Daniel Kahn Gillmor [Thu, 19 Jun 2008 08:00:42 +0000 (04:00 -0400)]
re-worked documentation and raised issues in TODO about end user authentication.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 07:34:46 +0000 (03:34 -0400)]
fixed think-o: running a commend with no arguments should have no arguments.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 07:33:29 +0000 (03:33 -0400)]
monkeysphere-server should not bother adding the user-controlled authorized_keys file if it does not exist.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 07:17:01 +0000 (03:17 -0400)]
added more documentation about george, and more TODO notes.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 07:05:40 +0000 (03:05 -0400)]
updated doc/README to match the location of authorized_user_ids that is created by the package.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 07:04:58 +0000 (03:04 -0400)]
added description of steps needed to get host key published for george.riseup.net.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 06:23:19 +0000 (02:23 -0400)]
update monkeysphere-server help to include new show-fingerprint.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 06:20:49 +0000 (02:20 -0400)]
added monkeysphere-server show-fingerprint
Daniel Kahn Gillmor [Thu, 19 Jun 2008 05:59:08 +0000 (01:59 -0400)]
adjust man pages to reflect current thinking about purpose of keys (authentication, not encryption).
Daniel Kahn Gillmor [Thu, 19 Jun 2008 05:53:05 +0000 (01:53 -0400)]
clarify why monkeysphere-server publish_key is currently non-functional.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 05:31:26 +0000 (01:31 -0400)]
monkeysphere-server gen-key creates keys with only the auth flag set.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 05:14:22 +0000 (01:14 -0400)]
added Ross Glover to credits (Ross, do you want to change your identification here somehow? send a patch!)
Daniel Kahn Gillmor [Thu, 19 Jun 2008 05:12:30 +0000 (01:12 -0400)]
more notes on work on george.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 04:35:41 +0000 (00:35 -0400)]
preparing for first tagged release (planned for george.riseup.net).
Daniel Kahn Gillmor [Thu, 19 Jun 2008 04:34:10 +0000 (00:34 -0400)]
added debian-package target to Makefile to simplify package building process. It gets a little weird and recursive; could probably be better-engineered.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 04:17:38 +0000 (00:17 -0400)]
added policy docs about george.riseup.net
Daniel Kahn Gillmor [Thu, 19 Jun 2008 04:13:39 +0000 (00:13 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Thu, 19 Jun 2008 03:58:01 +0000 (23:58 -0400)]
update george changelog
Jameson Graef Rollins [Thu, 19 Jun 2008 03:53:09 +0000 (23:53 -0400)]
Update TODO after merge.
Jameson Graef Rollins [Thu, 19 Jun 2008 03:48:45 +0000 (23:48 -0400)]
Merge commit 'micah/master'
Jameson Graef Rollins [Thu, 19 Jun 2008 03:48:37 +0000 (23:48 -0400)]
Update to new agreed default host key usage flag (only "a" required
for users and hosts).
Update TODO file.
Some other small changes.
Daniel Kahn Gillmor [Thu, 19 Jun 2008 03:42:41 +0000 (23:42 -0400)]
Merge commit 'micah/master'
Micah Anderson [Thu, 19 Jun 2008 03:36:22 +0000 (23:36 -0400)]
add todo items that we discussed as being important to address at some point
Micah Anderson [Thu, 19 Jun 2008 03:35:20 +0000 (23:35 -0400)]
Merge commit 'dkg/master'
Conflicts:
doc/MonkeySpec
Micah Anderson [Thu, 19 Jun 2008 03:33:18 +0000 (23:33 -0400)]
add george system changelog
Jameson Graef Rollins [Thu, 19 Jun 2008 03:31:35 +0000 (23:31 -0400)]
Add more nuanced keyserver checking policy, including a defered check
if key is not in keyring, but is in known_hosts.
Jameson Graef Rollins [Tue, 17 Jun 2008 20:07:25 +0000 (16:07 -0400)]
Very small change to comment field for authorized_keys lines.
Daniel Kahn Gillmor [Tue, 17 Jun 2008 18:52:31 +0000 (14:52 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Tue, 17 Jun 2008 18:39:13 +0000 (14:39 -0400)]
Fix small bug in man page.
Jameson Graef Rollins [Tue, 17 Jun 2008 18:35:06 +0000 (14:35 -0400)]
Add preliminary script to try to import a gpg private key into the ssh
agent.
Jameson Graef Rollins [Tue, 17 Jun 2008 18:33:19 +0000 (14:33 -0400)]
Update man pages and TODO.
Jameson Graef Rollins [Tue, 17 Jun 2008 15:11:27 +0000 (11:11 -0400)]
Major rework to remove all caching. Everything processed straight
from gpg keyring. Major code simplification and cleanup.
Daniel Kahn Gillmor [Tue, 17 Jun 2008 17:34:32 +0000 (13:34 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Tue, 17 Jun 2008 00:00:46 +0000 (20:00 -0400)]
Merge branch 'master' into no-cache
Conflicts:
src/common
src/monkeysphere
src/monkeysphere-ssh-proxycommand
Jameson Graef Rollins [Mon, 16 Jun 2008 23:54:12 +0000 (19:54 -0400)]
Total rework of uid processing: rid of cache directory
Jameson Graef Rollins [Mon, 16 Jun 2008 19:26:21 +0000 (15:26 -0400)]
Add extra variables to gen-key.
Jameson Graef Rollins [Mon, 16 Jun 2008 18:52:20 +0000 (14:52 -0400)]
Add log output for keyserver checking.
Fix bug in proxy command to export CHECK_KEYSERVER variable.
Jameson Graef Rollins [Mon, 16 Jun 2008 18:43:40 +0000 (14:43 -0400)]
Fix bug in configuration handling for HASH_KNOWN_HOSTS and
USER_CONTROLLED_AUTHORIZED_KEYS
Jameson Graef Rollins [Mon, 16 Jun 2008 18:07:33 +0000 (14:07 -0400)]
Allow for specification of whether to check keyserver.
Update proxy command to check keyserver if host not found in known_hosts.
Jameson Graef Rollins [Mon, 16 Jun 2008 18:07:33 +0000 (14:07 -0400)]
Allow for specification of whether to check keyserver.
Update proxy command to check keyserver if host not found in known_hosts.
Daniel Kahn Gillmor [Mon, 16 Jun 2008 14:24:39 +0000 (10:24 -0400)]
genericized the hex printing capabilities.
Daniel Kahn Gillmor [Mon, 16 Jun 2008 05:05:12 +0000 (01:05 -0400)]
openpgp2ssh whitespace and comment cleanup.
Daniel Kahn Gillmor [Mon, 16 Jun 2008 04:48:13 +0000 (00:48 -0400)]
openpgp2ssh now handles private key export for subkeys, not just public keys.
Jameson Graef Rollins [Sun, 15 Jun 2008 22:31:09 +0000 (18:31 -0400)]
fix some output formatting.
Jameson Graef Rollins [Sun, 15 Jun 2008 22:23:39 +0000 (18:23 -0400)]
Fix gen-subkey function for client.
Jameson Graef Rollins [Sun, 15 Jun 2008 15:46:07 +0000 (11:46 -0400)]
Separate required key capability variables for users and hosts.
Change default for user to be "a", and host to be "e a".
Jameson Graef Rollins [Sat, 14 Jun 2008 19:58:57 +0000 (15:58 -0400)]
Merge commit 'dkg/master'
Jameson Graef Rollins [Sat, 14 Jun 2008 19:58:34 +0000 (15:58 -0400)]
More work on the man pages.
Jameson Graef Rollins [Sat, 14 Jun 2008 19:58:19 +0000 (15:58 -0400)]
Add lsign-key to the trust_keys function so that the trusted key
actually ends up with full validity.
Daniel Kahn Gillmor [Sat, 14 Jun 2008 19:06:48 +0000 (15:06 -0400)]
cleaning up error output.
Jameson Graef Rollins [Fri, 13 Jun 2008 22:24:59 +0000 (18:24 -0400)]
Merge commit 'dkg/master'
Jameson Graef Rollins [Fri, 13 Jun 2008 21:47:34 +0000 (17:47 -0400)]
Add 'remove_userid' function, inverse of 'update_userids'.
Also, tweaked some of the output and man pages.
Jameson Graef Rollins [Fri, 13 Jun 2008 20:56:50 +0000 (16:56 -0400)]
make sure the authorized_user_ids file exists for users processed by
monkeysphere-server.
Jameson Graef Rollins [Fri, 13 Jun 2008 19:36:11 +0000 (15:36 -0400)]
More cleanup:
- Batch mode for trust_key function.
- fix some loggging.
- Clean up publish_server_key function -> STILL NON-FUNCTIONING
- more work on monkeysphere-ssh-proxycommand man page
Daniel Kahn Gillmor [Fri, 13 Jun 2008 19:12:07 +0000 (15:12 -0400)]
added TODO documentation with additional projects.
Jameson Graef Rollins [Fri, 13 Jun 2008 18:56:01 +0000 (14:56 -0400)]
Modify how logging is handled. Now send most everything to stderr.
Change to known_hosts hashing on by default.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 18:05:50 +0000 (14:05 -0400)]
added enw to developers.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 17:11:54 +0000 (13:11 -0400)]
invert the sense of the loglevel test. duh.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 17:05:42 +0000 (13:05 -0400)]
making openpgp2ssh less verbose.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 16:48:07 +0000 (12:48 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Fri, 13 Jun 2008 16:37:08 +0000 (12:37 -0400)]
fix bugs in ssh key export functions
Daniel Kahn Gillmor [Fri, 13 Jun 2008 16:25:58 +0000 (12:25 -0400)]
Merge commit 'jrollins/master'
Daniel Kahn Gillmor [Fri, 13 Jun 2008 16:16:13 +0000 (12:16 -0400)]
Added Greg to author list.
Jameson Graef Rollins [Fri, 13 Jun 2008 16:11:52 +0000 (12:11 -0400)]
add debian manpages for proxycommand
Jameson Graef Rollins [Fri, 13 Jun 2008 16:07:59 +0000 (12:07 -0400)]
fix bug if user monkeysphere home directory didn't exist.
Jameson Graef Rollins [Fri, 13 Jun 2008 15:57:50 +0000 (11:57 -0400)]
add man page for the ssh proxy command script. needs to be filled in.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 15:23:19 +0000 (11:23 -0400)]
including cache and config files in debian package.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 15:18:00 +0000 (11:18 -0400)]
monkeysphere debianization. Package can now be cleanly built with minimal lintian warnings.
Daniel Kahn Gillmor [Fri, 13 Jun 2008 14:32:09 +0000 (10:32 -0400)]
further debianization work. (also, made src/common non-executable,
since it is sourced, not executed).
Daniel Kahn Gillmor [Fri, 13 Jun 2008 13:41:16 +0000 (09:41 -0400)]
added top-level Makefile for ease of building with debhelper.
stupid whitespace cleanup in openpgp2ssh.c
Daniel Kahn Gillmor [Fri, 13 Jun 2008 13:34:16 +0000 (09:34 -0400)]
keytrans cleanup: getting rid of unimplemented/useless code.
Daniel Kahn Gillmor [Thu, 12 Jun 2008 21:32:53 +0000 (17:32 -0400)]
tweaking debian packaging instructions. Still far from done
Daniel Kahn Gillmor [Thu, 12 Jun 2008 21:25:55 +0000 (17:25 -0400)]
Major openpgp2ssh overhaul. It's an unforgiving and brittle tool, but
it should do what we expect it to do, and its major limitations should
be documented in the man page.
Daniel Kahn Gillmor [Thu, 12 Jun 2008 17:31:13 +0000 (13:31 -0400)]
reorganizing to prepare for transition to openpgp2ssh.
Daniel Kahn Gillmor [Thu, 12 Jun 2008 17:27:54 +0000 (13:27 -0400)]
massaging the language in openpgp2ssh(1).
Daniel Kahn Gillmor [Thu, 12 Jun 2008 14:30:05 +0000 (10:30 -0400)]
added ssh2gpg to Makefile
Daniel Kahn Gillmor [Thu, 12 Jun 2008 13:46:40 +0000 (09:46 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Thu, 12 Jun 2008 04:22:02 +0000 (00:22 -0400)]
Man page work.
- flesh out more of the man pages for monkeysphere and monkeysphere-server
- move the server cache directory to /var/cache, where it should be.
Daniel Kahn Gillmor [Tue, 27 May 2008 03:36:06 +0000 (23:36 -0400)]
fixing spelling, fqdns in MonkeySpec examples
Jameson Graef Rollins [Wed, 11 Jun 2008 21:31:12 +0000 (17:31 -0400)]
some very small tweaks to the openpgp2ssh man page
Daniel Kahn Gillmor [Wed, 11 Jun 2008 21:10:01 +0000 (17:10 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Wed, 11 Jun 2008 21:09:34 +0000 (17:09 -0400)]
Merge commit 'dkg/master'
Daniel Kahn Gillmor [Wed, 11 Jun 2008 21:08:43 +0000 (17:08 -0400)]
first pass at openpgp2ssh man page.
Jameson Graef Rollins [Wed, 11 Jun 2008 21:05:26 +0000 (17:05 -0400)]
quote some strings to not confuse checkbashisms
Daniel Kahn Gillmor [Wed, 11 Jun 2008 20:19:26 +0000 (16:19 -0400)]
Merge commit 'jrollins/master'
Daniel Kahn Gillmor [Wed, 11 Jun 2008 20:04:15 +0000 (16:04 -0400)]
fix typo in monkeysphere(1)
Jameson Graef Rollins [Wed, 11 Jun 2008 20:00:50 +0000 (16:00 -0400)]
add COPYING file
Jameson Graef Rollins [Wed, 11 Jun 2008 19:50:08 +0000 (15:50 -0400)]
removing old rhesus and howler components as they have been made
defunct by the new monkeysphere and monkeysphere-server tools (I
probably could have figured out a way to transition from them
smoother, but I didn't. oh well.).
Jameson Graef Rollins [Wed, 11 Jun 2008 19:17:54 +0000 (15:17 -0400)]
update README
Jameson Graef Rollins [Wed, 11 Jun 2008 18:08:29 +0000 (14:08 -0400)]
Updates to use the new openpgp2ssh program that dkg wrote.
Jameson Graef Rollins [Wed, 11 Jun 2008 16:00:36 +0000 (12:00 -0400)]
Fill out a little of the man pages.
Jameson Graef Rollins [Wed, 11 Jun 2008 02:25:32 +0000 (22:25 -0400)]
More cleanup of scripts
- fixed bug in gpg2ssh_tmp call
- broke out update_authorized_keys function
- cleaned up gen_key function for server
- added possible "Revoker:" parameter we might use
- started gen_ae_subkey function that for some reason isn't working
yet.
Jameson Graef Rollins [Tue, 10 Jun 2008 22:38:46 +0000 (18:38 -0400)]
Cleaned/fix up update-userid function. also some general cleanup.
Jameson Graef Rollins [Tue, 10 Jun 2008 21:34:08 +0000 (17:34 -0400)]
Add some skeletal debian packaging stuff and man pages, and moved conf
files to etc directory.
Jameson Graef Rollins [Tue, 10 Jun 2008 21:17:51 +0000 (17:17 -0400)]
New client/server components:
- broke out all common functions to "common" file
- put all client commands into "monkeysphere" script
- put all server commands into "monkeysphere-server" script
- moved all code into src directory to clean things up a bit
- this effectively makes obsolete rhesus and howler
- added proposed monkeysphere-ssh-proxycommand script that can be
called to update known_hosts from ssh ProxyCommand
- updated monkeysphere.conf to work as global client config
- added monkeysphere-server.conf for server config
Jameson Graef Rollins [Mon, 9 Jun 2008 05:50:49 +0000 (01:50 -0400)]
small tweak to MonkeySpec
Jameson Graef Rollins [Mon, 9 Jun 2008 05:45:31 +0000 (01:45 -0400)]
more work on rhesus
- known_hosts processing know processes known_hosts file directly
- uses "ssh-keygen -R" to remove keys as necessary
- known_hosts lines can be hashed if requested
- added ability to specify required key capability
- added ability to specify if user authorized_keys file is added
Jameson Graef Rollins [Sat, 7 Jun 2008 23:39:59 +0000 (19:39 -0400)]
Merge commit 'dkg/master'
Jameson Graef Rollins [Sat, 7 Jun 2008 23:39:55 +0000 (19:39 -0400)]
small change to correct usage of howler
Daniel Kahn Gillmor [Sat, 7 Jun 2008 23:27:51 +0000 (19:27 -0400)]
updated gpg2ssh to properly check for data encryption and authentication.