Age | Commit message (Collapse) | Author | |
---|---|---|---|
2009-02-20 | add_revoker fully working. also cleanup of add_certifier. | Jameson Graef Rollins | |
add_revoker and add_certifier to many similar procedures, so I'm trying to keep them in sync as I figure out the right way to handle things. | |||
2009-02-19 | Merge commit 'jrollins/master' | Daniel Kahn Gillmor | |
2009-02-19 | correcting ssh_proxycommand output. | Daniel Kahn Gillmor | |
2009-02-19 | remove import_subkey from monkeysphere usage and man page until we get | Jameson Graef Rollins | |
a chance to fully implement it. | |||
2009-02-19 | clean up the diagnostics functions, check for ID-Certifiers in m-a d | Daniel Kahn Gillmor | |
2009-02-19 | cleaning up output of cruft report | Daniel Kahn Gillmor | |
2009-02-19 | diagnostics should now check for cruft from old versions of the monkeysphere. | Daniel Kahn Gillmor | |
2009-02-19 | fix arg parsing in add_certifier to allow of - for stdin read. | Jameson Graef Rollins | |
2009-02-19 | Modify/cleanup add_certifier and add_revoker, so that their code base | Jameson Graef Rollins | |
is more similar, and so that they can read keys from stdin instead of just from a file. Also fix the permissions on the tempdir in publish_key. | |||
2009-02-19 | the import_subkey function was in fact not implement at all. MUST FIX! | Jameson Graef Rollins | |
2009-02-19 | add a gpg_user function in monkeysphere to add some gpg quieting | Jameson Graef Rollins | |
option, and use it in all gpg invocations. add a trap to subkey_to_ssh_agent. | |||
2009-02-19 | The monkeysphere {import,gen}_subkey functions were not up-to-date. | Jameson Graef Rollins | |
did a lot of work to bring them up-to-date, and better handle argument checking. also updated man page, changelog, and tests/basic. | |||
2009-02-19 | modify import_key to take the key file to import as an argument. can be '-' ↵ | Jameson Graef Rollins | |
to import from stdin. modify man page and test accordingly. | |||
2009-02-19 | more fix permissions and ownership on authentication directories. | Jameson Graef Rollins | |
2009-02-19 | fix permissions and ownership on authentication directories. | Jameson Graef Rollins | |
2009-02-19 | avoid chown -R, explicitly indicate the files we expect to be changed. | Daniel Kahn Gillmor | |
2009-02-19 | do not show uid validity for gpg authentication core, since the core has no ↵ | Daniel Kahn Gillmor | |
ultimate ownertrust | |||
2009-02-19 | added msmktempfile; got rid of /dev/stdin assumption in ssh_proxycommand for ↵ | Daniel Kahn Gillmor | |
portability | |||
2009-02-19 | fix CHECK_KEYSERVER variable in monkeysphere, so the default is correct for ↵ | Jameson Graef Rollins | |
proxycommand, and fix an errant bad line in proxycommand. | |||
2009-02-19 | fail if hostname can not be determined in import_key | Jameson Graef Rollins | |
2009-02-19 | Merge commit 'dkg/master' | Jameson Graef Rollins | |
2009-02-19 | Merge commit 'dkg/master' | Jameson Graef Rollins | |
2009-02-19 | add PROMPT respect in get_gpg_expiration | Jameson Graef Rollins | |
2009-02-19 | add some log debug redirects | Jameson Graef Rollins | |
2009-02-19 | making clearer comments in the transition script, invoking from postinst for ↵ | Daniel Kahn Gillmor | |
debian. | |||
2009-02-19 | shipping transition script; requiring manual version synchronization between ↵ | Daniel Kahn Gillmor | |
common and the changelog (until we come up with a more general templating build process) | |||
2009-02-19 | Merge commit 'dkg/master' | Jameson Graef Rollins | |
2009-02-19 | tweak some of the prompting, to change defaults, and add PROMPT usage where ↵ | Jameson Graef Rollins | |
missing | |||
2009-02-19 | made gpg_sphere use --quiet again, and now doing more explicit extraction of ↵ | Daniel Kahn Gillmor | |
key fingerprint during add-certifier from file. | |||
2009-02-19 | Merge commit 'dkg/master' | Jameson Graef Rollins | |
2009-02-19 | Cleanup how variables are specified and loaded: | Jameson Graef Rollins | |
- define more common variables in share/common - cleanup how defaults are specified - fix how CHECK_KEYSERVER was determined in monkeysphere Fix calls to update_known_hosts and update_authorized_keys in monkeysphere so that some of the checks are done within the functions themselves, as opposed in the monkeysphere wrapper, so that other functions can call them easier. Fix ssh-proxycommand that had some left over cruft from the transition. | |||
2009-02-19 | clean up failure message | Daniel Kahn Gillmor | |
2009-02-19 | catch pipe failures more cleanly during key import | Daniel Kahn Gillmor | |
2009-02-19 | moved directory for monkeysphere-generated authorized_keys files back to its ↵ | Daniel Kahn Gillmor | |
old location at /var/lib/monkeysphere/authorized_keys | |||
2009-02-18 | new msmktempdir function, to simplify making temporary directories. remove ↵ | Jameson Graef Rollins | |
MHTMPDIR, since it's not needed. | |||
2009-02-18 | add no-tty, quiet, and no-greeting to gpg wrapper invocations to supress as ↵ | Jameson Graef Rollins | |
much gpg output as possible. then cleanup gpg invocations. | |||
2009-02-18 | fix some log output | Jameson Graef Rollins | |
2009-02-17 | Merge commit 'jrollins/master' | Daniel Kahn Gillmor | |
2009-02-17 | make m-a list-certifiers more intelligible when multiple uids have ltsigs. | Daniel Kahn Gillmor | |
2009-02-17 | fix ma so that the setup command is folded into the other commands, so | Jameson Graef Rollins | |
it's never needed to be run manually, and can therefore be supressed in the usage/documentation. Also, add setup to the postinst script so that it's setup on installation. Also add pipefail to ma, and try to supress unnecessary gpg output, and redirect other to log debug. | |||
2009-02-17 | describe the motivation for our current su_monkeysphere_user implementation. | Daniel Kahn Gillmor | |
2009-02-17 | remove setting of ultimate owner trust on imported host key, since we ↵ | Jameson Graef Rollins | |
probably don't want the host keyring to be accepting any certifications for anything. | |||
2009-02-17 | add ability to bypass prompting with a MONKEYSPHERE_PROMPT variable, | Jameson Graef Rollins | |
for functions that prompt for confirmation. Also fix publish_key function (NOT TESTED). | |||
2009-02-17 | add test to su_monkeysphere_user to check that the user is | Jameson Graef Rollins | |
monkeysphere user or root, and fail otherwise. this is so that there is no password prompt for unpriviledged users (see bug #519). | |||
2009-02-17 | add some checks about setup to authentication | Jameson Graef Rollins | |
2009-02-17 | rename create_gpg_pub_file to be update_gpg_pub_file, and add it to | Jameson Graef Rollins | |
every function that alters the host keyring, so that all changes will show up in exported pub key file, and in show-key. | |||
2009-02-17 | Merge commit 'dkg/master' | Jameson Graef Rollins | |
2009-02-17 | tweak the show-key output, and fix some comments. | Jameson Graef Rollins | |
2009-02-17 | set ultimate ownertrust on hostkey after import | Jameson Graef Rollins | |
2009-02-17 | update m-a list-identity-certifiers: output is not yet human-readable, but ↵ | Daniel Kahn Gillmor | |
it should be more accurate. |