[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Fwknop and the install process



Hi,

I have posted this message on debian-devel, but there is still no
answer. So I give it a try on debian mentors in the hope I can get more
audience :p!

To make it short first, I would say I do not know how to handle the
install process of the fwknop server (fwknopd) and I am looking for some
suggestions.

Here is a link to the fwknop description :

http://www.cipherdyne.org/fwknop/index.html

The context :

Fwknop has a daemon : fwknopd, and it depends on configuration files,
and cannot be started without updating them.

The user can choose two setups :

- the simple one : three variables to change (the ethernet interface, a
key, and the machine hostname)
- the second one requires much more work, since he has to deal with gpg
key (create, sign, export) on both the client and the server sides, in
addition to the ethernet interface, the key and the machine hostname.
These settings are recommended.

So, right now, I would choose to work this way :

- not ask for any questions and not start fwknopd during the install
process ; a variable would be set to no in /etc/default/fwknop-server.
- let the user have a quick setup (the three simple questions), and
start the fwknopd daemon, by use of dpkg-reconfigure. Add a note about
the recommended settings.

But what about starting the simple setup through the three questions, by
default, and mentionning that the user might want to configure gpg and
restart.

What would you suggest ? Any idea is welcome.

Thanks,
-- 
Franck Joncourt
http://debian.org - http://smhteam.info/wiki/
Fingerprint : C10E D1D0 EF70 0A2A CACF 9A3C C490 534E 75C0 89FE

Attachment: signature.asc
Description: OpenPGP digital signature


Reply to: