Commit Graph

1489 Commits

Author SHA1 Message Date
Ben Lindstrom 5eabda303a - markus@cvs.openbsd.org 2001/04/12 19:15:26
[auth-rhosts.c auth.h auth2.c buffer.c canohost.c canohost.h
      compat.c compat.h hostfile.c pathnames.h readconf.c readconf.h
      servconf.c servconf.h ssh.c sshconnect.c sshconnect.h sshconnect1.c
      sshconnect2.c sshd_config]
     implement HostbasedAuthentication (= RhostRSAAuthentication for ssh v2)
     similar to RhostRSAAuthentication unless you enable (the experimental)
     HostbasedUsesNameFromPacketOnly option.  please test. :)
2001-04-12 23:34:34 +00:00
Ben Lindstrom 0998872972 - (bal) Added openbsd-compat/inet_ntop.[ch] since HP/UX (and others)
lack it.
2001-04-12 21:35:52 +00:00
Ben Lindstrom 2b646528cb - markus@cvs.openbsd.org 2001/04/12 14:29:09
[ssh.c]
     show debug output during option processing, report from
     pekkas@netcore.fi
2001-04-12 16:16:57 +00:00
Ben Lindstrom 9fce9f02e8 - lebel@cvs.openbsd.org 2001/04/11 16:25:30
[sshd.8 sshd.c]
     implement the -e option into sshd:
      -e      When this option is specified, sshd will send the output to the
              standard error instead of the system log.
     markus@ OK.
2001-04-11 23:10:09 +00:00
Ben Lindstrom 6fa9d10ed5 - markus@cvs.openbsd.org 2001/04/11 13:56:13
[channels.c ssh.c]
     https-connect and socks5 support. i feel so bad.
2001-04-11 23:08:17 +00:00
Ben Lindstrom 146edb9832 - markus@cvs.openbsd.org 2001/04/11 10:59:01
[ssh.c]
     use strtol() for ports, thanks jakob@
2001-04-11 23:06:28 +00:00
Ben Lindstrom 23d9a6d38e - djm@cvs.openbsd.org 2001/04/11 07:06:22
[sftp-int.c]
     'mget' and 'mput' aliases; ok markus@
2001-04-11 23:05:17 +00:00
Ben Lindstrom c486d88bf8 - markus@cvs.openbsd.org 2001/04/10 12:15:23
[channels.c]
     debug cleanup
2001-04-11 16:08:34 +00:00
Ben Lindstrom 18a82ac029 - itojun@cvs.openbsd.org 2001/04/10 09:13:22
[ssh-add.1 ssh-agent.1 ssh-keygen.1 ssh.1 sshd.8]
     document id_rsa{.pub,}.  markus ok
2001-04-11 15:59:35 +00:00
Ben Lindstrom b392151685 - markus@cvs.openbsd.org 2001/04/10 07:46:58
[channels.c]
     cleanup socks4 handling
2001-04-11 15:57:50 +00:00
Ben Lindstrom 1a598a4597 - stevesk@cvs.openbsd.org 2001/04/09 18:00:15
[sshd.8]
     ListenAddress mandoc from aaron@
2001-04-10 02:48:50 +00:00
Ben Lindstrom 12de61680e - markus@cvs.openbsd.org 2001/04/09 15:19:49
[ssh-add.1]
     ssh-add retries the last passphrase...
2001-04-10 02:46:54 +00:00
Ben Lindstrom ee61794620 - markus@cvs.openbsd.org 2001/04/09 15:12:23
[ssh-add.c]
     passphrase caching: ssh-add tries last passphrase, clears passphrase if
     not successful and after last try.
     based on discussions with espie@, jakob@, ... and code from jakob@ and
     wolfgang@wsrcc.com
2001-04-10 02:45:32 +00:00
Ben Lindstrom 8ffeacfb2d - stevesk@cvs.openbsd.org 2001/04/09 00:42:05
[sftp.1]
     spelling
2001-04-10 02:43:57 +00:00
Ben Lindstrom 4b3564e6f2 - stevesk@cvs.openbsd.org 2001/04/08 23:28:27
[sshd.8]
     spelling
2001-04-10 02:41:56 +00:00
Ben Lindstrom 9492484a27 - deraadt@cvs.openbsd.org 2001/04/08 20:52:55
[sftp.c]
     do not modify an actual argv[] entry
2001-04-10 02:40:17 +00:00
Kevin Steves cb17e99fae - (stevesk) use setresgid() for setegid() if needed 2001-04-09 14:50:52 +00:00
Kevin Steves 393d2f782d - (stevesk) configure.in: typo 2001-04-08 22:50:43 +00:00
Ben Lindstrom f52373f732 - markus@cvs.openbsd.org 2001/04/08 11:24:33
[uidswap.c]
     KNF
2001-04-08 18:38:04 +00:00
Ben Lindstrom 3bb4f9da73 - markus@cvs.openbsd.org 2001/04/07 08:55:18
[buffer.c channels.c channels.h readconf.c ssh.c]
     allow the ssh client act as a SOCKS4 proxy (dynamic local
     portforwarding).  work by Dan Kaminsky <dankamin@cisco.com> and me.
     thanks to Dan for this great patch: use 'ssh -D 1080 host' and make
     netscape use localhost:1080 as a socks proxy.
2001-04-08 18:30:26 +00:00
Ben Lindstrom 3fcf1a22b5 - markus@cvs.openbsd.org 2001/04/06 21:00:17
[auth-rh-rsa.c auth-rhosts.c auth-rsa.c auth2.c channels.c session.c
      ssh.c sshconnect.c sshconnect.h uidswap.c uidswap.h]
     do gid/groups-swap in addition to uid-swap, should help if /home/group
     is chmod 750 + chgrp grp /home/group/, work be deraadt and me, thanks
     to olar@openwall.com is comments.  we had many requests for this.
2001-04-08 18:26:59 +00:00
Ben Lindstrom d344763643 - markus@cvs.openbsd.org 2001/04/08 11:27:33
[clientloop.c]
     leave_raw_mode if ssh2 "session" is closed
2001-04-08 18:07:22 +00:00
Ben Lindstrom d5730a8b85 - markus@cvs.openbsd.org 2001/04/08 13:03:00
[ssh-add.c]
     init pointers with NULL, thanks to danimal@danimal.org
2001-04-08 18:04:36 +00:00
Ben Lindstrom 49e57a871a - stevesk@cvs.openbsd.org 2001/04/08 16:01:36
[sshd.8]
     document ListenAddress addr:port
2001-04-08 18:02:43 +00:00
Ben Lindstrom c510af40e3 - stevesk@cvs.openbsd.org 2001/04/06 22:25:25
[servconf.c]
     in addition to:
     ListenAddress host|ipv4_addr|ipv6_addr
     permit:
     ListenAddress [host|ipv4_addr|ipv6_addr]:port
     ListenAddress host|ipv4_addr:port
     sshd.8 updates coming.  ok markus@
2001-04-07 17:25:48 +00:00
Ben Lindstrom ab0cedc587 - stevesk@cvs.openbsd.org 2001/04/06 22:12:47
[hostfile.c]
     unused; typo in comment
2001-04-07 17:23:43 +00:00
Ben Lindstrom d47cf4d53c - deraadt@cvs.openbsd.org 2001/04/06 16:46:59
[scp.c]
     remove trailing / from source paths; fixes pr#1756
2001-04-07 01:14:38 +00:00
Ben Lindstrom e34ab4c04e - markus@cvs.openbsd.org 2001/04/05 23:39:20
[serverloop.c]
     keep the ssh session even if there is no active channel.
     this is more in line with the protocol spec and makes
        ssh -N -L 1234:server:110 host
     more useful.
     based on discussion with <mats@mindbright.se> long time ago
     and recent mail from <res@shore.net>
2001-04-07 01:12:11 +00:00
Ben Lindstrom 8248d116c4 - (bal) CVS ID Resync of version.h 2001-04-07 01:08:46 +00:00
Kevin Steves be48f2b4b1 - (stevesk) Makefile.in: log.o is in libssh.a 2001-04-06 01:58:37 +00:00
Ben Lindstrom 4c3f77dd3b - markus@cvs.openbsd.org 2001/04/05 21:05:24
[clientloop.c ssh.c]
     don't request a session for 'ssh -N', pointed out slade@shore.net
2001-04-05 23:37:36 +00:00
Ben Lindstrom d7dd23ffed - markus@cvs.openbsd.org 2001/04/05 21:02:46
[buffer.c]
     better error message
2001-04-05 23:36:01 +00:00
Ben Lindstrom 11bd89936d - markus@cvs.openbsd.org 2001/04/05 20:01:10
[clientloop.c]
     for ~R print message if server does not support rekeying. (and fix ~R).
2001-04-05 23:34:29 +00:00
Ben Lindstrom f15a386511 - stevesk@cvs.openbsd.org 2001/04/05 15:48:18
[canohost.c canohost.h session.c]
     move get_remote_name_or_ip() to canohost.[ch]; for portable.  ok markus@
2001-04-05 23:32:17 +00:00
Ben Lindstrom f327235f65 - markus@cvs.openbsd.org 2001/04/05 15:45:43
[ssh.1]
     ssh defaults to protocol v2; from quisar@quisar.ambre.net
2001-04-05 23:29:59 +00:00
Ben Lindstrom a8baf36d41 - markus@cvs.openbsd.org 2001/04/05 11:09:17
[clientloop.c compat.c compat.h]
     add SSH_BUG_NOREKEY and detect broken (=all old) openssh versions.
2001-04-05 23:28:36 +00:00
Ben Lindstrom a3700050ec - markus@cvs.openbsd.org 2001/04/05 10:42:57
[auth-chall.c authfd.c channels.c clientloop.c kex.c kexgex.c key.c
      mac.c packet.c serverloop.c sftp-client.c sftp-client.h sftp-glob.c
      sftp-glob.h sftp-int.c sftp-server.c sftp.c ssh-keygen.c sshconnect.c
      sshconnect2.c sshd.c]
     fix whitespace: unexpand + trailing spaces.
2001-04-05 23:26:32 +00:00
Ben Lindstrom a6c20148f5 - markus@cvs.openbsd.org 2001/04/05 10:39:48
[version.h]
     temporary version 2.5.4 (supports rekeying).
     this is not an official release.
2001-04-05 23:22:25 +00:00
Ben Lindstrom fb50cdfdb8 - markus@cvs.openbsd.org 2001/04/05 10:39:03
[compress.c compress.h packet.c]
     reset compress state per direction when rekeying.
2001-04-05 23:20:46 +00:00
Ben Lindstrom 4f3ae4c550 - markus@cvs.openbsd.org 2001/04/05 10:00:06
[compat.c]
     2.3.x does old  GEX, too; report jakob@
2001-04-05 23:19:21 +00:00
Kevin Steves ff8b4959d9 - (stevesk) logintest.c: fix for systems without __progname 2001-04-05 23:05:22 +00:00
Kevin Steves 86a52b3dc8 - (stevesk) don't use vhangup() if defined(HAVE_DEV_PTMX); also removes
BROKEN_VHANGUP
2001-04-05 17:15:08 +00:00
Ben Lindstrom 5ba23b39bf - markus@cvs.openbsd.org 2001/04/04 23:09:18
[dh.c kex.c packet.c]
     clear+free keys,iv for rekeying.
     + fix DH mem leaks. ok niels@
2001-04-05 02:05:21 +00:00
Ben Lindstrom 8e312f3db0 - markus@cvs.openbsd.org 2001/04/04 22:04:35
[kex.c kexgex.c serverloop.c]
     parse full kexinit packet.
     make server-side more robust, too.
2001-04-04 23:50:21 +00:00
Ben Lindstrom 0cae04005e - markus@cvs.openbsd.org 2001/04/04 20:32:56
[auth2.c]
     we don't care about missing bannerfiles; from tsoome@ut.ee, ok deraadt@
2001-04-04 23:47:52 +00:00
Ben Lindstrom be2cc43c3a - markus@cvs.openbsd.org 2001/04/04 20:25:38
[channels.c channels.h clientloop.c kex.c kex.h serverloop.c
      sshconnect2.c sshd.c]
     more robust rekeying
     don't send channel data after rekeying is started.
2001-04-04 23:46:07 +00:00
Ben Lindstrom 78c261ab4a - markus@cvs.openbsd.org 2001/04/04 15:50:55
[compat.c]
     f-secure 1.3.2 does not handle IGNORE; from milliondl@ornl.gov
2001-04-04 23:43:26 +00:00
Ben Lindstrom 8ac9106c3d - markus@cvs.openbsd.org 2001/04/04 14:34:58
[clientloop.c kex.c kex.h serverloop.c sshconnect2.c sshd.c]
     enable server side rekeying + some rekey related clientup.
     todo: we should not send any non-KEX messages after we send KEXINIT
2001-04-04 17:57:54 +00:00
Ben Lindstrom 238abf6a14 - markus@cvs.openbsd.org 2001/04/04 09:48:35
[kex.c kex.h kexdh.c kexgex.c packet.c sshconnect2.c sshd.c]
     don't sent multiple kexinit-requests.
     send newkeys, block while waiting for newkeys.
     fix comments.
2001-04-04 17:52:53 +00:00
Ben Lindstrom 22b19b43e4 - (bal) Oops.. Missed including kexdh.c and kexgex.c in OpenBSD sync. 2001-04-04 17:39:19 +00:00