4
** header files/symbols tally
5
** check exit codes of all system calls
7
** protocol version header
8
** use strsep instead of strtok?
11
** header files/symbols tally
12
** check exit codes of all system calls
13
** change uid to nobody:nogroup
14
other drop privs stuff?
15
** pass things in environment, like device name, etc
16
Does cryptsetup already do this?
17
** use strsep instead of strtok?
22
** protocol version header
23
** Run-time communication with server
26
* Mandos-tools/utilities
27
All of this probably using D-Bus
4
** TODO [#A] Clean up /tmp directory and take down interface on signal
5
** TODO [#A] Do not handle ignored signals
6
** TODO [#B] use scandir(3) instead of readdir(3)
9
** TODO [#A] Re-raise signal received when exiting due to handled signal.
10
** TODO [#B] use scandir(3) instead of readdir(3)
13
** TODO [#A] Re-raise signal received when exiting due to handled signal.
14
** TODO [#B] use scandir(3) instead of readdir(3)
17
** TODO [#A] Do not handle ignored signals
18
** TODO [#B] use scandir(3) instead of readdir(3)
19
** TODO [#C] use same file name rules as run-parts(8)
22
** TODO [#B] Log level :BUGS:
23
** TODO /etc/mandos/clients.d/*.conf
24
Watch this directory and add/remove/update clients?
25
** TODO config for TXT record
26
** TODO [#B] Run-time communication with server :BUGS:
31
syslogger.setLevel(logging.WARNING)
32
+ [[http://log.ometer.com/2007-05.html][Best D-Bus practices]]
33
** TODO Implement --foreground :BUGS:
34
[[info:standards:Option%20Table][Table of Long Options]]
35
** TODO Implement --socket
36
[[info:standards:Option%20Table][Table of Long Options]]
37
** TODO Date+time on console log messages :BUGS:
39
** TODO Split IPv6_TCPServer into a generic and Mandos-specific class
40
** TODO move handle_ipc out of IPv6_TCPServer
41
** TODO DBusServiceObjectUsingSuper
42
** Global enable/disable flag
43
** By-client countdown on secrets given
46
** [[file:mandos.xml::XXX][Document D-Bus interface]]
48
* Provide and install /etc/dbus-1/system.d/mandos.conf
51
*** Handle "no D-Bus server" and/or "no Mandos server found" better
52
*** [#B] --dump option
55
** D-Bus mail loop w/ signal receiver
56
** Urwid/Newt client data displayer
62
** TODO Loop until passwords match when run interactively
63
** TODO "--secfile" option
64
Using the "secfile" option instead of "secret"
65
** TODO [#B] "--test" option
66
For testing decryption before rebooting.
69
** /usr/share/initramfs-tools/hooks/mandos
70
*** TODO [#C] use same file name rules as run-parts(8)
71
*** TODO [#C] Do not install in initrd.img if configured not to.
72
Use "/etc/initramfs-tools/hooksconf.d/mandos"?
73
** TODO [#C] /etc/bash_completion.d/mandos
74
From XML sources directly?