Some starting documents

Zenny garbytrash at gmail.com
Sun Dec 2 10:31:20 CET 2012


Thanks Dick for information.

About the first mandos server-client pair I meant the mandos server
which also tries to authenticate as client with each other, I
installed mandos sever and clients in both of them and copied the
output of 'mandos-keygen --passphrase' to the server's
/etc/mandos/clients.conf yet it does not authenticate, yet asks for
the passphrase in console?

Tried to execute the following in the client console (as stated in
http://bzr.recompile.se/loggerhead/mandos/trunk/annotate/head:/debian/mandos-client.README.Debian),
but nothing happens even for hours.

#/usr/lib/mandos/plugins.d/mandos-client \
> --pubkey=/etc/keys/mandos/pubkey.txt \
> --seckey=/etc/keys/mandos/seckey.txt; echo

What did I miss? What other configuration changes that I need to make
to make it work?

Thanks!

On 12/1/12, Zenny <garbytrash at gmail.com> wrote:
> Hi again:
>
> I thoroughly read the documents in the site, yet I cannot figure out
> how to achieve this:
>
> 1) Two mandos servers-clients authenticating between each other which
> in turn provide authentication passwords to the local clients
>
> 2) The /boot is not partitioned, yet / and swap is encrypted over LVM
> (dm-crypt plus LUKS).
>
> I searched over the Net and could not figure out how to achieve this.
> Any pointers shall be appreciated.
>
> Regards
> zenny
>
> On 11/30/12, Zenny <garbytrash at gmail.com> wrote:
>> Hi:
>>
>> I happen to see your nice application just today and feel like
>> deploying. Unfortunately I am getting errors while installing
>> mados-client in embedded debian squeeze (voyage linux actually).
>>
>> 1) gpg: WARNING: some OpenPGP programs can't handle a DSA key with
>> this digest size
>>
>> I know of this error maybe it is run on a i386 machine.
>>
>> 2) cryptsetup: WARNING: could not determine root device from /etc/fstab
>>
>> which looks like:
>> root at voyage:~# cat /etc/fstab
>> #/dev/hda1       /       ext2    defaults,noatime,rw     0       0
>> proc            /proc   proc    defaults                0       0
>> tmpfs 			/tmp 	tmpfs 	nosuid,nodev 			0 		0
>> #tmpfs           /rw     tmpfs   defaults,size=32M        0       0
>>
>>
>> Appreciate if there is any pointers! Is there any tutorials on how to
>> deploy mandos? FYI, I am trying to share keys between two mandos
>> servers. Thanks!
>>
>


More information about the Mandos-Dev mailing list