Commit Graph

952 Commits

Author SHA1 Message Date
Ben Lindstrom 6df8ef4196 - millert@cvs.openbsd.org 2001/03/04 17:42:28
[authfd.c channels.c dh.c log.c readconf.c servconf.c sftp-int.c
      ssh.c sshconnect.c sshd.c]
     log functions should not be passed strings that end in newline as they
     get passed on to syslog() and when logging to stderr, do_log() appends
     its own newline.
2001-03-05 07:47:23 +00:00
Ben Lindstrom fafea18d68 - stevesk@cvs.openbsd.org 2001/03/04 12:54:04
[sshd.8]
     spelling
2001-03-05 07:43:27 +00:00
Ben Lindstrom d9cae22d1a - stevesk@cvs.openbsd.org 2001/03/04 11:16:06
[servconf.c sshd.8]
     kill obsolete RandomSeed; ok markus@ deraadt@
2001-03-05 07:42:03 +00:00
Ben Lindstrom 323c98f4a7 - stevesk@cvs.openbsd.org 2001/03/04 11:04:41
[sshd.8]
     small cleanup and clarify for PermitRootLogin; ok markus@
2001-03-05 07:40:40 +00:00
Ben Lindstrom 3d73a34931 - stevesk@cvs.openbsd.org 2001/03/04 10:57:53
[ssh.c]
     add -m to usage; ok markus@
2001-03-05 07:39:01 +00:00
Ben Lindstrom 9c5324422e - (bal) CVS ID touch up on auth2.c, serverloop.c, session.c & sshd.c 2001-03-05 07:33:14 +00:00
Ben Lindstrom b1131e9329 - markus@cvs.openbsd.org 2001/03/04 00:03:59
[channels.c]
     debug1->2
2001-03-05 07:27:13 +00:00
Ben Lindstrom 8a432f5fe0 - markus@cvs.openbsd.org 2001/03/03 23:59:34
[log.c ssh.c]
     log*.c -> log.c
2001-03-05 07:24:46 +00:00
Ben Lindstrom 46d6e09099 - markus@cvs.openbsd.org 2001/03/03 23:52:22
[sftp.c]
     clean up arg processing. based on work by Christophe_Moret@hp.com
2001-03-05 07:10:47 +00:00
Ben Lindstrom 1addabd491 - deraadt@cvs.openbsd.org 2001/03/03 22:07:50
[sftp-server.c]
     KNF
2001-03-05 07:09:11 +00:00
Ben Lindstrom cb978aa057 - millert@cvs.openbsd.org 2001/03/03 21:41:07
[packet.c]
     Dynamically allocate fd_set; deraadt@ OK
2001-03-05 07:07:49 +00:00
Ben Lindstrom cb80bdf6d5 - millert@cvs.openbsd.org 2001/03/03 21:40:30
[sftp-server.c]
     Dynamically allocate fd_set; deraadt@ OK
2001-03-05 07:06:12 +00:00
Ben Lindstrom c1e0421cb4 - millert@cvs.openbsd.org 2001/03/03 21:19:41
[ssh-keyscan.c]
     Dynamically allocate read_wait and its copies.  Since maxfd is
     based on resource limits it is often (usually?) larger than FD_SETSIZE.
2001-03-05 07:04:38 +00:00
Ben Lindstrom d20b855bc6 - deraadt@cvs.openbsd.org 2001/03/03 06:53:12
[ssh-keyscan.c]
     standard theo sweep
2001-03-05 07:01:18 +00:00
Ben Lindstrom 92a2e38f8e - deraadt@cvs.openbsd.org 2001/03/02 18:54:31
[atomicio.c atomicio.h auth-chall.c auth.c auth2-chall.c crc32.h
      scp.c serverloop.c session.c sftp-server.8 sftp.1 ssh-add.1 ssh-add.c
      ssh-agent.1 ssh-agent.c ssh-keygen.1 ssh.1 sshd.8]
     make copyright lines the same format
2001-03-05 06:59:27 +00:00
Ben Lindstrom d7f5b517d5 - deraadt@cvs.openbsd.org 2001/03/02 09:42:49
[sshd.8]
     doc the dsa/rsa key pair files
2001-03-05 06:57:23 +00:00
Ben Lindstrom 49a098d1b2 - deraadt@cvs.openbsd.org 2001/03/02 06:21:01
[sshd.8]
     explain SIGHUP better
2001-03-05 06:55:18 +00:00
Ben Lindstrom 4040fe10a9 - markus@cvs.openbsd.org 2001/03/01 22:46:37
[ssh.c]
     don't truncate remote ssh-2 commands; from mkubita@securities.cz
     use min, not max for logging, fixes overflow.
2001-03-05 06:52:57 +00:00
Ben Lindstrom b22c2b86af - deraadt@cvs.openbsd.org 2001/03/01 03:38:33
[cli.c cli.h rijndael.h ssh-keyscan.1]
     copyright notices on all source files
2001-03-05 06:50:47 +00:00
Ben Lindstrom 204e48851a - deraadt@cvs.openbsd.org 2001/03/01 02:45:10
[auth-rsa.c auth2.c deattack.c packet.c]
     KNF
2001-03-05 06:47:00 +00:00
Ben Lindstrom 0ab2a01079 - deraadt@cvs.openbsd.org 2001/03/01 02:29:04
[ssh.c]
     shorten usage by a line
2001-03-05 06:45:21 +00:00
Ben Lindstrom cf0da4067b - (bal) CVS ID touch up on uuencode.c 2001-03-05 06:42:58 +00:00
Ben Lindstrom 66e5ecc6b2 - (bal) CVS ID touch up on sftp-int.c 2001-03-05 06:35:29 +00:00
Ben Lindstrom afd3475ddf - deraadt@cvs.openbsd.org 2001/03/01 02:11:25
[authfd.c]
     split line so that p will have an easier time next time around
2001-03-05 06:33:23 +00:00
Ben Lindstrom b40204bf22 - markus@cvs.openbsd.org 2001/02/28 21:31:32
[channels.c]
     typo
2001-03-05 06:29:44 +00:00
Ben Lindstrom e229b25a9e - markus@cvs.openbsd.org 2001/02/28 21:27:48
[channels.c packet.c packet.h serverloop.c]
     use ignore message to simulate a SSH2_MSG_CHANNEL_DATA message
     use random content in ignore messages.
2001-03-05 06:28:06 +00:00
Ben Lindstrom 941ac82e16 - markus@cvs.openbsd.org 2001/02/28 21:21:41
[sshd.c]
     generate a fake session id, too
2001-03-05 06:25:23 +00:00
Ben Lindstrom 4030442d77 - deraadt@cvs.openbsd.org 2001/02/28 17:52:54
[misc.c]
     for completeness, copy pw_gecos too
2001-03-05 06:22:01 +00:00
Ben Lindstrom cc74df79d7 - markus@cvs.openbsd.org 2001/02/28 12:55:07
[channels.c]
     unify debug messages
2001-03-05 06:20:14 +00:00
Ben Lindstrom 5699c5f9ac - markus@cvs.openbsd.org 2001/02/28 09:57:07
[packet.c packet.h sshconnect2.c]
     in ssh protocol v2 use ignore messages for padding (instead of
     trailing \0).
2001-03-05 06:17:49 +00:00
Ben Lindstrom 7fbd455c78 - markus@cvs.openbsd.org 2001/02/28 08:54:55
[channels.c nchan.c nchan.h]
     make sure remote stderr does not get truncated.
     remove closed fd's from the select mask.
2001-03-05 06:16:11 +00:00
Ben Lindstrom e9613cf16d - markus@cvs.openbsd.org 2001/02/28 08:45:39
[clientloop.c]
     fix byte counts for ssh protocol v1
2001-03-05 06:14:02 +00:00
Ben Lindstrom ec19a40b94 - deraadt@cvs.openbsd.org 2001/02/28 05:36:28
[sftp.c]
     do not kill the subprocess on termination (we will see if this helps
     things or hurts things)
2001-03-05 06:12:01 +00:00
Ben Lindstrom 069090128c - deraadt@cvs.openbsd.org 2001/02/28 05:34:28
[misc.c]
     pull in protos
2001-03-05 06:09:31 +00:00
Ben Lindstrom 5de86cc736 - markus@cvs.openbsd.org 2001/02/27 11:00:11
[compat.c]
     support SSH-2.0-2.1 ; from Christophe_Moret@hp.com
2001-03-05 06:08:19 +00:00
Ben Lindstrom 6a5cde0eb7 - markus@cvs.openbsd.org 2001/02/27 10:35:27
[packet.c]
     fix random padding
2001-03-05 06:07:00 +00:00
Ben Lindstrom 4b00c8b40b - deraadt@cvs.openbsd.org 2001/02/24 10:37:26
[sshd_config]
     ssh2 rsa key before dsa key
2001-03-05 06:05:35 +00:00
Ben Lindstrom b00d4fb142 - deraadt@cvs.openbsd.org 2001/02/24 10:37:55
[readconf.c]
     look for id_rsa by default, before id_dsa
2001-03-05 06:03:03 +00:00
Ben Lindstrom eb648a749b - markus@cvs.openbsd.org 2001/02/23 18:15:13
[sshd.c]
     the random session key depends now on the session_key_int
     sent by the 'attacker'
             dig1 = md5(cookie|session_key_int);
             dig2 = md5(dig1|cookie|session_key_int);
             fake_session_key = dig1|dig2;
     this change is caused by a mail from anakin@pobox.com
     patch based on discussions with my german advisor niels@openbsd.org
2001-03-05 06:00:29 +00:00
Ben Lindstrom f4c73112d0 - markus@cvs.openbsd.org 2001/02/23 15:34:53
[serverloop.c]
     debug2->3
2001-03-05 05:58:23 +00:00
Ben Lindstrom 086cf214cf - markus@cvs.openbsd.org 2001/02/22 21:59:44
[auth.c auth.h auth1.c auth2.c misc.c misc.h ssh.c]
     use pwcopy in ssh.c, too
2001-03-05 05:56:40 +00:00
Ben Lindstrom ebd888d919 - markus@cvs.openbsd.org 2001/02/22 21:57:27
[ssh.1 sshd.8]
     typos/grammar from matt@anzen.com
2001-03-05 05:49:29 +00:00
Ben Lindstrom 531a445c3a - deraadt@cvs.openbsd.org 2001/02/22 18:09:06
[sshd_config]
     activate RSA 2 key
2001-03-05 05:17:18 +00:00
Ben Lindstrom 7ab5117367 - deraadt@cvs.openbsd.org 2001/02/22 08:03:51
[ssh-keygen.1 ssh-keygen.c]
     bye bye -d
2001-03-05 05:13:38 +00:00
Ben Lindstrom b7c9232da1 - deraadt@cvs.openbsd.org 2001/02/22 06:43:55
[ssh-keygen.1 ssh-keygen.c]
     document -d, and -t defaults to rsa1
2001-03-05 05:10:52 +00:00
Ben Lindstrom 33a3cc30eb - deraadt@cvs.openbsd.org 2001/02/22 04:29:37
[servconf.c]
     grammar; slade@shore.net
2001-03-05 05:07:52 +00:00
Ben Lindstrom 87af95b3e7 - stevesk@cvs.openbsd.org 2001/02/21 21:14:04
[ssh.c]
     -i supports DSA identities now; ok markus@
2001-03-05 05:04:57 +00:00
Ben Lindstrom 36592518dd - deraadt@cvs.openbsd.org 2001/02/21 09:12:56
[sftp-server.c]
     careful with & and &&; markus ok
2001-03-05 05:02:08 +00:00
Ben Lindstrom b257cca769 - deraadt@cvs.openbsd.org 2001/02/21 09:05:54
[authfile.c]
     improve fd handling
2001-03-05 04:59:27 +00:00
Ben Lindstrom b0a4cd8f91 - deraadt@cvs.openbsd.org 2001/02/21 07:37:04
[ssh-keyscan.c]
     inline -> __inline__, and some indent
2001-03-05 04:54:49 +00:00
Ben Lindstrom 53992c7cd5 - deraadt@cvs.openbsd.org 2001/02/17 23:48:48
[sshd.8]
     it's the OpenSSH one
2001-03-05 04:47:55 +00:00
Ben Lindstrom 6ed8c043de - (bal) CVS ID touch up on sshpty.[ch] and sshlogin.[ch] 2001-03-05 03:53:02 +00:00
Ben Lindstrom cfb9370a3a - (bal) Updated contrib/README to remove 'make-ssh-known-hosts' and
give Mark Roth credit for mdoc2man.pl
2001-03-03 21:43:19 +00:00
Ben Lindstrom 59a5f9bd69 - (bal) Remove make-ssh-known-hosts.1 since it's no longer valid. 2001-03-03 21:37:50 +00:00
Damien Miller d0ccb989c2 - Allow PRNGd entropy collection from localhost TCP socket. Replace
"--with-egd-pool" configure option with "--with-prngd-socket" and
   "--with-prngd-port" options. Debugged and improved by Lutz Jaenicke
   <Lutz.Jaenicke@aet.TU-Cottbus.DE>
2001-03-04 00:29:20 +11:00
Damien Miller 1d66c1602e - Document PAM ChallengeResponseAuthentication in sshd.8
- Disable and comment ChallengeResponseAuthentication in sshd_config
2001-03-04 00:16:20 +11:00
Damien Miller 459ac4b688 - Remove make-ssh-known-hosts.pl, ssh-keyscan is better. 2001-03-03 20:00:36 +11:00
Damien Miller 9de5f05857 - (djm) Released 2.5.1p2 2001-03-01 11:09:42 +11:00
Damien Miller b5b6218537 - (djm) Cygwin needs pw->pw_gecos copied too. Patch from Corinna Vinschen
<vinschen@redhat.com>
2001-03-01 09:48:13 +11:00
Damien Miller 882c2eed97 - (djm) Force standard PAM conversation function in a few more places.
Patch from Redhat 2.5.1p1-2 RPM, probably Nalin Dahyabhai
   <nalin@redhat.com>
2001-03-01 09:18:57 +11:00
Damien Miller 95aa2d60ea - (djm) Properly add -lcrypt if needed. 2001-03-01 09:16:11 +11:00
Damien Miller e854662d54 - (djm) Remove /tmp from EGD socket search list 2001-02-28 12:51:18 +11:00
Damien Miller 3d8ae61b87 - (djm) EGD detection patch from Tim Rice <tim@multitalents.net> 2001-02-28 12:49:38 +11:00
Damien Miller efb7179815 - (djm) Fully revert PAM session patch (again). All PAM session init is
now done before the final fork().
2001-02-28 11:48:06 +11:00
Damien Miller c594633b49 - (djm) Fully revert PAM session patch. All PAM session init is now done
before the final fork().
2001-02-28 11:46:11 +11:00
Damien Miller 4df5c76c2b - (djm) Detect endianness in configure and use it in rijndael.c. Fixes
"Bad packet length" bugs.
2001-02-28 08:14:22 +11:00
Damien Miller 6007f19483 doh 2001-02-27 14:42:58 +11:00
Damien Miller 0bcf9eacdf - (djm) Avoid warnings for missing broken IP_TOS. Patch from Mark Miller
<markm@swoon.net>
2001-02-27 14:03:30 +11:00
Damien Miller 9b40580d76 - (djm) Remove 'noreplace' flag from sshd_config in RPM spec files. This
change is being made as 2.5.x configfiles are not back-compatible with
  2.3.x.
2001-02-27 10:53:00 +11:00
Damien Miller 7bd1c6262b - (djm) Fix PAM fix 2001-02-27 10:48:01 +11:00
Damien Miller 248131ae99 - (djm) Warning fix on entropy.c saved uid stuff. Patch from Mark Miller
<markm@swoon.net>
2001-02-27 09:47:16 +11:00
Damien Miller 5a7613186b - (djm) Move PAM init to after fork for non-Solaris derived PAMs 2001-02-27 09:28:23 +11:00
Damien Miller 767c7fc27c - (djm) fatal() on OpenSSL version mismatch 2001-02-27 09:20:57 +11:00
Ben Lindstrom dd784b2c00 Second Ooops... =) I started with the wrong date. 2001-02-26 22:11:59 +00:00
Damien Miller 255cae0be0 doh 2001-02-27 09:05:38 +11:00
Damien Miller fbd884a80d - (djm) Fix up POSIX saved uid support. Report from Mark Miller
<markm@swoon.net>
 - (djm) Search for -lcrypt on FreeBSD too
2001-02-27 08:39:07 +11:00
Ben Lindstrom 0c100870ac - (bal) sshd.init support for all Redhat release. Patch by Jim Knoble
<jmknoble@jmknoble.cx>
2001-02-26 20:38:53 +00:00
Ben Lindstrom 7603b2d244 - markus@cvs.openbsd.org 2001/02/23 15:37:45
[session.c]
     handle SSH_PROTOFLAG_SCREEN_NUMBER for buggy clients
2001-02-26 20:13:32 +00:00
Ben Lindstrom 10b9bf95c0 - (bal) Applied shutdown() patch for sftp.c by Corinna Vinschen
<vinschen@redhat.com>
2001-02-26 20:04:45 +00:00
Damien Miller bb7c976202 - (djm) Some systems (SCO3, NeXT) have weird saved uid semantics.
Based on patch from Tim Rice <tim@multitalents.net>
2001-02-26 20:49:58 +11:00
Ben Lindstrom 63941f9631 - (bal) Fixed bsd-snprinf.c so it now honors 'BROKEN_SNPRINTF' again. 2001-02-25 23:20:40 +00:00
Ben Lindstrom 416d874094 - (bal) Replace 'unsigned long long' to 'u_int64_t' since not every
platform defines u_int64_t as being that.
2001-02-25 02:02:43 +00:00
Damien Miller 73bb058d0d - (djm) Use %{_libexecdir} rather than hardcoded path in RPM specfile
Patch from Adrian Ho <lexfiend@usa.net>
2001-02-25 09:36:29 +11:00
Ben Lindstrom 8697e08660 - (bal) Missed part of the UNIX sockets patch. Patch by Corinna
Vinschen <vinschen@redhat.com>
 - (bal) Reorder where 'strftime' is detected to resolve linking
   issues on SCO.  Patch by Tim Rice <tim@multitalents.net>
2001-02-24 21:41:10 +00:00
Ben Lindstrom 38e60935bb - (bal) Generalize lack of UNIX sockets since this also effects Cray
not just Cygwin.  Based on patch by Wendy Palm <wendyp@cray.com>
2001-02-24 00:55:04 +00:00
Ben Lindstrom 803f16cbe4 - (bal) Renamed sigaction.[ch] to sigact.[ch]. Causes problems with
some platforms.
2001-02-24 00:24:19 +00:00
Ben Lindstrom 65981156b8 - (bal) pam_stack fix to correctly detect between RH7 and older RHs.
Patch by Pekka Savola <pekkas@netcore.fi>
2001-02-24 00:05:29 +00:00
Ben Lindstrom 4ef92b5844 - (bal) Double -I for OpenSSL on SCO. Patch by Tim Rice
<tim@multitalents.net>
2001-02-23 05:05:53 +00:00
Ben Lindstrom 379f205a16 - (bal) Patch to force OpenSSH rpm to require the same version of OpenSSL
that it was compiled against.  Patch by Pekka Savola <pekkas@netcore.fi>
2001-02-23 04:55:46 +00:00
Ben Lindstrom 008e29189e - (bal) Fix --define rh7 in openssh.spec file. Patch by Steve Tell
<tell@telltronics.org>
2001-02-23 04:45:15 +00:00
Kevin Steves 77aeaaf87f - (stevesk) remove erroneous #ifdef sgi code.
Michael Stone <mstone@cs.loyola.edu>
2001-02-22 21:23:21 +00:00
Ben Lindstrom e68c5670cd - (bal) Added mdoc2man.pl from Mark Roth <roth@feep.net>
- (bal) Removed reference to liblogin from contrib/README.  It was
   integrated into OpenSSH a long while ago.
2001-02-22 06:20:10 +00:00
Ben Lindstrom e1bd29bc9e - (bal) Corrected SCO luid patch by svaughan <svaughan@asterion.com> 2001-02-21 20:00:28 +00:00
Kevin Steves ff793a27b8 - (stevesk) session.c: back out to where we were before:
- (djm) Move PAM session initialisation until after fork in sshd. Patch
      from Nalin Dahyabhai <nalin@redhat.com>
2001-02-21 16:36:51 +00:00
Ben Lindstrom 94bce40720 - (bal) Reverted out of 2001/02/15 patch by djm below because it
breaks Solaris.
        - (djm) Move PAM session setup back to before setuid to user.
          fixes problems on Solaris-drived PAMs.
2001-02-21 05:53:33 +00:00
Ben Lindstrom 5eff0316a8 - (bal) Fixed OpenSSL rework to use $saved_*. Patch by Tim Rice
<tim@multitalents.net>
2001-02-21 02:35:37 +00:00
Ben Lindstrom 866488b340 - (bal) Removed -L/usr/ucblib -R/usr/ucblib for Solaris platform. 2001-02-20 18:22:38 +00:00
Ben Lindstrom a9a29e1bed - deraadt@cvs.openbsd.org 2001/02/19 23:09:05
[sshd.c]
     clarify message to make it not mention "ident"
2001-02-20 01:20:47 +00:00
Ben Lindstrom 4ffaad8c33 - (bal) Fix mixed up params to memmove() from Jan 5th in setenv.c and
getcwd.c.
2001-02-19 19:54:43 +00:00
Damien Miller 7387fdb6b5 - Update versions in RPM spec files
- Release 2.5.1p1
2001-02-19 21:51:49 +11:00