Age | Commit message (Collapse) | Author | |
---|---|---|---|
2010-10-02 | Assume that space- or tab-prefixed lines contain ssh authorized_keys options ↵ | Clint Adams | |
applicable to the preceding user ID. | |||
2010-10-01 | fix revoke_key typo in creating temporary directory | Micah Anderson | |
fix variable specifying which key to revoke monkeysphere-host revoke-key <key-id> would produce the following errors, this commit fixes that: Really publish this cert to zimmermann.mayfirst.org ? (Y/n) y /usr/share/monkeysphere/mh/revoke_key: line 96: mkmstempdir: command not found gpg: new configuration file `/root/.gnupg/gpg.conf' created gpg: WARNING: options in `/root/.gnupg/gpg.conf' are not yet active during this run gpg: "0x!" not a key ID: skipping | |||
2010-09-21 | Merge remote branch 'jamie/master' | Daniel Kahn Gillmor | |
2010-09-21 | change log level for outputting message: "! primary key could not be | Jamie McClelland | |
translated (not RSA?)." from "error" to "verbose" | |||
2010-09-14 | fix *all* install paths, including in man pages and transition scripts | Jameson Rollins | |
2010-09-14 | fix specification of install directories in top level scripts. | Jameson Rollins | |
Various install paths were hard coded in the top level scripts. This was causing problems for non-standard install locations. Also added use of LOCALSTATEDIR variable to specify /var/lib path. | |||
2010-07-04 | Merge remote branch 'dkg/master' | Jameson Rollins | |
2010-07-04 | fix debug message in checkperms | Jameson Rollins | |
2010-07-04 | add keys-for-user subcommand to monkeysphere-authentication | Jameson Rollins | |
This subcommand will output all valid key for a given user. The user's authorized_user_ids file will be read for OpenPGP user IDs, one per line. The ssh-formated RSA keys will be output to stdout. Also included is a simple script that takes the user as it's one argument and exec's this command. This is something that would be suitable for the proposed sshd AuthorizedKeysCommand. | |||
2010-05-06 | reporting new expiration date when key expiry is updated (closes MS #2291) | Daniel Kahn Gillmor | |
2010-05-06 | do not fail or bail when admin interactively declines to publish a key with m-h | Daniel Kahn Gillmor | |
2010-05-06 | support x509 anchors for monkeysphere-host, allow shared anchors between m-a ↵ | Daniel Kahn Gillmor | |
and mh (closes MS #2288) | |||
2010-04-17 | do not try to add to known_hosts if HASH_KNOWN_HOSTS is true but ssh-keygen ↵ | Daniel Kahn Gillmor | |
is not available (includes some comments about how to fix these corner cases). | |||
2010-04-17 | degrade gracefully in the absence of ssh | Daniel Kahn Gillmor | |
2010-04-17 | handling ssh fingerprinting internally with keytrans for sshfprs-for-userid | Daniel Kahn Gillmor | |
2010-04-17 | make comment more nit-pickingly accurate | Daniel Kahn Gillmor | |
2010-04-17 | fix gpg_ssh_fingerprint() in monkeysphere to use internal implementation of ↵ | Daniel Kahn Gillmor | |
ssh fingerprinting | |||
2010-04-17 | monkeysphere-host no longer depends on ssh | Daniel Kahn Gillmor | |
2010-04-17 | keytrans openpgp2sshfpr now prints out the key size and type | Daniel Kahn Gillmor | |
2010-04-17 | added internal openpgp2sshfpr subcommand for keytrans | Daniel Kahn Gillmor | |
2010-03-14 | added comment about why the key file is named with whitespace | Daniel Kahn Gillmor | |
2010-03-14 | deprecate sshfpr; add sshfprs-for-userid (closes: MS #1436) | Daniel Kahn Gillmor | |
2010-03-14 | use msmktempfile instead of raw mktemp -- should be more portable | Daniel Kahn Gillmor | |
2010-03-14 | fix CHECK_KEYSERVER for deprecated keys-from-userid as well | Daniel Kahn Gillmor | |
2010-03-14 | fix typo | Daniel Kahn Gillmor | |
2010-03-14 | avoid checking trustdb from monkeysphere-host (Closes: MS #1957) | Daniel Kahn Gillmor | |
2010-03-14 | fixing an error message in monkeysphere-host | Daniel Kahn Gillmor | |
2010-03-14 | cleaning up monkeysphere-host show-key output | Daniel Kahn Gillmor | |
2010-03-14 | warn if keyserver query fails (Closes: MS #1750) | Daniel Kahn Gillmor | |
2010-03-14 | enable use of hkps (closes: MS #1749) | Daniel Kahn Gillmor | |
2010-03-14 | keys-for-userid now respects MONKEYSPHERE_CHECK_KEYSERVER (Closes: MS ↵ | Daniel Kahn Gillmor | |
#1997); finesse description of CHECK_KEYSERVER in monkeysphere.conf (see: MS #2014) | |||
2010-03-08 | fix my email address | Jameson Rollins | |
2010-02-18 | allow service names to start with a number (synchronizing with the check in ↵ | Daniel Kahn Gillmor | |
get_port_for_service from common). i know of no services named like that, but why be fussy? | |||
2010-02-18 | enforce --no-armor when exporting to openpgp2ssh in case weird gpg.conf ↵ | Daniel Kahn Gillmor | |
options (see bug 1625) | |||
2010-02-02 | add some useful shortcuts for some common commands | Jameson Rollins | |
2010-01-19 | Merge remote branch 'jrollins/master' | Daniel Kahn Gillmor | |
2010-01-19 | re-work monkeysphere-host diagnostics with an eye toward multiple host keys | Daniel Kahn Gillmor | |
2010-01-19 | dump gpg --import error spew to /dev/null during hackish uses of gpg | Daniel Kahn Gillmor | |
2010-01-19 | ignoring time conflict when extracting info in a hacky way from gpg. ↵ | Daniel Kahn Gillmor | |
warnings still come out to stderr | |||
2010-01-19 | accepting "--version" as well as "version" subcommand for monkeysphere-host ↵ | Daniel Kahn Gillmor | |
and monkeysphere-authentication | |||
2010-01-19 | added a few more FIXMEs to check_service_name() | Daniel Kahn Gillmor | |
2010-01-19 | add get_cert_info() to common | Daniel Kahn Gillmor | |
2010-01-18 | removing superfluous eval | Daniel Kahn Gillmor | |
2010-01-18 | tweak loading of fingerprints in multi_key wrapper function, so unnecessary ↵ | Jameson Rollins | |
error messages aren't output | |||
2010-01-18 | no need for recursive removal of a single file | Daniel Kahn Gillmor | |
2010-01-18 | flesh out check for reasonable-looking service names | Daniel Kahn Gillmor | |
2010-01-18 | add 0.28 transition script to generate new host_keys.pub.pgp file, and ↵ | Jameson Rollins | |
remove all ssh_host_rsa_key.pub.gpg file | |||
2010-01-18 | canonicalize prompting to prompt if MONKEYSPHERE_PROMPT != 'false' | Jameson Rollins | |
2010-01-18 | add prompt if a service name is already being used then importing a key or ↵ | Jameson Rollins | |
adding a name. This can be overridden with the MONKEYSPHERE_PROMPT var. | |||
2010-01-18 | monkeysphere-host: reverting from host_fingerprints() to ↵ | Daniel Kahn Gillmor | |
list_primary_fingerprints() |