1 monkeysphere (0.9-1) experimental; urgency=low
3 * fixed bug in user id processing that prevented bad primary keys from
4 being properly removed.
6 -- Jameson Graef Rollins <jrollins@phys.columbia.edu> Mon, 18 Aug 2008 10:13:36 -0700
8 monkeysphere (0.8-1) experimental; urgency=low
10 [ Daniel Kahn Gillmor ]
11 * debian/control: switched Vcs-Git to use "centralized" git repo instead
13 * More monkeysphere-server diagnostics
14 * monkeysphere --gen-subkey now guesses what KeyID you meant.
15 * added Recommends: ssh-askpass to ensure monkeysphere --gen-subkey
16 works sensibly under X11
18 [ Jameson Graef Rollins ]
19 * fix another bug when known_hosts files are missing.
20 * sort processed keys so that "good" keys are processed after "bad"
21 keys. This will prevent malicious bad keys from causing good keys to
22 be removed from key files.
23 * enabled host key publication.
24 * added checking of gpg.conf for keyserver
25 * new functions to add/revoke host key user IDs
26 * improved list-certifiers function (now non-privileged)
28 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Mon, 18 Aug 2008 12:43:37 -0400
30 monkeysphere (0.7-1) experimental; urgency=low
32 [ Daniel Kahn Gillmor ]
33 * Added monkeysphere-server diagnostics subcommand.
34 * rebuilding package using Format: 3.0 (git)
36 [ Jameson Graef Rollins ]
37 * fix how check for file modification is done.
38 * rework out user id processing is done to provide more verbose log
40 * fix bug in monkeysphpere update-authorized_keys subcommand where
41 disallowed keys failed to be remove from authorized_keys file.
43 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Mon, 04 Aug 2008 10:47:41 -0400
45 monkeysphere (0.6-1) experimental; urgency=low
47 [ Jameson Graef Rollins ]
48 * Fix bug in return on error of ssh-proxycommand.
50 [ Daniel Kahn Gillmor ]
51 * try socat if netcat is not available in proxycommand.
53 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Tue, 29 Jul 2008 10:27:20 -0400
55 monkeysphere (0.5-1) experimental; urgency=low
57 [ Daniel Kahn Gillmor ]
58 * updated READMEs to match current state of code
60 [ Jameson Graef Rollins ]
61 * Tweak how empty authorized_user_ids and known_hosts files are handled.
62 * Do not fail when authorized_user_ids or known_hosts file is not found.
64 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Mon, 28 Jul 2008 10:50:02 -0400
66 monkeysphere (0.4-1) experimental; urgency=low
68 [ Daniel Kahn Gillmor ]
70 * Fixed return code error in openpgp2ssh
72 [ Jameson Graef Rollins ]
73 * Privilege separation: use monkeysphere user to handle maintenance of
74 the gnupg authentication keychain for server.
75 * Improved certifier key management.
76 * Fixed variable scoping and config file precedence.
77 * Add options for key generation and add-certifier functions.
78 * Fix return codes for known_host and authorized_keys updating
80 * Add write permission check on authorized_keys, known_hosts, and
81 authorized_user_ids files.
83 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Tue, 22 Jul 2008 21:50:17 -0400
85 monkeysphere (0.3-1) experimental; urgency=low
87 [ Daniel Kahn Gillmor ]
90 [ Jameson Graef Rollins ]
91 * Move files in /var/cache/monkeysphere and GNUPGHOME for server to
92 the more appropriate /var/lib/monkeysphere.
94 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Tue, 24 Jun 2008 00:55:29 -0400
96 monkeysphere (0.2-2) experimental; urgency=low
98 * added lockfile-progs dependency
100 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Mon, 23 Jun 2008 19:34:05 -0400
102 monkeysphere (0.2-1) experimental; urgency=low
104 [ Daniel Kahn Gillmor ]
105 * openpgp2ssh now supports specifying keys by full fingerprint.
107 [ Jameson Graef Rollins ]
108 * Add AUTHORIZED_USER_IDS config variable for server, which defaults to
109 %h/.config/monkeysphere/authorized_user_ids, instead of
110 /etc/monkeysphere/authorized_user_ids.
111 * Remove {update,remove}-userids functions, since we decided they
112 weren't useful enough to be worth maintaining.
113 * Better handling of unknown users in server update-users
114 * Add file locking when modifying known_hosts or authorized_keys
115 * Better failure/prompting for gen-subkey
116 * Add ability to set any owner trust level for keys in server keychain.
118 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Mon, 23 Jun 2008 17:03:19 -0400
120 monkeysphere (0.1-1) experimental; urgency=low
122 * First release of debian package for monkeysphere.
123 * This is experimental -- please report bugs!
125 -- Daniel Kahn Gillmor <dkg-debian.org@fifthhorseman.net> Thu, 19 Jun 2008 00:34:53 -0400