From 6ec4ac1dc7599ece09fb98b0910f389bcc50dd95 Mon Sep 17 00:00:00 2001 From: Silvio Rhatto Date: Tue, 15 Dec 2015 15:48:51 -0200 Subject: Updates TODO --- TODO.md | 37 ++++++++++--------------------------- 1 file changed, 10 insertions(+), 27 deletions(-) (limited to 'TODO.md') diff --git a/TODO.md b/TODO.md index d0a90c8..cf7c66b 100644 --- a/TODO.md +++ b/TODO.md @@ -38,7 +38,6 @@ High priority - run stages. - allow more resources to be declared via hiera. - fix hiera default boolean value when true. - - easy way to toggle management of subsystems. Medium priority --------------- @@ -51,7 +50,8 @@ Medium priority - cleanup and refactor. - uniform variable names. - use prompt.sh from bash-prompt as a submodule. -- common: autoload. + - easy way to toggle management of subsystems. +- common: autoload ou replace. - general: - rollback of commits about charset. - switch to conf.d: @@ -88,20 +88,13 @@ Low priority - support for http/https proxy inside web nodes: - encrypted ssl keys: http://support.f5.com/kb/en-us/solutions/public/11000/400/sol11440.html - make all apache sites listen to 8080. -- git: - - gitolite: [monkeysphere integration](http://gitolite.com/gitolite/g2/monkeysphere.html). - - gitweb clean urls. - - email notifications. - - https://packages.debian.org/jessie/git-notifier - - https://github.com/mhagger/git-multimail - - using OpenPGP? - syslog-ng: use conf.d. -- etherpad: `You need to set a sessionKey value in settings.json`. - knock integration via https://github.com/juasiepo/knockd -- apache: +- apache / websites: - try libapache2-modsecurity. - deploy https://git.immerda.ch/csp-report/ - disable other_vhosts_access.log. + - freewvs. - onion: - support for existing hidden service key, generated with tools like https://github.com/katmagic/Shallot - load balancing: http://archives.seul.org/tor/relays/Apr-2011/msg00022.html @@ -109,34 +102,24 @@ Low priority - http://nagios.sourceforge.net/docs/3_0/addons.html - http://www.math.wisc.edu/~jheim/snmp/ - ssh access restrictions: - - denyhosts, but we don't want to log IPs. - using shorewall: http://www.debian-administration.org/articles/250#comment_16 - - alowed users / groups. -- websites: freewvs. -- puppet: bug report: debian wheezy puppet-common: needs the following patch: http://projects.puppetlabs.com/issues/10963 + - alowed users / groups. - mail: - review dovecot recipient delimiter handling: to which mailbox messages should be sent? - - mlmmj: - - lists with hyphens are not working when mails are sent directly, but work when sent to an alias. - - `mail::mlmmj::domain` needs updating or additional domains should be added into `relay_domains`. - drupal/wordpress: - cronjob/cli: switch to site user. - - drupal_update: Do you really want to continue with the update process? (y/n): - Do you really want to continue with the update process? (y/n): Aborting. [cancel], - possibly related to https://www.drupal.org/node/443392 - php / drupal / wordpress / wp-cli: - composer: move from drupal to a custom module. - https://github.com/wp-cli/wp-cli/wiki/Alternative-Install-Methods - suhosin needs `suhosin.executor.include.whitelist = phar` on `/etc/php5/cli/conf.d/suhosin.ini`. -- nodo: support for prosody: - - https://github.com/dgoulet/prosody-otr - - http://prosody.im/doc/creating_accounts#importing_from_ejabberd - - config with good score at https://xmpp.net/index.php - mail: - - support for [preventing SPAM connections with bird](http://www.debian-administration.org/article/715/Preventing_SPAM_connections_with_bird.). - schleuder: manage `/etc/schleuder/schleuder.conf`, using `superadminaddr: root` or other recipient, to avoid mails. sent as `root@localhost`. - - deploy https://git.autistici.org/ale/smtp-fp/tree/master + - mlmmj: + - lists with hyphens are not working when mails are sent directly, but work when sent to an alias. + - `mail::mlmmj::domain` needs updating or additional domains should be added into `relay_domains`. + - support for [preventing SPAM connections with bird](http://www.debian-administration.org/article/715/Preventing_SPAM_connections_with_bird.). + - deploy https://git.autistici.org/ale/smtp-fp/tree/master (use cert from ca.autistici.org/ca.pem). https://github.com/EFForg/starttls-everywhere - deploy https://developer.mozilla.org/en-US/docs/Mozilla/Thunderbird/Autoconfiguration#Configuration_server_at_ISP https://git-ipuppet.immerda.ch/module-apache/commit/?id=058dbb366b96cae1f8fb0def65f73a698f1c375d -- cgit v1.2.3