentry>,
504
 
      <citerefentry><refentrytitle>mandos-client</refentrytitle>
 
483
      <citerefentry><refentrytitle>password-request</refentrytitle>
505
484
      <manvolnum>8mandos</manvolnum></citerefentry>
506
485
    </para>
507
486
  </refsect1>