Jameson Graef Rollins [Sat, 15 Nov 2008 18:35:09 +0000 (13:35 -0500)]
change distribution to unstable in changelog.
Jameson Graef Rollins [Sat, 15 Nov 2008 18:17:31 +0000 (13:17 -0500)]
update changelog
Jameson Graef Rollins [Sat, 15 Nov 2008 18:08:12 +0000 (13:08 -0500)]
changed myself to be maintainer.
Jameson Graef Rollins [Mon, 10 Nov 2008 16:15:11 +0000 (11:15 -0500)]
add shebang and copyright to makefile.
Daniel Kahn Gillmor [Sun, 9 Nov 2008 23:10:18 +0000 (18:10 -0500)]
update changelog to reflect test tweaking.
Daniel Kahn Gillmor [Sun, 9 Nov 2008 23:08:23 +0000 (18:08 -0500)]
tests/basic ensure that any lingering sshd process will get killed off.
Daniel Kahn Gillmor [Sun, 9 Nov 2008 22:51:24 +0000 (17:51 -0500)]
Merge commit 'web/master'
Daniel Kahn Gillmor [Sun, 9 Nov 2008 22:45:48 +0000 (17:45 -0500)]
include the gnupg config files in FreeBSD port.
Jameson Graef Rollins [Wed, 5 Nov 2008 21:21:18 +0000 (16:21 -0500)]
small fix to broken web link.
Jameson Graef Rollins [Wed, 5 Nov 2008 16:34:35 +0000 (11:34 -0500)]
Merge commit 'micah/master'
Jameson Graef Rollins [Wed, 5 Nov 2008 16:34:06 +0000 (11:34 -0500)]
Merge commit 'dkg/master'
Conflicts:
website/download.mdwn
Micah Anderson [Tue, 4 Nov 2008 21:09:47 +0000 (16:09 -0500)]
create a new section of the getting started page that lets people know
that they should install monkeysphere software at this point in their
journey. It may be obvious, but I think in terms of providing a
step-by-step howto get started guide, the least assumptions of
obviousness we make, the better.
I also moved the information about making sure that you have the
gnutls requirements up to this install section.
Micah Anderson [Tue, 4 Nov 2008 20:45:09 +0000 (15:45 -0500)]
Reworked the download page to link from "add this key to your apt
configuration" to the /archive-key page, pushing the SecureApt
reference link into that page. This has a streamlining affect on new
users wanting to get started as it links directly to the archive-key
page where there are explicit instructions for how to do the archive
key verification and then the follow-up add to the apt keyring for
proper archive/package verification. The way it was before, you were
given the link to the more general SecureApt debian wiki page, which
was a lot of information, when in most cases people just want to know
what steps they need to know to do the verification/addition. However,
the link to the SecureApt page is valuable to reference, it just makes
more sense to be embedded in the page which explicitly deals with
that.
This also means I added information about how to add the key to the
apt keyring into the archive-key page. In doing so, I removed the
dkg-specific prompt (not because I dont like it, but because it would
have been funny for me to add more commands and have to manually
construct his prompt to maintain consistency on the page). Also, added
some output of commands so people have an idea what to expect.
Jameson Graef Rollins [Tue, 4 Nov 2008 17:44:11 +0000 (12:44 -0500)]
very minor changes to test script
Jameson Graef Rollins [Mon, 3 Nov 2008 05:36:10 +0000 (00:36 -0500)]
set the bash pipefail option in the test script to return the error
code of the first failed function in a pipe.
also add some new web pages that need to be filled out.
Jameson Graef Rollins [Mon, 3 Nov 2008 00:47:09 +0000 (19:47 -0500)]
work on website, cleaning up download page
Jameson Graef Rollins [Mon, 3 Nov 2008 00:04:44 +0000 (19:04 -0500)]
update download section of website to include freebsd info.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 22:04:43 +0000 (18:04 -0400)]
announce FreeBSD port!
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:50:34 +0000 (17:50 -0400)]
store gnutls patch for fully-enabling the monkeysphere on FreeBSD 7.1, which ships with GnuTLS 2.4.1
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:27:10 +0000 (17:27 -0400)]
make build-freebsd-distinfo match the changed location of the packaging.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:25:40 +0000 (17:25 -0400)]
reorganizing FreeBSD port to make it clearer where it in /usr/ports and to make it easier to rebuild the port
Daniel Kahn Gillmor [Thu, 30 Oct 2008 20:25:37 +0000 (16:25 -0400)]
Merge commit 'jrollins/master'
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:57:06 +0000 (15:57 -0400)]
freebsd packaging: leave gnupg-authentication.conf with superuser ownership. it should not need to be owned by monkeysphere.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:54:31 +0000 (15:54 -0400)]
build out directories for the monkeysphere that should be created on package installation.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:54:03 +0000 (15:54 -0400)]
do more testing to make sure that mktemp calls do not fail.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:42:02 +0000 (15:42 -0400)]
fixing freebsd patch to match current shipped config file.
Jameson Graef Rollins [Thu, 30 Oct 2008 19:29:07 +0000 (15:29 -0400)]
small change to cleanup website release note.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:04:24 +0000 (15:04 -0400)]
updating debian/changelog as we start work on version 0.20.
Jameson Graef Rollins [Thu, 30 Oct 2008 18:59:07 +0000 (14:59 -0400)]
Couple of small fixes to makefile.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:14:26 +0000 (12:14 -0400)]
fixing check for test suite.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:11:08 +0000 (12:11 -0400)]
fixing stupid typo.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:10:27 +0000 (12:10 -0400)]
add checks to make sure that the test suite will be able to run.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:04:02 +0000 (12:04 -0400)]
asking reprepro to keep older unreferenced files around in the archive. This should help our porters, so that they can have a canonical place to download tarballs from even if a new version has been released.
Jameson Graef Rollins [Thu, 30 Oct 2008 03:48:16 +0000 (23:48 -0400)]
fix my email address in debian/control.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 22:19:35 +0000 (18:19 -0400)]
added latest george updates to changelog.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 18:42:28 +0000 (14:42 -0400)]
link "why" web page to the alternate PKI discussion.
Jameson Graef Rollins [Wed, 29 Oct 2008 18:22:32 +0000 (14:22 -0400)]
fix small bug in the packaging about man7 directory installation.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 07:09:38 +0000 (03:09 -0400)]
updated freebsd data for 0.19
Daniel Kahn Gillmor [Wed, 29 Oct 2008 07:09:13 +0000 (03:09 -0400)]
added release notes for 0.19-1
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:49:44 +0000 (02:49 -0400)]
preparing for 0.19-1 release to fix config file goofiness.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:46:44 +0000 (02:46 -0400)]
fixing symlinks created in packaging; updated FreeBSD port to handle centrally-linked gpg.conf files too.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:17:54 +0000 (02:17 -0400)]
added comments and changelog notes about why the test script sets $DISPLAY
Jameson Graef Rollins [Wed, 29 Oct 2008 05:40:21 +0000 (01:40 -0400)]
Merge commit 'dkg/master'
Jameson Graef Rollins [Wed, 29 Oct 2008 05:38:39 +0000 (01:38 -0400)]
set DISPLAY in test suite so that passphrase prompting falls through.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 05:02:10 +0000 (01:02 -0400)]
added release notes for 0.18-1.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 04:42:02 +0000 (00:42 -0400)]
preparing for 0.18-1 release.
Jameson Graef Rollins [Wed, 29 Oct 2008 04:19:12 +0000 (00:19 -0400)]
finish consolidating test suite ssh test into single function, and
add more tests (for permission checking).
Jameson Graef Rollins [Wed, 29 Oct 2008 03:38:07 +0000 (23:38 -0400)]
move away from using MONKEYSPHERE_SERVER_CONFIG in test suite.
Jameson Graef Rollins [Wed, 29 Oct 2008 03:29:52 +0000 (23:29 -0400)]
tweak to test to not include user authorized_keys file.
Jameson Graef Rollins [Wed, 29 Oct 2008 03:27:11 +0000 (23:27 -0400)]
move to using 'none' for the RAW_AUTHORIZED_KEY value to use for *not*
including a user-controlled authorized_keys file.
more fixes on test suite.
Jameson Graef Rollins [Wed, 29 Oct 2008 02:32:56 +0000 (22:32 -0400)]
touch known_hosts file in monkeysphere so that permission checking
down't fail. remove spurios directory in monkeysphere.dirs. more
work on test suite.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 01:27:47 +0000 (21:27 -0400)]
cleaning up basic test.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 01:12:35 +0000 (21:12 -0400)]
enforce error checking when transferring the authorized keys file. If the transfer fails, remove any existing target file so that we fail closed.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 00:13:19 +0000 (20:13 -0400)]
cleaning up debian packaging.
Jameson Graef Rollins [Tue, 28 Oct 2008 23:57:10 +0000 (19:57 -0400)]
more work on test suite, and add new tmpdir to monkeysphere.dirs.
Jameson Graef Rollins [Tue, 28 Oct 2008 23:20:14 +0000 (19:20 -0400)]
chown authorized_keys files as jrollins, and add monkeysphere tmpdir in SYSDATADIR, for atomic moves of authorized_keys.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:26:10 +0000 (18:26 -0400)]
testing: tighten up the umask before sshd launch, so that the socket is not exposed during the test.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:18:24 +0000 (18:18 -0400)]
test suite now auto-detects which flavor of prng support GPG uses.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:04:51 +0000 (18:04 -0400)]
do not choke at end of test suite if no sshd was ever launched.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:01:21 +0000 (18:01 -0400)]
make sure that the /etc/monkeysphere/gpg-*.conf are placed during package installation.
Jameson Graef Rollins [Tue, 28 Oct 2008 19:04:04 +0000 (15:04 -0400)]
add more debugging output.
Jameson Graef Rollins [Tue, 28 Oct 2008 18:37:04 +0000 (14:37 -0400)]
fix bugs in authorized_* file permission checking.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 13:56:18 +0000 (09:56 -0400)]
added release notes for 0.17-1
Daniel Kahn Gillmor [Tue, 28 Oct 2008 06:05:01 +0000 (02:05 -0400)]
update changelog in preparation for 0.17 release.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 05:58:54 +0000 (01:58 -0400)]
tests now avoid prompting for default identity files.
Jameson Graef Rollins [Mon, 27 Oct 2008 18:57:27 +0000 (14:57 -0400)]
extend test suite to check for authentication denial when
authorized_user_ids has been removed.
Jameson Graef Rollins [Mon, 27 Oct 2008 13:33:21 +0000 (09:33 -0400)]
updated gnutls info on download page.
Jameson Graef Rollins [Mon, 27 Oct 2008 11:52:10 +0000 (07:52 -0400)]
fix missing log level in config files.
Jameson Graef Rollins [Mon, 27 Oct 2008 11:39:58 +0000 (07:39 -0400)]
Move to using empty string for not using a user-controlled
authorized_keys file in RAW_AUTHORIZED_KEYS variable.
Fix spelling mistakes and wording in config files.
Jameson Graef Rollins [Mon, 27 Oct 2008 03:10:14 +0000 (23:10 -0400)]
Merge commit 'dkg/master'
Jameson Graef Rollins [Mon, 27 Oct 2008 02:16:32 +0000 (22:16 -0400)]
comment to bug about parsing ssh config files.
Jameson Graef Rollins [Mon, 27 Oct 2008 02:07:07 +0000 (22:07 -0400)]
comment to bug about existing invalid authentication keys.
Jameson Graef Rollins [Mon, 27 Oct 2008 01:54:03 +0000 (21:54 -0400)]
close bug about problem in authorized_keys generation in monkeysphere-server.
Jameson Graef Rollins [Mon, 27 Oct 2008 01:50:15 +0000 (21:50 -0400)]
Changes to fix bug in authorized_keys file generation in
monkeysphere-server update-users.
Daniel Kahn Gillmor [Mon, 27 Oct 2008 01:19:34 +0000 (21:19 -0400)]
tracking freebsd packaging from anarcat.
Daniel Kahn Gillmor [Mon, 27 Oct 2008 00:17:13 +0000 (20:17 -0400)]
Removed the gnutls component from our APT repo, since gnutls 2.6 is now in debian/unstable. Documented the changes, and changed the warning message that monkeysphere emits too.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 23:45:44 +0000 (19:45 -0400)]
added notes about recent work on george.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 23:42:15 +0000 (19:42 -0400)]
included the full GPG transcript of granting trust in the User QuickStart guide.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 22:58:31 +0000 (18:58 -0400)]
Merge commit 'micah/master'
Daniel Kahn Gillmor [Sun, 26 Oct 2008 22:47:19 +0000 (18:47 -0400)]
Merge commit 'jrollins/master'
Jameson Graef Rollins [Sun, 26 Oct 2008 21:58:00 +0000 (17:58 -0400)]
add comment to bug.
Micah Anderson [Sun, 26 Oct 2008 16:34:56 +0000 (12:34 -0400)]
Merge commit 'dkg/master'
Micah Anderson [Sun, 26 Oct 2008 16:09:22 +0000 (12:09 -0400)]
add some documentation to the user section about establishing trust
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:58:45 +0000 (03:58 -0400)]
updated freebsd ports information.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:51:55 +0000 (03:51 -0400)]
fixing build-releasenote so that it updates the tarball download link as well.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:38:51 +0000 (03:38 -0400)]
fixing download link for latest released tarball.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:35:27 +0000 (03:35 -0400)]
added 0.16-1 release announcement, plus new bug.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:07:57 +0000 (03:07 -0400)]
packaging preparations for 0.16-1 release.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:02:11 +0000 (03:02 -0400)]
testing: A bit more fine-tuning, so that the test suite should successfully complete without any user interaction.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:56:03 +0000 (02:56 -0400)]
testing: setting up the fake testuser account with an authorized_user_id.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:40:29 +0000 (02:40 -0400)]
testing: change order of operations to make sure that authentication subkey is available during authorized_keys update.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:37:18 +0000 (02:37 -0400)]
testing: setting up the authorized_keys for testuser.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:28:45 +0000 (02:28 -0400)]
testing: fixing some bash escaping, adding in one last FIXME
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:24:01 +0000 (02:24 -0400)]
testing: added a passphrase (abc123) for the testuser private key; supplied a phony SSH_ASKPASS to provide the password when needed.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:59:55 +0000 (01:59 -0400)]
testing: moved the LogLevel debugging for ssh into config files, added an ssh-agent to the final ssh invocation.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:51:13 +0000 (01:51 -0400)]
testing: move ProxyCommand into a simple shell script to ease invocation (shell logical operators do not work directly in ProxyCommand argument).
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:23:21 +0000 (01:23 -0400)]
testing switching back to SSHD_PID, since the jobspec does not seem to work through a trap.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:14:49 +0000 (01:14 -0400)]
testing: only try to kill backgrounded sshd if process exists.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:12:05 +0000 (01:12 -0400)]
testing: using jobspec instead of SSHD_PID
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:07:41 +0000 (01:07 -0400)]
testing: fix ssh_config var UserKnownHosts to UserKnownHostsFile.