monkeysphere.git
15 years agocreate a new section of the getting started page that lets people know
Micah Anderson [Tue, 4 Nov 2008 21:09:47 +0000 (16:09 -0500)]
create a new section of the getting started page that lets people know
that they should install monkeysphere software at this point in their
journey. It may be obvious, but I think in terms of providing a
step-by-step howto get started guide, the least assumptions of
obviousness we make, the better.

I also moved the information about making sure that you have the
gnutls requirements up to this install section.

15 years agoReworked the download page to link from "add this key to your apt
Micah Anderson [Tue, 4 Nov 2008 20:45:09 +0000 (15:45 -0500)]
Reworked the download page to link from "add this key to your apt
configuration" to the /archive-key page, pushing the SecureApt
reference link into that page. This has a streamlining affect on new
users wanting to get started as it links directly to the archive-key
page where there are explicit instructions for how to do the archive
key verification and then the follow-up add to the apt keyring for
proper archive/package verification. The way it was before, you were
given the link to the more general SecureApt debian wiki page, which
was a lot of information, when in most cases people just want to know
what steps they need to know to do the verification/addition. However,
the link to the SecureApt page is valuable to reference, it just makes
more sense to be embedded in the page which explicitly deals with
that.

This also means I added information about how to add the key to the
apt keyring into the archive-key page. In doing so, I removed the
dkg-specific prompt (not because I dont like it, but because it would
have been funny for me to add more commands and have to manually
construct his prompt to maintain consistency on the page). Also, added
some output of commands so people have an idea what to expect.

15 years agoupdate download section of website to include freebsd info.
Jameson Graef Rollins [Mon, 3 Nov 2008 00:04:44 +0000 (19:04 -0500)]
update download section of website to include freebsd info.

15 years agoannounce FreeBSD port!
Daniel Kahn Gillmor [Thu, 30 Oct 2008 22:04:43 +0000 (18:04 -0400)]
announce FreeBSD port!

15 years agostore gnutls patch for fully-enabling the monkeysphere on FreeBSD 7.1, which ships...
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:50:34 +0000 (17:50 -0400)]
store gnutls patch for fully-enabling the monkeysphere on FreeBSD 7.1, which ships with GnuTLS 2.4.1

15 years agomake build-freebsd-distinfo match the changed location of the packaging.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:27:10 +0000 (17:27 -0400)]
make build-freebsd-distinfo match the changed location of the packaging.

15 years agoreorganizing FreeBSD port to make it clearer where it in /usr/ports and to make it...
Daniel Kahn Gillmor [Thu, 30 Oct 2008 21:25:40 +0000 (17:25 -0400)]
reorganizing FreeBSD port to make it clearer where it in /usr/ports and to make it easier to rebuild the port

15 years agoMerge commit 'jrollins/master'
Daniel Kahn Gillmor [Thu, 30 Oct 2008 20:25:37 +0000 (16:25 -0400)]
Merge commit 'jrollins/master'

15 years agofreebsd packaging: leave gnupg-authentication.conf with superuser ownership. it...
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:57:06 +0000 (15:57 -0400)]
freebsd packaging: leave gnupg-authentication.conf with superuser ownership.  it should not need to be owned by monkeysphere.

15 years agobuild out directories for the monkeysphere that should be created on package installa...
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:54:31 +0000 (15:54 -0400)]
build out directories for the monkeysphere that should be created on package installation.

15 years agodo more testing to make sure that mktemp calls do not fail.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:54:03 +0000 (15:54 -0400)]
do more testing to make sure that mktemp calls do not fail.

15 years agofixing freebsd patch to match current shipped config file.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:42:02 +0000 (15:42 -0400)]
fixing freebsd patch to match current shipped config file.

15 years agosmall change to cleanup website release note.
Jameson Graef Rollins [Thu, 30 Oct 2008 19:29:07 +0000 (15:29 -0400)]
small change to cleanup website release note.

15 years agoupdating debian/changelog as we start work on version 0.20.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 19:04:24 +0000 (15:04 -0400)]
updating debian/changelog as we start work on version 0.20.

15 years agoCouple of small fixes to makefile.
Jameson Graef Rollins [Thu, 30 Oct 2008 18:59:07 +0000 (14:59 -0400)]
Couple of small fixes to makefile.

15 years agofixing check for test suite.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:14:26 +0000 (12:14 -0400)]
fixing check for test suite.

15 years agofixing stupid typo.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:11:08 +0000 (12:11 -0400)]
fixing stupid typo.

15 years agoadd checks to make sure that the test suite will be able to run.
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:10:27 +0000 (12:10 -0400)]
add checks to make sure that the test suite will be able to run.

15 years agoasking reprepro to keep older unreferenced files around in the archive. This should...
Daniel Kahn Gillmor [Thu, 30 Oct 2008 16:04:02 +0000 (12:04 -0400)]
asking reprepro to keep older unreferenced files around in the archive.  This should help our porters, so that they can have a canonical place to download tarballs from even if a new version has been released.

15 years agofix my email address in debian/control.
Jameson Graef Rollins [Thu, 30 Oct 2008 03:48:16 +0000 (23:48 -0400)]
fix my email address in debian/control.

15 years agoadded latest george updates to changelog.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 22:19:35 +0000 (18:19 -0400)]
added latest george updates to changelog.

15 years agolink "why" web page to the alternate PKI discussion.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 18:42:28 +0000 (14:42 -0400)]
link "why" web page to the alternate PKI discussion.

15 years agofix small bug in the packaging about man7 directory installation.
Jameson Graef Rollins [Wed, 29 Oct 2008 18:22:32 +0000 (14:22 -0400)]
fix small bug in the packaging about man7 directory installation.

15 years agoupdated freebsd data for 0.19 monkeysphere_0.19-1
Daniel Kahn Gillmor [Wed, 29 Oct 2008 07:09:38 +0000 (03:09 -0400)]
updated freebsd data for 0.19

15 years agoadded release notes for 0.19-1
Daniel Kahn Gillmor [Wed, 29 Oct 2008 07:09:13 +0000 (03:09 -0400)]
added release notes for 0.19-1

15 years agopreparing for 0.19-1 release to fix config file goofiness.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:49:44 +0000 (02:49 -0400)]
preparing for 0.19-1 release to fix config file goofiness.

15 years agofixing symlinks created in packaging; updated FreeBSD port to handle centrally-linked...
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:46:44 +0000 (02:46 -0400)]
fixing symlinks created in packaging; updated FreeBSD port to handle centrally-linked gpg.conf files too.

15 years agoadded comments and changelog notes about why the test script sets $DISPLAY
Daniel Kahn Gillmor [Wed, 29 Oct 2008 06:17:54 +0000 (02:17 -0400)]
added comments and changelog notes about why the test script sets $DISPLAY

15 years agoMerge commit 'dkg/master'
Jameson Graef Rollins [Wed, 29 Oct 2008 05:40:21 +0000 (01:40 -0400)]
Merge commit 'dkg/master'

15 years agoset DISPLAY in test suite so that passphrase prompting falls through.
Jameson Graef Rollins [Wed, 29 Oct 2008 05:38:39 +0000 (01:38 -0400)]
set DISPLAY in test suite so that passphrase prompting falls through.

15 years agoadded release notes for 0.18-1.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 05:02:10 +0000 (01:02 -0400)]
added release notes for 0.18-1.

15 years agopreparing for 0.18-1 release. monkeysphere_0.18-1
Daniel Kahn Gillmor [Wed, 29 Oct 2008 04:42:02 +0000 (00:42 -0400)]
preparing for 0.18-1 release.

15 years agofinish consolidating test suite ssh test into single function, and
Jameson Graef Rollins [Wed, 29 Oct 2008 04:19:12 +0000 (00:19 -0400)]
finish consolidating test suite ssh test into single function, and
add more tests (for permission checking).

15 years agomove away from using MONKEYSPHERE_SERVER_CONFIG in test suite.
Jameson Graef Rollins [Wed, 29 Oct 2008 03:38:07 +0000 (23:38 -0400)]
move away from using MONKEYSPHERE_SERVER_CONFIG in test suite.

15 years agotweak to test to not include user authorized_keys file.
Jameson Graef Rollins [Wed, 29 Oct 2008 03:29:52 +0000 (23:29 -0400)]
tweak to test to not include user authorized_keys file.

15 years agomove to using 'none' for the RAW_AUTHORIZED_KEY value to use for *not*
Jameson Graef Rollins [Wed, 29 Oct 2008 03:27:11 +0000 (23:27 -0400)]
move to using 'none' for the RAW_AUTHORIZED_KEY value to use for *not*
including a user-controlled authorized_keys file.
more fixes on test suite.

15 years agotouch known_hosts file in monkeysphere so that permission checking
Jameson Graef Rollins [Wed, 29 Oct 2008 02:32:56 +0000 (22:32 -0400)]
touch known_hosts file in monkeysphere so that permission checking
down't fail.  remove spurios directory in monkeysphere.dirs.  more
work on test suite.

15 years agocleaning up basic test.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 01:27:47 +0000 (21:27 -0400)]
cleaning up basic test.

15 years agoenforce error checking when transferring the authorized keys file. If the transfer...
Daniel Kahn Gillmor [Wed, 29 Oct 2008 01:12:35 +0000 (21:12 -0400)]
enforce error checking when transferring the authorized keys file.  If the transfer fails, remove any existing target file so that we fail closed.

15 years agocleaning up debian packaging.
Daniel Kahn Gillmor [Wed, 29 Oct 2008 00:13:19 +0000 (20:13 -0400)]
cleaning up debian packaging.

15 years agomore work on test suite, and add new tmpdir to monkeysphere.dirs.
Jameson Graef Rollins [Tue, 28 Oct 2008 23:57:10 +0000 (19:57 -0400)]
more work on test suite, and add new tmpdir to monkeysphere.dirs.

15 years agochown authorized_keys files as jrollins, and add monkeysphere tmpdir in SYSDATADIR...
Jameson Graef Rollins [Tue, 28 Oct 2008 23:20:14 +0000 (19:20 -0400)]
chown authorized_keys files as jrollins, and add monkeysphere tmpdir in SYSDATADIR, for atomic moves of authorized_keys.

15 years agotesting: tighten up the umask before sshd launch, so that the socket is not exposed...
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:26:10 +0000 (18:26 -0400)]
testing: tighten up the umask before sshd launch, so that the socket is not exposed during the test.

15 years agotest suite now auto-detects which flavor of prng support GPG uses.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:18:24 +0000 (18:18 -0400)]
test suite now auto-detects which flavor of prng support GPG uses.

15 years agodo not choke at end of test suite if no sshd was ever launched.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:04:51 +0000 (18:04 -0400)]
do not choke at end of test suite if no sshd was ever launched.

15 years agomake sure that the /etc/monkeysphere/gpg-*.conf are placed during package installation.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 22:01:21 +0000 (18:01 -0400)]
make sure that the /etc/monkeysphere/gpg-*.conf are placed during package installation.

15 years agoadd more debugging output.
Jameson Graef Rollins [Tue, 28 Oct 2008 19:04:04 +0000 (15:04 -0400)]
add more debugging output.

15 years agofix bugs in authorized_* file permission checking.
Jameson Graef Rollins [Tue, 28 Oct 2008 18:37:04 +0000 (14:37 -0400)]
fix bugs in authorized_* file permission checking.

15 years agoadded release notes for 0.17-1
Daniel Kahn Gillmor [Tue, 28 Oct 2008 13:56:18 +0000 (09:56 -0400)]
added release notes for 0.17-1

15 years agoupdate changelog in preparation for 0.17 release. monkeysphere_0.17-1
Daniel Kahn Gillmor [Tue, 28 Oct 2008 06:05:01 +0000 (02:05 -0400)]
update changelog in preparation for 0.17 release.

15 years agotests now avoid prompting for default identity files.
Daniel Kahn Gillmor [Tue, 28 Oct 2008 05:58:54 +0000 (01:58 -0400)]
tests now avoid prompting for default identity files.

15 years agoextend test suite to check for authentication denial when
Jameson Graef Rollins [Mon, 27 Oct 2008 18:57:27 +0000 (14:57 -0400)]
extend test suite to check for authentication denial when
authorized_user_ids has been removed.

15 years agoupdated gnutls info on download page.
Jameson Graef Rollins [Mon, 27 Oct 2008 13:33:21 +0000 (09:33 -0400)]
updated gnutls info on download page.

15 years agofix missing log level in config files.
Jameson Graef Rollins [Mon, 27 Oct 2008 11:52:10 +0000 (07:52 -0400)]
fix missing log level in config files.

15 years agoMove to using empty string for not using a user-controlled
Jameson Graef Rollins [Mon, 27 Oct 2008 11:39:58 +0000 (07:39 -0400)]
Move to using empty string for not using a user-controlled
authorized_keys file in RAW_AUTHORIZED_KEYS variable.
Fix spelling mistakes and wording in config files.

15 years agoMerge commit 'dkg/master'
Jameson Graef Rollins [Mon, 27 Oct 2008 03:10:14 +0000 (23:10 -0400)]
Merge commit 'dkg/master'

15 years agocomment to bug about parsing ssh config files.
Jameson Graef Rollins [Mon, 27 Oct 2008 02:16:32 +0000 (22:16 -0400)]
comment to bug about parsing ssh config files.

15 years agocomment to bug about existing invalid authentication keys.
Jameson Graef Rollins [Mon, 27 Oct 2008 02:07:07 +0000 (22:07 -0400)]
comment to bug about existing invalid authentication keys.

15 years agoclose bug about problem in authorized_keys generation in monkeysphere-server.
Jameson Graef Rollins [Mon, 27 Oct 2008 01:54:03 +0000 (21:54 -0400)]
close bug about problem in authorized_keys generation in monkeysphere-server.

15 years agoChanges to fix bug in authorized_keys file generation in
Jameson Graef Rollins [Mon, 27 Oct 2008 01:50:15 +0000 (21:50 -0400)]
Changes to fix bug in authorized_keys file generation in
monkeysphere-server update-users.

15 years agotracking freebsd packaging from anarcat.
Daniel Kahn Gillmor [Mon, 27 Oct 2008 01:19:34 +0000 (21:19 -0400)]
tracking freebsd packaging from anarcat.

15 years agoRemoved the gnutls component from our APT repo, since gnutls 2.6 is now in debian...
Daniel Kahn Gillmor [Mon, 27 Oct 2008 00:17:13 +0000 (20:17 -0400)]
Removed the gnutls component from our APT repo, since gnutls 2.6 is now in debian/unstable.  Documented the changes, and changed the warning message that monkeysphere emits too.

15 years agoadded notes about recent work on george.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 23:45:44 +0000 (19:45 -0400)]
added notes about recent work on george.

15 years agoincluded the full GPG transcript of granting trust in the User QuickStart guide.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 23:42:15 +0000 (19:42 -0400)]
included the full GPG transcript of granting trust in the User QuickStart guide.

15 years agoMerge commit 'micah/master'
Daniel Kahn Gillmor [Sun, 26 Oct 2008 22:58:31 +0000 (18:58 -0400)]
Merge commit 'micah/master'

15 years agoMerge commit 'jrollins/master'
Daniel Kahn Gillmor [Sun, 26 Oct 2008 22:47:19 +0000 (18:47 -0400)]
Merge commit 'jrollins/master'

15 years agoadd comment to bug.
Jameson Graef Rollins [Sun, 26 Oct 2008 21:58:00 +0000 (17:58 -0400)]
add comment to bug.

15 years agoMerge commit 'dkg/master'
Micah Anderson [Sun, 26 Oct 2008 16:34:56 +0000 (12:34 -0400)]
Merge commit 'dkg/master'

15 years agoadd some documentation to the user section about establishing trust
Micah Anderson [Sun, 26 Oct 2008 16:09:22 +0000 (12:09 -0400)]
add some documentation to the user section about establishing trust

15 years agoupdated freebsd ports information.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:58:45 +0000 (03:58 -0400)]
updated freebsd ports information.

15 years agofixing build-releasenote so that it updates the tarball download link as well.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:51:55 +0000 (03:51 -0400)]
fixing build-releasenote so that it updates the tarball download link as well.

15 years agofixing download link for latest released tarball.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:38:51 +0000 (03:38 -0400)]
fixing download link for latest released tarball.

15 years agoadded 0.16-1 release announcement, plus new bug.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:35:27 +0000 (03:35 -0400)]
added 0.16-1 release announcement, plus new bug.

15 years agopackaging preparations for 0.16-1 release. monkeysphere_0.16-1
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:07:57 +0000 (03:07 -0400)]
packaging preparations for 0.16-1 release.

15 years agotesting: A bit more fine-tuning, so that the test suite should successfully complete...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 07:02:11 +0000 (03:02 -0400)]
testing: A bit more fine-tuning, so that the test suite should successfully complete without any user interaction.

15 years agotesting: setting up the fake testuser account with an authorized_user_id.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:56:03 +0000 (02:56 -0400)]
testing: setting up the fake testuser account with an authorized_user_id.

15 years agotesting: change order of operations to make sure that authentication subkey is availa...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:40:29 +0000 (02:40 -0400)]
testing: change order of operations to make sure that authentication subkey is available during authorized_keys update.

15 years agotesting: setting up the authorized_keys for testuser.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:37:18 +0000 (02:37 -0400)]
testing: setting up the authorized_keys for testuser.

15 years agotesting: fixing some bash escaping, adding in one last FIXME
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:28:45 +0000 (02:28 -0400)]
testing: fixing some bash escaping, adding in one last FIXME

15 years agotesting: added a passphrase (abc123) for the testuser private key; supplied a phony...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 06:24:01 +0000 (02:24 -0400)]
testing: added a passphrase (abc123) for the testuser private key; supplied a phony SSH_ASKPASS to provide the password when needed.

15 years agotesting: moved the LogLevel debugging for ssh into config files, added an ssh-agent...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:59:55 +0000 (01:59 -0400)]
testing: moved the LogLevel debugging for ssh into config files, added an ssh-agent to the final ssh invocation.

15 years agotesting: move ProxyCommand into a simple shell script to ease invocation (shell logic...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:51:13 +0000 (01:51 -0400)]
testing: move ProxyCommand into a simple shell script to ease invocation (shell logical operators do not work directly in ProxyCommand argument).

15 years agotesting switching back to SSHD_PID, since the jobspec does not seem to work through...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:23:21 +0000 (01:23 -0400)]
testing switching back to SSHD_PID, since the jobspec does not seem to work through a trap.

15 years agotesting: only try to kill backgrounded sshd if process exists.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:14:49 +0000 (01:14 -0400)]
testing: only try to kill backgrounded sshd if process exists.

15 years agotesting: using jobspec instead of SSHD_PID
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:12:05 +0000 (01:12 -0400)]
testing: using jobspec instead of SSHD_PID

15 years agotesting: fix ssh_config var UserKnownHosts to UserKnownHostsFile.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 05:07:41 +0000 (01:07 -0400)]
testing: fix ssh_config var UserKnownHosts to UserKnownHostsFile.

15 years agotesting: adding temporary monkeysphere config and ssh config.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 04:58:33 +0000 (00:58 -0400)]
testing: adding temporary monkeysphere config and ssh config.

15 years agotesting: make final ssh command more verbose; supplying a default empty password...
Daniel Kahn Gillmor [Sun, 26 Oct 2008 04:42:35 +0000 (00:42 -0400)]
testing: make final ssh command more verbose; supplying a default empty password for gen-subkey.

15 years agotesting: transfer permissions of home directories for testuser and admin.
Daniel Kahn Gillmor [Sun, 26 Oct 2008 04:32:00 +0000 (00:32 -0400)]
testing: transfer permissions of home directories for testuser and admin.

15 years agorepaired admin keyring
Daniel Kahn Gillmor [Sat, 25 Oct 2008 23:46:17 +0000 (19:46 -0400)]
repaired admin keyring

15 years agoMerge commit 'jrollins/master'
Daniel Kahn Gillmor [Sat, 25 Oct 2008 23:32:28 +0000 (19:32 -0400)]
Merge commit 'jrollins/master'

15 years agofreebsd port: changes from anarcat
Daniel Kahn Gillmor [Sat, 25 Oct 2008 23:28:19 +0000 (19:28 -0400)]
freebsd port: changes from anarcat

15 years agomore test suite fixes.
Jameson Graef Rollins [Sat, 25 Oct 2008 22:48:32 +0000 (18:48 -0400)]
more test suite fixes.

15 years agomore work on test suite.
Jameson Graef Rollins [Sat, 25 Oct 2008 22:16:38 +0000 (18:16 -0400)]
more work on test suite.

15 years agoMerge commit 'jrollins/master'
Daniel Kahn Gillmor [Sat, 25 Oct 2008 21:39:01 +0000 (17:39 -0400)]
Merge commit 'jrollins/master'

15 years agotests: do not use privilege separation with sshd.
Daniel Kahn Gillmor [Sat, 25 Oct 2008 21:38:46 +0000 (17:38 -0400)]
tests: do not use privilege separation with sshd.

15 years agomore work on test suite.
Jameson Graef Rollins [Sat, 25 Oct 2008 21:33:27 +0000 (17:33 -0400)]
more work on test suite.

15 years agotesting: admin has signed key of testuser; testuser has lsigned key of admin, and...
Daniel Kahn Gillmor [Sat, 25 Oct 2008 20:18:32 +0000 (16:18 -0400)]
testing: admin has signed key of testuser; testuser has lsigned key of admin, and granted full ownertrust to admin.

15 years agomore tweaks to test script.
Jameson Graef Rollins [Sat, 25 Oct 2008 19:50:59 +0000 (15:50 -0400)]
more tweaks to test script.

15 years agofix path to sshd_config in test script
Jameson Graef Rollins [Sat, 25 Oct 2008 19:04:19 +0000 (15:04 -0400)]
fix path to sshd_config in test script