Commit graph

871 commits

Author SHA1 Message Date
Dan Guido
f91bb95d78 Merge pull request #201 from grempe/fix_198_typo_ECXLUDE
Fixes #198, replace typo ECXLUDE with EXCLUDE
2016-12-31 13:00:48 +01:00
Dan Guido
72de850d38 Merge pull request #200 from grempe/fix_197_do_ssh_name
Fixes #197, remove unused do_ssh_name var from examples and code
2016-12-31 12:58:58 +01:00
Glenn Rempe
f3b05a83bf Fixes #198, replace typo ECXLUDE with EXCLUDE 2016-12-30 18:47:02 -08:00
Glenn Rempe
a512adb110 Fixes #197, remove unused do_ssh_name var from examples and code 2016-12-30 18:40:44 -08:00
Dan Guido
23d7e01eee temporarily disabling the auditd role
I'm not sure this role ever worked as intended. Let's just pretend it doesn't exist until we rewrite it with go-audit in #16
2016-12-31 03:02:32 +01:00
Dan Guido
4023e1d6ed Add link to development plan 2016-12-31 00:27:36 +01:00
Dan Guido
59316a75c3 Add setup clarification and Little Snitch FAQ
Closes #134
Closes #188
2016-12-30 23:52:18 +01:00
Dan Guido
2a73187b0d Merge pull request #185 from mutemule/gce_mss_fixup
Drop the MSS for GCE instances
2016-12-30 22:38:32 +01:00
Dan Guido
eac18c70af clarifications 2016-12-30 19:20:09 +01:00
Dan Guido
3ea15e658f Initial troubleshooting section added
closes #187
2016-12-30 17:14:32 +01:00
Dan Guido
1b8b693f35 clarification 2016-12-29 14:04:01 +01:00
Dan Guido
c130e2de47 consistency 2016-12-29 14:03:55 +01:00
Dan Guido
e8a2e5f935 typo 2016-12-29 14:03:47 +01:00
Damian Gerow
bada70117f Drop the MSS for GCE instances 2016-12-27 21:59:39 +00:00
Dan Guido
6d2ccf9529 Add sweet32 info to OpenVPN FAQ 2016-12-24 22:15:02 +01:00
Dan Guido
50c72e4015 Update README.md 2016-12-23 17:52:29 +01:00
Dan Guido
b1e86b1f12 rewrite and reorder some of the initial setup questions 2016-12-23 17:47:04 +01:00
Jack Ivanov
d8279c3a40 modify readme 2016-12-22 21:23:00 +03:00
Jack Ivanov
829eaaa475 Increase timeouts #178 2016-12-22 21:22:25 +03:00
Dan Guido
150756ebf3 Merge pull request #177 from trailofbits/ec2_fixes
resolves #176 + other ec2 env issues
2016-12-21 01:00:33 -05:00
Defunct
4417913e95 resolves #176 + other ec2 env issues 2016-12-21 05:55:11 +00:00
Dan Guido
4f196c4488 cleared instructions in the readme 2016-12-20 20:49:13 -05:00
Dan Guido
37c1048b79 Tidy this up 2016-12-20 20:41:03 -05:00
Dan Guido
50975887ba closes #175 2016-12-20 20:28:13 -05:00
Dan Guido
6852d5f54e Merge pull request #174 from kennwhite/master
Use Ansible variables for ssh key and user name in congrats text
2016-12-20 20:23:46 -05:00
kennwhite
5c275f635a Formatting fixes 2016-12-19 20:19:00 -05:00
kennwhite
50707ec3ea Remove hardcoded ssh key & username in congrats text 2016-12-19 19:48:37 -05:00
Dan Guido
54994c9668 Merge pull request #172 from kennwhite/master
Prep & additional requirements for RPM-based 6.x distros
2016-12-19 17:33:10 -05:00
kennwhite
e4f51cb527 Update pre-install_redhat_centos_6.x.md 2016-12-19 16:22:27 -05:00
kennwhite
49b10872f9 Rename Pre-install_steps_RedHat_CentOS_6.x.md to pre-install_redhat_centos_6.x.md 2016-12-19 16:13:39 -05:00
kennwhite
784626e191 Notes & recipe to install from RH/Cent 6.8 VMs
It was very difficult to satisfy all the library dependencies, particularly for Digital Ocean ("dopy") and pycrypto ("cryptography") on RPM-based distros, particularly with the default version of Python that ships with the 6.x line. These steps allow an end-to-end install (verified on Digital Ocean and EC2) with zero warnings or errors.
2016-12-19 16:08:41 -05:00
Dan Guido
ae1d26f9c4 Merge pull request #171 from kennwhite/master
Small UX hints
2016-12-19 16:06:00 -05:00
kennwhite
ad497f2922 UX hint on profile name
Add explicit label for Algo-generated VPNs. If the user has multiple (non-Algo) VPNs for home/office, there is typically a label other than an IP address and "IKEv2".  This can be seen, for example, on OSX on the top menu bar for networks.
2016-12-19 15:21:02 -05:00
kennwhite
89b577e089 UI hints on entering API secrets
It's not obvious to new users why some fields display and others are blank when entering values. Absent stars for secrets, this gives a small sanity nudge, and lessens likelihood of double pastes.
2016-12-19 15:14:05 -05:00
kennwhite
c2689fac50 UI hints to ssh keys and message clean up
Though the algo ssh key names are in the config file at the bottom, they don't seem to be displayed, and are easy to miss for new users.
2016-12-19 15:08:56 -05:00
Dan Guido
8bcd2c076b Update CONTRIBUTING.md 2016-12-19 14:14:26 -05:00
Jack Ivanov
b4f9839aec Fix SSH keys for DigitalOcean 2016-12-19 00:19:26 +03:00
Jack Ivanov
9f4090ad1e Fixed #146 2016-12-17 16:36:59 +03:00
Jack Ivanov
4a44c314ce modify requirements #129 2016-12-17 15:26:14 +03:00
Jack Ivanov
e1a3ebb838 DO fix 2016-12-17 15:16:40 +03:00
Jack Ivanov
33f144765f Merge branch 'new_ssh_keys' of github.com:trailofbits/algo into new_ssh_keys 2016-12-17 14:55:18 +03:00
Jack Ivanov
f9a1be7197 some fixes 2016-12-17 14:54:44 +03:00
Jack Ivanov
03da3f3d0e generating ssh-keys #152 #151 #112 2016-12-17 14:54:44 +03:00
Jack Ivanov
e49e89476a disable the proxy and client-to-client options 2016-12-16 22:30:07 +03:00
Jack Ivanov
0492d45369 the password for the CA private key #75 2016-12-15 13:33:29 +03:00
Jack Ivanov
6c43723723 some fixes 2016-12-15 00:21:44 +03:00
Jack Ivanov
ecc2377ae3 generating ssh-keys #152 #151 #112 2016-12-14 23:47:22 +03:00
Jack Ivanov
b6dbf26551 Block client-to-client traffic. Fixed #166 2016-12-14 21:54:14 +03:00
Jack Ivanov
1d32a58881 unnecessarry to use such way Fixed #162 2016-12-14 19:42:39 +03:00
Jack Ivanov
b681c73158 random password for the p12 certificates #135 2016-12-14 18:49:47 +03:00