From e52add756e7d6d79516e96639dd020303fc93348 Mon Sep 17 00:00:00 2001 From: Silvio Rhatto Date: Fri, 25 Oct 2013 21:13:22 -0200 Subject: Manpage: limitations --- index.mdwn | 2 ++ 1 file changed, 2 insertions(+) (limited to 'index.mdwn') diff --git a/index.mdwn b/index.mdwn index 5985cf6..cc70d60 100644 --- a/index.mdwn +++ b/index.mdwn @@ -4,6 +4,8 @@ Keyringer lets you manage and share secrets using GPG and git with custom commands to encrypt, decrypt, recrypt, create key pairs, etc. - Project page: [https://keyringer.pw](https://keyringer.pw) +- Manpage: [keyringer.1](share/man/keyringer.1) +- License: [GPLv3+](LICENSE). - Issue tracker: [https://keyringer.pw/trac](https://keyringer.pw/trac) - Tor hidden service: [http://y6ntvl5bzs3c7ffa.onion](http://y6ntvl5bzs3c7ffa.onion) - Releases: [https://keyringer.pw/releases](releases) -- cgit v1.2.3 From 95416da3c798fb915c6a1d3ea515dd4bdb3d4437 Mon Sep 17 00:00:00 2001 From: Silvio Rhatto Date: Fri, 25 Oct 2013 21:14:50 -0200 Subject: Manpage formatting --- index.mdwn | 2 +- share/man/keyringer.1.mdwn | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) (limited to 'index.mdwn') diff --git a/index.mdwn b/index.mdwn index cc70d60..a26f903 100644 --- a/index.mdwn +++ b/index.mdwn @@ -5,7 +5,7 @@ commands to encrypt, decrypt, recrypt, create key pairs, etc. - Project page: [https://keyringer.pw](https://keyringer.pw) - Manpage: [keyringer.1](share/man/keyringer.1) -- License: [GPLv3+](LICENSE). +- License: [GPLv3+](LICENSE) - Issue tracker: [https://keyringer.pw/trac](https://keyringer.pw/trac) - Tor hidden service: [http://y6ntvl5bzs3c7ffa.onion](http://y6ntvl5bzs3c7ffa.onion) - Releases: [https://keyringer.pw/releases](releases) diff --git a/share/man/keyringer.1.mdwn b/share/man/keyringer.1.mdwn index 7e79b35..6b7915e 100644 --- a/share/man/keyringer.1.mdwn +++ b/share/man/keyringer.1.mdwn @@ -198,23 +198,23 @@ $KEYRING_FOLDER/config/options Keyringer currently has the following limitations: -* Metadata is not encrypted, meaning that an attacker with access to a keyringer +1. Metadata is not encrypted, meaning that an attacker with access to a keyringer repository knows all public key IDs are used for encryption and which secrets are encrypted to which keys. This can be improved in the future by encrypting the repository configuration with support for *--hidden-recipient* GnuPG option. -* History is not rewritten by default when secrets are removed from a keyringer +2. History is not rewritten by default when secrets are removed from a keyringer repository. After a secret is removed with *del* action, it will still be available in the repository history even after a commit. This is by design due to the following reasons: - 1. It's the default behavior of the Git content tracker. Forcing the + - It's the default behavior of the Git content tracker. Forcing the deletion by default could break the expected behavior and hence limit the repository's backup features, which can be helpful is someone mistakenly overwrites a secret. - 2. History rewriting cannot be considered a security measure against the + - History rewriting cannot be considered a security measure against the unauthorized access to a secret as it doesn't automatically update all working copies of the repository. -- cgit v1.2.3 From e5bde4205e18334754027b3c6cc2f12ce0ffbaa8 Mon Sep 17 00:00:00 2001 From: Silvio Rhatto Date: Sun, 10 Nov 2013 22:50:12 -0200 Subject: Doc update --- index.mdwn | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) (limited to 'index.mdwn') diff --git a/index.mdwn b/index.mdwn index a26f903..148da07 100644 --- a/index.mdwn +++ b/index.mdwn @@ -86,28 +86,28 @@ secrets with lines such as: emma - /dev/hda : : secret2 Or you may also have a different encrypted file for each secret, e.g. a file called -emma.root that contains the root passphrase for the server named emma and -another called emma.hda with the passphrase to decrypt /dev/hda on emma. +emma.root that contains the root passphrase for the server named `emma` and +another called emma.hda with the passphrase to decrypt `/dev/hda` on `emma`. Encrypting a secret - keyringer encrypt + keyringer encrypt Encrypting a secret from a file - keyringer encrypt + keyringer encrypt Decrypting a secret (only to stdout) - keyringer decrypt + keyringer decrypt Re-encrypting a secret or the whole repository - keyringer recrypt [file] + keyringer recrypt [secret] Appending information to a secret - keyringer append + keyringer append Editing a secret -- cgit v1.2.3