Commit Graph

1128 Commits

Author SHA1 Message Date
Ben Lindstrom d09fcf5f6e - markus@cvs.openbsd.org 2001/03/26 23:23:24
[rsa.c rsa.h ssh-agent.c ssh-keygen.c]
     try to read private f-secure ssh v2 rsa keys.
2001-03-29 00:29:54 +00:00
Ben Lindstrom c111660896 - markus@cvs.openbsd.org 2001/03/26 23:12:42
[authfile.c]
     KNF
2001-03-29 00:28:37 +00:00
Ben Lindstrom 89b0bd66e2 - stevesk@cvs.openbsd.org 2001/03/26 15:47:59
[ssh.1]
     document more defaults; misc. cleanup.  ok markus@
2001-03-29 00:27:11 +00:00
Damien Miller b68af624a9 - (djm) Sync openbsd-compat/glob.c 2001-03-28 21:05:26 +10:00
Damien Miller 9834474151 - (djm) Rework krbIV tests to get us closer to building on Redhat. Still
doesn't work because of conflicts between krbIV's and OpenSSL's des.h
2001-03-28 14:37:06 +10:00
Damien Miller 18bb473eb0 - (djm) Work around Solaris' broken struct dirent. Diagnosis and suggested
fix from Philippe Levan <levan@epix.net>
2001-03-28 14:35:30 +10:00
Damien Miller c79bc0d75b - (djm) Reorder tests and library inclusion for Krb4/AFS to try to
resolve linking conflicts with libcrypto. Report and suggested fix
   from Holger Trapp <Holger.Trapp@Informatik.TU-Chemnitz.DE>
2001-03-28 13:03:42 +10:00
Damien Miller f9e9300947 - (djm) Reestablish PAM credentials (which can be supplemental group
memberships) after initgroups() blows them away. Report and suggested
   fix from Nalin Dahyabhai <nalin@redhat.com>
2001-03-27 16:12:24 +10:00
Ben Lindstrom d0fca423fc - markus@cvs.openbsd.org 2001/03/26 08:07:09
[authfile.c authfile.h ssh-add.c ssh-keygen.c ssh.c sshconnect.c
      sshconnect.h sshconnect1.c sshconnect2.c sshd.c]
     simpler key load/save interface, see authfile.h
2001-03-26 13:44:06 +00:00
Ben Lindstrom 7bfff36ca3 - stevesk@cvs.openbsd.org 2001/03/25 13:16:11
[servconf.c servconf.h session.c sshd.8 sshd_config]
     PrintLastLog option; from chip@valinux.com with some minor
     changes by me.  ok markus@
2001-03-26 05:45:53 +00:00
Ben Lindstrom 6029432ec5 - djm@cvs.openbsd.org 2001/03/25 00:01:34
[session.c]
     shorten; ok markus@
2001-03-26 05:38:25 +00:00
Ben Lindstrom 9531825dd0 - Fix pointer issues in waitpid() and wait() replaces. Patch by Lutz
Jaenicke <Lutz.Jaenicke@aet.TU-Cottbus.DE>
2001-03-26 05:35:33 +00:00
Ben Lindstrom 8ca935655e - Attempt sync with sshlogin.c w/ OpenBSD (mainly CVS ID) 2001-03-26 05:32:16 +00:00
Damien Miller b44fe0617d - (djm) Pull out our own SIGPIPE hacks 2001-03-24 15:39:38 +11:00
Ben Lindstrom de71cda078 - markus@cvs.openbsd.org 2001/03/23 14:28:32
[session.c sshd.c]
     ignore SIGPIPE, restore in child, fixes x11-fwd crashes; with djm@
2001-03-24 00:43:26 +00:00
Ben Lindstrom 7527f8b52d - markus@cvs.openbsd.org 2001/03/23 13:10:57
[sftp-int.c]
     fix put, upload to _absolute_ path, ok djm@
2001-03-24 00:39:12 +00:00
Ben Lindstrom 9e2057cb34 - markus@cvs.openbsd.org 2001/03/23 12:02:49
[auth1.c]
     authctxt is now passed to do_authenticated
2001-03-24 00:37:59 +00:00
Ben Lindstrom c8530c7f5c - djm@cvs.openbsd.org 2001/03/23 11:04:07
[compat.c compat.h sshconnect2.c sshd.c]
     Compat for OpenSSH with broken Rijndael/AES. ok markus@
2001-03-24 00:35:19 +00:00
Ben Lindstrom b94f8b2bcb - Fixed permissions ssh-keyscan. Thanks to Christopher Linn <celinn@mtu.edu>. 2001-03-24 00:20:56 +00:00
Ben Lindstrom 69d8c077d4 - deraadt@cvs.openbsd.org 2001/03/22 20:22:55
[sshd.c]
     do not place linefeeds in buffer
2001-03-22 22:45:33 +00:00
Ben Lindstrom d9267454ca - markus@cvs.openbsd.org 2001/03/21 21:06:30
[session.c]
     missing init; from mib@unimelb.edu.au
2001-03-22 02:06:57 +00:00
Ben Lindstrom f1107f5ede - jakob@cvs.openbsd.org 2001/03/21 14:20:45
[ssh-keygen.c]
     add -B flag to usage
2001-03-22 02:05:32 +00:00
Ben Lindstrom 57f82e260b - (bal) scp.c CVS ID resync 2001-03-22 02:04:08 +00:00
Ben Lindstrom b31783d547 - markus@cvs.openbsd.org 2001/03/21 11:43:45
[auth1.c auth2.c session.c session.h]
     merge common ssh v1/2 code
2001-03-22 02:02:12 +00:00
Ben Lindstrom fc9b07de19 - markus@cvs.openbsd.org 2001/03/20 19:21:21
[session.c]
     remove unused arg
2001-03-22 01:27:23 +00:00
Ben Lindstrom b4c961d822 - markus@cvs.openbsd.org 2001/03/20 19:21:21
[session.c]
     remove unused arg
2001-03-22 01:25:37 +00:00
Ben Lindstrom 6b77643fd5 - OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/20 19:10:16
     [readconf.c]
     default to SSH protocol version 2
2001-03-22 01:24:04 +00:00
Ben Lindstrom eebc4a2ed3 - (bal) auth-chall.c auth-passwd.c auth.h auth1.c auth2.c session.c CVS ID
resync
2001-03-22 01:22:03 +00:00
Ben Lindstrom ebf3d51c96 - (bal) version.c CVS ID resync 2001-03-22 01:08:39 +00:00
Damien Miller bebd8be67b - (djm) Better AIX no tty fix, spotted by Gert Doering <gert@greenie.muc.de> 2001-03-22 11:58:15 +11:00
Damien Miller b69407dd7a - (djm) Correctly handle SIA and AIX when no tty present. Spotted and
suggested fix from Mike Battersby <mib@unimelb.edu.au>
2001-03-21 16:13:03 +11:00
Damien Miller 4b4e2d31d6 - (djm) Generate config files before build 2001-03-21 13:13:40 +11:00
Damien Miller ec7e1b1d0f - (djm) Don't loop forever when changing password via PAM. Patch
from Solar Designer <solar@openwall.com>
2001-03-21 13:01:35 +11:00
Damien Miller 2e9adb27e9 - (djm) Make sure pam_retval is initialised on call to pam_end. Patch
from Solar Designer <solar@openwall.com>
2001-03-21 12:16:24 +11:00
Damien Miller be08176963 - (djm) Fix ttyname breakage for AIX and Tru64. Patch from Steve
VanDevender <stevev@darkwing.uoregon.edu>
2001-03-21 11:11:57 +11:00
Tim Rice d9d5ba2bbd add get_arg_max(). Use sysconf() if ARG_MAX is not defined. 2001-03-19 20:46:50 -08:00
Tim Rice d14d7021a1 change S_ISLNK macro to work for UnixWare 2.03 2001-03-19 18:31:44 -08:00
Damien Miller 82e7ae5bce - (djm) Update RPM spec version
- (djm) Release 2.5.2p1
2001-03-20 09:30:50 +11:00
Damien Miller 41be73b663 - markus@cvs.openbsd.org 2001/03/19 17:12:10
[version.h]
     version 2.5.2
2001-03-20 09:16:34 +11:00
Damien Miller e7cf07c927 - markus@cvs.openbsd.org 2001/03/19 17:07:23
[auth.c readconf.c]
     undo /etc/shell and proto 2,1 change for openssh-2.5.2
2001-03-20 09:15:57 +11:00
Ben Lindstrom 9911f12083 - (bal) Oops. Missed globc.h change (OpenBSD CVS). 2001-03-19 21:29:30 +00:00
Ben Lindstrom 11c78f8119 - (bal) glob.c update to set gl_pathv to NULL (OpenBSD CVS). 2001-03-19 19:00:09 +00:00
Ben Lindstrom a77d641cea - (bal) glob.c update to added GLOB_LIMITS. 2001-03-19 18:58:13 +00:00
Ben Lindstrom aad56ce545 - (bal) Minor NeXT fixed. Forgot to #undef NGROUPS_MAX 2001-03-19 13:42:21 +00:00
Damien Miller 1e42f30c4c - djm@cvs.openbsd.org 2001/03/19 05:49:52
[ssh.1]
     document PreferredAuthentications option; ok markus@
2001-03-19 23:59:11 +11:00
Damien Miller a243fde477 - djm@cvs.openbsd.org 2001/03/19 12:10:17
[sshd.8]
     Document permitopen authorized_keys option; ok markus@
2001-03-19 23:16:08 +11:00
Damien Miller c2c5d9fd3b - djm@cvs.openbsd.org 2001/03/19 12:10:17
[sshd.8]
     Document permitopen authorized_keys option; ok markus@
2001-03-19 23:16:08 +11:00
Damien Miller 27dbe6f37e - deraadt@cvs.openbsd.org 2001/03/18 23:30:55
[compat.c compat.h sshd.c]
     specifically version match on ssh scanners.  do not log scan
     information to the console
2001-03-19 22:36:20 +11:00
Damien Miller cafff19105 - (djm) OpenBSD CVS Sync
- djm@cvs.openbsd.org     2001/03/19 03:52:51
     [sftp-client.c]
     Report ssh connection closing correctly; ok deraadt@
2001-03-19 22:29:46 +11:00
Ben Lindstrom 03017ba638 - (bal) NeXTStep lacks S_ISLNK. Plus split up S_IS* 2001-03-19 03:12:25 +00:00
Ben Lindstrom 8feff4542e - (bal) Small fix to scp. %lu vs %ld 2001-03-19 03:09:40 +00:00
Ben Lindstrom 6cabb6fd6c - Use 'NGROUPS' for NeXT Since 'MAX_NGROUPS' is wrapped up in -lposix
stuff.  Change suggested by Mark Miller <markm@swoon.net>
2001-03-19 03:01:56 +00:00
Tim Rice d19a75abd0 move HAVE_LONG_LONG_INT where it works 2001-03-18 18:27:26 -08:00
Damien Miller ffd0e10b9c - (djm) Make scp work on systems without 64-bit ints 2001-03-19 12:45:02 +11:00
Ben Lindstrom 2d70f98220 - markus@cvs.openbsd.org 2001/03/18 12:07:52
[auth-options.c]
     ignore permitopen="host:port" if AllowTcpForwarding==no
2001-03-19 00:13:46 +00:00
Damien Miller 9de61e8c59 - (djm) Add getusershell() functions from OpenBSD CVS 2001-03-19 10:09:27 +11:00
Damien Miller 60bc517356 - (djm) Seed PRNG at startup, rather than waiting for arc4random calls to
do it implicitly.
2001-03-19 09:38:15 +11:00
Tim Rice b399be4436 - tim@mindrot.org 2001/03/17 18:45:25 [compat.c]
openbsd-compat/fake-regex.h
2001-03-17 18:43:16 -08:00
Ben Lindstrom d69191bb4e - markus@cvs.openbsd.org 2001/03/17 17:27:59
[auth.c]
     check /etc/shells, too
2001-03-17 23:13:27 +00:00
Ben Lindstrom fea7278d90 - (bal) Fixed scp type casing issue which causes "scp: protocol error:
size not delimited" fatal errors when tranfering.
2001-03-17 18:07:46 +00:00
Ben Lindstrom 45b14dbddc - Check for gl_matchc support in glob_t and fall back to the
openbsd-compat/glob.[ch] support if it does not exist.
2001-03-17 01:15:38 +00:00
Ben Lindstrom 7bb8b49596 - markus@cvs.openbsd.org 2001/03/16 19:06:30
[auth-options.c channels.c channels.h serverloop.c session.c]
     implement "permitopen" key option, restricts -L style forwarding to
     to specified host:port pairs. based on work by harlan@genua.de
2001-03-17 00:47:54 +00:00
Ben Lindstrom cf00df6344 - markus@cvs.openbsd.org 2001/03/16 13:44:24
[sftp-int.c]
     discourage strcat/strcpy
2001-03-17 00:37:31 +00:00
Ben Lindstrom 5df2ffaeac - markus@cvs.openbsd.org 2001/03/16 09:55:53
[sftp-int.c]
     fix memset and whitespace
2001-03-17 00:36:17 +00:00
Ben Lindstrom c8d1c30c31 - djm@cvs.openbsd.org 2001/03/16 08:16:18
[sftp-client.c sftp-client.h sftp-glob.c sftp-int.c]
     Revise globbing for get/put to be more shell-like. In particular,
     "get/put file* directory/" now works. ok markus@
2001-03-17 00:34:46 +00:00
Ben Lindstrom 86fe8686b9 - markus@cvs.openbsd.org 2001/03/15 22:07:08
[session.c]
     pass Session to do_child + KNF
2001-03-17 00:32:57 +00:00
Ben Lindstrom a4c57666b9 - markus@cvs.openbsd.org 2001/03/15 15:05:59
[scp.c]
     use %lld in printf, ok millert@/deraadt@; report from ssh@client.fi
2001-03-17 00:10:20 +00:00
Damien Miller 168a700cc6 - Support usrinfo() on AIX. Based on patch from Gert Doering
<gert@greenie.muc.de>
2001-03-17 10:29:50 +11:00
Ben Lindstrom c7f4ccd52c - deraadt@cvs.openbsd.org 2001/03/14 22:50:25
[sftp-server.c]
     note no getopt()
2001-03-15 00:09:15 +00:00
Ben Lindstrom de2273f951 - (bal) Cygwin README change by Corinna Vinschen <vinschen@redhat.com> 2001-03-14 21:30:18 +00:00
Ben Lindstrom f78682d24a - markus@cvs.openbsd.org 2001/03/14 15:15:58
[sftp-int.c]
     add version command
2001-03-14 21:26:27 +00:00
Kevin Steves 54f15b6b6f - (stevesk) ssh-keyscan.c: specify "openbsd-compat/fake-queue.h" 2001-03-14 18:37:13 +00:00
Ben Lindstrom 025df4a1b4 - markus@cvs.openbsd.org 2001/03/14 08:57:14
[sftp-client.c]
     Wall
2001-03-14 15:16:34 +00:00
Damien Miller 3c02768950 - (djm) Add replacement glob() from OpenBSD libc if the system glob is
missing or lacks the GLOB_ALTDIRFUNC extension
 - (djm) Remove -I$(srcdir)/openbsd-compat from CFLAGS, refer to headers
   relatively. Avoids conflict between glob.h and /usr/include/glob.h
2001-03-14 11:39:45 +11:00
Ben Lindstrom 46e55aaabc - Fix strerror() in bsd-misc.c 2001-03-13 23:38:20 +00:00
Damien Miller 4870afd7c7 - djm@cvs.openbsd.org 2001/03/13 22:42:54
[sftp-client.c sftp-client.h sftp-glob.c sftp-glob.h sftp-int.c]
    sftp client filename globbing for get, put, ch{mod,grp,own}. ok markus@
2001-03-14 10:27:09 +11:00
Damien Miller 056ddf7af3 - OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/13 17:34:42
    [auth-options.c]
    missing xfree, deny key on parse error; ok stevesk@
2001-03-14 10:15:20 +11:00
Ben Lindstrom cfccef96a3 - OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/12 22:02:02
     [key.c key.h ssh-add.c ssh-keygen.c sshconnect.c sshconnect2.c]
     remove old key_fingerprint interface, s/_ex//
2001-03-13 04:57:58 +00:00
Ben Lindstrom 9ae2bb6790 - (bal) Reorder includes in Makefile. 2001-03-12 05:16:18 +00:00
Damien Miller 3e292fab40 - (djm) Add "static_openssl" RPM build option, remove rsh build dependency 2001-03-12 14:47:30 +11:00
Damien Miller 547c276203 - (djm) Bump portable version number for generating test RPMs 2001-03-12 14:23:52 +11:00
Ben Lindstrom 8fd372b194 - markus@cvs.openbsd.org 2001/03/11 22:33:24
[ssh-keygen.1 ssh-keygen.c]
     remove -v again. use -B instead for bubblebabble. make -B consistent
     with -l and make -B work with /path/to/known_hosts. ok deraadt@
2001-03-12 03:02:17 +00:00
Ben Lindstrom f0b4853d86 - markus@cvs.openbsd.org 2001/03/11 18:29:51
[key.c]
     style+cleanup
2001-03-12 02:59:31 +00:00
Tim Rice bee3f2224c test if snprintf() supports %ll
add /dev to search path for PRNGD/EGD socket
  fix my mistake in USER_PATH test program
2001-03-11 17:32:12 -08:00
Ben Lindstrom ca0bf57f2f - deraadt@cvs.openbsd.org 2001/03/11 16:39:03
[ssh-keygen.c]
     KNF, and SHA1 binary output is just creeping featurism
2001-03-11 20:08:29 +00:00
Ben Lindstrom cbe3ad2f70 - jakob@cvs.openbsd.org 2001/03/11 15:13:09
[key.c]
     cleanup & shorten some var names key_fingerprint_bubblebabble.
2001-03-11 20:06:59 +00:00
Ben Lindstrom a8a73e62ed - jakob@cvs.openbsd.org 2001/03/11 15:04:16
[ssh-keygen.1 ssh-keygen.c]
     print both md5, sha1 and bubblebabble fingerprints when using
     ssh-keygen -l -v. ok markus@.
2001-03-11 20:05:19 +00:00
Ben Lindstrom 96e8ea6a31 - jakob@cvs.openbsd.org 2001/03/11 15:03:16
[key.c key.h]
     add improved fingerprint functions. based on work by Carsten
     Raskgaard <cara@int.tele.dk> and modified by me. ok markus@.
2001-03-11 20:03:44 +00:00
Ben Lindstrom b54873ad24 - markus@cvs.openbsd.org 2001/03/11 13:25:36
[auth2.c key.c]
     debug
2001-03-11 20:01:55 +00:00
Ben Lindstrom b9be60a722 - markus@cvs.openbsd.org 2001/03/10 17:51:04
[kex.c match.c match.h readconf.c readconf.h sshconnect2.c]
     add PreferredAuthentications
2001-03-11 01:49:19 +00:00
Tim Rice 7f283fcc94 - tim@mindrot.org 2001/03/10 16:33:42 [configure.in Makefile.in sshd_config]
make sure $bindir is in USER_PATH so scp will work
2001-03-10 16:52:25 -08:00
Ben Lindstrom d20d0f3e27 - deraadt@cvs.openbsd.org 2001/03/10 15:31:00
[compat.c compat.h sshconnect.c]
     all known netscreen ssh versions, and older versions of OSU ssh cannot
     handle password padding (newer OSU is fixed)
2001-03-10 17:22:20 +00:00
Ben Lindstrom 00261540be - stevesk@cvs.openbsd.org 2001/03/10 15:02:05
[ttymodes.c ttymodes.h]
     remove unused sgtty macros; ok markus@
2001-03-10 17:17:28 +00:00
Ben Lindstrom 068f3dce28 - deraadt@cvs.openbsd.org 2001/03/10 12:53:51
[readconf.c ssh_config]
     default to SSH2, now that m68k runs fast
2001-03-10 17:15:39 +00:00
Ben Lindstrom 329782e3db - markus@cvs.openbsd.org 2001/03/10 12:48:27
[sshconnect2.c]
     ignore nonexisting private keys; report rjmooney@mediaone.net
2001-03-10 17:08:59 +00:00
Ben Lindstrom 5f5419a6a2 - Removed log.o from sftp client. Not needed. 2001-03-09 19:48:37 +00:00
Ben Lindstrom ca42d5fb7f - deraadt@cvs.openbsd.org 2001/03/09 12:30:29
[sshd.c]
     typo; slade@shore.net
2001-03-09 18:25:32 +00:00
Ben Lindstrom 5fc6270fe9 - deraadt@cvs.openbsd.org 2001/03/09 03:14:39
[ssh-keygen.c]
     create *.pub files with umask 0644, so that you can mv them to
     authorized_keys
2001-03-09 18:19:24 +00:00
Ben Lindstrom 266dfdfd62 - markus@cvs.openbsd.org 2001/03/08 21:42:33
[compat.c compat.h readconf.h ssh.c sshconnect1.c sshconnect2.c]
     implement client side of SSH2_MSG_USERAUTH_PK_OK (test public key ->
     no need to do enter passphrase or do expensive sign operations if the
     server does not accept key).
2001-03-09 00:12:22 +00:00
Ben Lindstrom 283cb821cd - stevesk@cvs.openbsd.org 2001/03/08 20:44:48
[sftp.1]
     spelling, cleanup; ok deraadt@
2001-03-09 00:09:02 +00:00
Ben Lindstrom a038498797 - stevesk@cvs.openbsd.org 2001/03/08 18:47:12
[auth1.c]
     unused; ok markus@
2001-03-08 20:37:22 +00:00
Kevin Steves 52dd46855d - (stevesk) Reliant Unix (SNI) needs HAVE_BOGUS_SYS_QUEUE_H;
Dirk Markwardt <D.Markwardt@tu-bs.de>
2001-03-08 18:26:57 +00:00
Ben Lindstrom cebc858ca2 - OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/08 00:15:48
     [readconf.c ssh.1]
     turn off useprivilegedports by default. only rhost-auth needs
     this. older sshd's may need this, too.
2001-03-08 03:39:10 +00:00
Damien Miller 058316f0f1 - OpenBSD CVS Sync
- djm@cvs.openbsd.org 2001/03/07 10:11:23
    [sftp-client.c sftp-client.h sftp-int.c sftp-server.c sftp.1 sftp.c sftp.h]
    Support for new draft (draft-ietf-secsh-filexfer-01). New symlink handling
    functions and small protocol change.
2001-03-08 10:08:49 +11:00
Damien Miller 8ac0a7ec44 - Cygwin contrib improvements from Corinna Vinschen <vinschen@redhat.com> 2001-03-07 21:38:19 +11:00
Ben Lindstrom b29e34d1e4 - deraadt@cvs.openbsd.org 2001/03/07 04:05:58
[ssh.1]
     removed dated comment
2001-03-07 06:08:50 +00:00
Ben Lindstrom d58eb5f50e - deraadt@cvs.openbsd.org 2001/03/07 01:19:06
[ssh.1 sshd.8]
     the name "secure shell" is boring, noone ever uses it
2001-03-07 06:07:22 +00:00
Ben Lindstrom c9b6eabb49 - deraadt@cvs.openbsd.org 2001/03/06 15:10:42
[sftp.1]
     order things
2001-03-07 01:29:17 +00:00
Ben Lindstrom 562c26bccf - deraadt@cvs.openbsd.org 2001/03/06 06:11:44
[sftp-int.c sftp.1 sftp.c]
     sftp -b batchfile; mouring@etoh.eviladmin.org
2001-03-07 01:26:48 +00:00
Ben Lindstrom e21c4adaac - deraadt@cvs.openbsd.org 2001/03/06 06:11:18
[ssh-keyscan.c]
     appease gcc
2001-03-07 01:23:30 +00:00
Ben Lindstrom ebc882757b - millert@cvs.openbsd.org 2001/03/06 01:08:27
[clientloop.c]
     If read() fails with EINTR deal with it the same way we treat EAGAIN
2001-03-06 03:34:40 +00:00
Ben Lindstrom 884a4aca88 - millert@cvs.openbsd.org 2001/03/06 01:06:03
[ssh-keyscan.c]
     Don't assume we wil get the version string all in one read().
     deraadt@ OK'd
2001-03-06 03:33:04 +00:00
Ben Lindstrom b3144e58e7 - deraadt@cvs.openbsd.org 2001/03/06 00:33:04
[authfd.c cli.c ssh-agent.c]
     EINTR/EAGAIN handling is required in more cases
2001-03-06 03:31:34 +00:00
Ben Lindstrom be6a5a6dfe - stevesk@cvs.openbsd.org 2001/03/05 17:58:22
[dh.c]
     spelling
2001-03-06 01:13:06 +00:00
Ben Lindstrom 1e62174af1 - stevesk@cvs.openbsd.org 2001/03/05 17:40:48
[ssh.1]
     more ssh_known_hosts2 documentation; ok markus@
2001-03-06 01:10:53 +00:00
Ben Lindstrom 4c4f05e096 - markus@cvs.openbsd.org 2001/03/05 17:17:21
[kex.c kex.h sshconnect2.c sshd.c]
     generate a 2*need size (~300 instead of 1024/2048) random private
     exponent during the DH key agreement. according to Niels (the great
     german advisor) this is safe since /etc/primes contains strong
     primes only.

     References:
             P. C. van Oorschot and M. J. Wiener, On Diffie-Hellman key
             agreement with short exponents, In Advances in Cryptology
             - EUROCRYPT'96, LNCS 1070, Springer-Verlag, 1996, pp.332-343.
2001-03-06 01:09:20 +00:00
Ben Lindstrom c78a187b17 - deraadt@cvs.openbsd.org 2001/03/05 16:07:15
[sshd.8]
     detail default hmac setup too
2001-03-06 01:06:58 +00:00
Ben Lindstrom ec26fb1667 - deraadt@cvs.openbsd.org 2001/03/05 15:56:16
[myproposal.h ssh.1]
     switch to aes128-cbc/hmac-md5 by default in SSH2 -- faster;
     provos & markus ok
2001-03-06 01:05:23 +00:00
Ben Lindstrom 35f1f4e2b8 - stevesk@cvs.openbsd.org 2001/03/05 15:44:51
[servconf.c]
     sync error message; ok markus@
2001-03-06 01:02:41 +00:00
Ben Lindstrom ff8b4940ab - deraadt@cvs.openbsd.org 2001/03/05 14:28:47
[sshd.8]
     alpha order; jcs@rt.fm
2001-03-06 01:00:03 +00:00
Kevin Steves 12888d1fc8 - (stevesk) sftp.c: handle __progname 2001-03-05 19:50:57 +00:00
Kevin Steves 935aa24bf4 - (stevesk) OpenBSD sync:
- deraadt@cvs.openbsd.org 2001/03/05 08:37:27
     [ssh-keyscan.c]
     skip inlining, why bother
2001-03-05 19:46:37 +00:00
Damien Miller 30246a8f2b - (djm) Fix up LOG_AUTHPRIV for systems that have it 2001-03-05 21:23:31 +11:00
Ben Lindstrom 2d9bfb17be - (bal) Fix up logging since it changed. removed log-*.c 2001-03-05 08:16:54 +00:00
Ben Lindstrom 0f68db4e9e - (bal) Put HAVE_PW_CLASS_IN_PASSWD back into pwcopy() 2001-03-05 07:57:09 +00:00
Ben Lindstrom fd2e05b95e - deraadt@cvs.openbsd.org 2001/03/04 18:21:28
[sshd.8]
     list SSH2 ciphers
2001-03-05 07:48:45 +00:00
Ben Lindstrom 6df8ef4196 - millert@cvs.openbsd.org 2001/03/04 17:42:28
[authfd.c channels.c dh.c log.c readconf.c servconf.c sftp-int.c
      ssh.c sshconnect.c sshd.c]
     log functions should not be passed strings that end in newline as they
     get passed on to syslog() and when logging to stderr, do_log() appends
     its own newline.
2001-03-05 07:47:23 +00:00
Ben Lindstrom fafea18d68 - stevesk@cvs.openbsd.org 2001/03/04 12:54:04
[sshd.8]
     spelling
2001-03-05 07:43:27 +00:00
Ben Lindstrom d9cae22d1a - stevesk@cvs.openbsd.org 2001/03/04 11:16:06
[servconf.c sshd.8]
     kill obsolete RandomSeed; ok markus@ deraadt@
2001-03-05 07:42:03 +00:00
Ben Lindstrom 323c98f4a7 - stevesk@cvs.openbsd.org 2001/03/04 11:04:41
[sshd.8]
     small cleanup and clarify for PermitRootLogin; ok markus@
2001-03-05 07:40:40 +00:00
Ben Lindstrom 3d73a34931 - stevesk@cvs.openbsd.org 2001/03/04 10:57:53
[ssh.c]
     add -m to usage; ok markus@
2001-03-05 07:39:01 +00:00
Ben Lindstrom 9c5324422e - (bal) CVS ID touch up on auth2.c, serverloop.c, session.c & sshd.c 2001-03-05 07:33:14 +00:00
Ben Lindstrom b1131e9329 - markus@cvs.openbsd.org 2001/03/04 00:03:59
[channels.c]
     debug1->2
2001-03-05 07:27:13 +00:00
Ben Lindstrom 8a432f5fe0 - markus@cvs.openbsd.org 2001/03/03 23:59:34
[log.c ssh.c]
     log*.c -> log.c
2001-03-05 07:24:46 +00:00
Ben Lindstrom 46d6e09099 - markus@cvs.openbsd.org 2001/03/03 23:52:22
[sftp.c]
     clean up arg processing. based on work by Christophe_Moret@hp.com
2001-03-05 07:10:47 +00:00
Ben Lindstrom 1addabd491 - deraadt@cvs.openbsd.org 2001/03/03 22:07:50
[sftp-server.c]
     KNF
2001-03-05 07:09:11 +00:00
Ben Lindstrom cb978aa057 - millert@cvs.openbsd.org 2001/03/03 21:41:07
[packet.c]
     Dynamically allocate fd_set; deraadt@ OK
2001-03-05 07:07:49 +00:00
Ben Lindstrom cb80bdf6d5 - millert@cvs.openbsd.org 2001/03/03 21:40:30
[sftp-server.c]
     Dynamically allocate fd_set; deraadt@ OK
2001-03-05 07:06:12 +00:00
Ben Lindstrom c1e0421cb4 - millert@cvs.openbsd.org 2001/03/03 21:19:41
[ssh-keyscan.c]
     Dynamically allocate read_wait and its copies.  Since maxfd is
     based on resource limits it is often (usually?) larger than FD_SETSIZE.
2001-03-05 07:04:38 +00:00
Ben Lindstrom d20b855bc6 - deraadt@cvs.openbsd.org 2001/03/03 06:53:12
[ssh-keyscan.c]
     standard theo sweep
2001-03-05 07:01:18 +00:00
Ben Lindstrom 92a2e38f8e - deraadt@cvs.openbsd.org 2001/03/02 18:54:31
[atomicio.c atomicio.h auth-chall.c auth.c auth2-chall.c crc32.h
      scp.c serverloop.c session.c sftp-server.8 sftp.1 ssh-add.1 ssh-add.c
      ssh-agent.1 ssh-agent.c ssh-keygen.1 ssh.1 sshd.8]
     make copyright lines the same format
2001-03-05 06:59:27 +00:00
Ben Lindstrom d7f5b517d5 - deraadt@cvs.openbsd.org 2001/03/02 09:42:49
[sshd.8]
     doc the dsa/rsa key pair files
2001-03-05 06:57:23 +00:00
Ben Lindstrom 49a098d1b2 - deraadt@cvs.openbsd.org 2001/03/02 06:21:01
[sshd.8]
     explain SIGHUP better
2001-03-05 06:55:18 +00:00
Ben Lindstrom 4040fe10a9 - markus@cvs.openbsd.org 2001/03/01 22:46:37
[ssh.c]
     don't truncate remote ssh-2 commands; from mkubita@securities.cz
     use min, not max for logging, fixes overflow.
2001-03-05 06:52:57 +00:00
Ben Lindstrom b22c2b86af - deraadt@cvs.openbsd.org 2001/03/01 03:38:33
[cli.c cli.h rijndael.h ssh-keyscan.1]
     copyright notices on all source files
2001-03-05 06:50:47 +00:00
Ben Lindstrom 204e48851a - deraadt@cvs.openbsd.org 2001/03/01 02:45:10
[auth-rsa.c auth2.c deattack.c packet.c]
     KNF
2001-03-05 06:47:00 +00:00
Ben Lindstrom 0ab2a01079 - deraadt@cvs.openbsd.org 2001/03/01 02:29:04
[ssh.c]
     shorten usage by a line
2001-03-05 06:45:21 +00:00
Ben Lindstrom cf0da4067b - (bal) CVS ID touch up on uuencode.c 2001-03-05 06:42:58 +00:00
Ben Lindstrom 66e5ecc6b2 - (bal) CVS ID touch up on sftp-int.c 2001-03-05 06:35:29 +00:00
Ben Lindstrom afd3475ddf - deraadt@cvs.openbsd.org 2001/03/01 02:11:25
[authfd.c]
     split line so that p will have an easier time next time around
2001-03-05 06:33:23 +00:00