Damien Miller
bf75776d41
- (djm) Don't log SSH2 PAM KbdInt responses to debug, they may contain
...
passwords.
2001-01-31 10:50:49 +11:00
Damien Miller
709528ab6a
- (djm) Fix autoconf logic for --with-lastlog=no Report and diagnosis from
...
Philipp Buehler <lists@fips.de> and Kevin Steves <stevesk@sweden.hp.com>
respectively.
2001-01-31 09:57:55 +11:00
Damien Miller
3c4659cb6f
- (djm) OpenBSD CVS Sync:
...
- djm@cvs.openbsd.org 2001/01/30 15:48:53
[sshconnect.c]
Make warning message a little more consistent. ok markus@
2001-01-31 09:52:43 +11:00
Kevin Steves
b6b4a7a29a
- (stevesk) configure.in: remove duplicate PROG_LS
2001-01-30 18:31:43 +00:00
Damien Miller
e142d41ce6
speeling
2001-01-30 20:03:08 +11:00
Damien Miller
832562e9ba
- djm@cvs.openbsd.org 2001/01/29 05:36:11
...
[ssh.1 ssh.c]
Allow invocation of sybsystem by commandline (-s); ok markus@
2001-01-30 09:30:01 +11:00
Damien Miller
7650bc6842
- (djm) OpenBSD CVS Sync:
...
- markus@cvs.openbsd.org 2001/01/29 12:47:32
[rsa.c rsa.h ssh-agent.c sshconnect1.c sshd.c]
handle rsa_private_decrypt failures; helps against the Bleichenbacher
pkcs#1 attack
2001-01-30 09:27:26 +11:00
Damien Miller
d83ff35d66
- (djm) OpenBSD CVS Sync:
...
- markus@cvs.openbsd.org 2001/01/29 12:42:35
[canohost.c canohost.h channels.c clientloop.c]
add get_peer_ipaddr(socket), x11-fwd in ssh2 requires ipaddr, not DNS
2001-01-30 09:19:34 +11:00
Damien Miller
5e953217f1
- (djm) OpenBSD CVS Sync:
...
- markus@cvs.openbsd.org 2001/01/29 09:55:37
[channels.c channels.h clientloop.c serverloop.c]
fix select overflow; ok deraadt@ and stevesk@
2001-01-30 09:14:00 +11:00
Kevin Steves
b71eb58ff4
- (stevesk) sftp-server.c: use %lld vs. %qd
2001-01-29 16:57:27 +00:00
Ben Lindstrom
6d40c0f806
- (bal) Minor auth2.c resync. Whitespace and moving of an #include.
2001-01-29 09:02:24 +00:00
Ben Lindstrom
a73335004e
- stevesk@cvs.openbsd.org 2001/01/28 20:43:25
...
[sshd.8]
spelling. ok markus@
2001-01-29 08:44:03 +00:00
Ben Lindstrom
c12a6b7066
- markus@cvs.openbsd.org 2001/01/28 10:37:26
...
[sshd.c sshd.8]
remove -Q, no longer needed
2001-01-29 08:41:05 +00:00
Ben Lindstrom
8eec2c8f06
- markus@cvs.openbsd.org 2001/01/28 10:24:04
...
[ssh-add.1 ssh-agent.1 ssh-keygen.1 ssh.1 sshd.8]
cleanup AUTHORS sections
2001-01-29 08:39:16 +00:00
Ben Lindstrom
eb930d4432
- stevesk@cvs.openbsd.org 2001/01/28 20:36:16
...
[readconf.c ssh.1]
``StrictHostKeyChecking ask'' documentation and small cleanup.
ok markus@
2001-01-29 08:37:08 +00:00
Ben Lindstrom
035782e712
- markus@cvs.openbsd.org 2001/01/28 10:24:04
...
[ssh-add.1 ssh-agent.1 ssh-keygen.1 ssh.1]
cleanup AUTHORS sections
2001-01-29 08:34:16 +00:00
Ben Lindstrom
91fd62af63
- stevesk@cvs.openbsd.org 2001/01/28 20:53:21
...
[xmalloc.c]
use size_t for strlen() return. ok markus@
2001-01-29 08:10:11 +00:00
Ben Lindstrom
d53902049e
- markus@cvs.openbsd.org 2001/01/28 10:37:26
...
[sshd.c]
remove -Q, no longer needed
2001-01-29 08:07:43 +00:00
Ben Lindstrom
5ed8acd3e3
- stevesk@cvs.openbsd.or 2001/01/28 20:36:16
...
[readconf.c]
``StrictHostKeyChecking ask'' documentation and small cleanup.
ok markus@
2001-01-29 08:00:54 +00:00
Ben Lindstrom
ef1cf5d8ea
- markus@cvs.openbsd.org 2001/01/28 10:15:34
...
[dispatch.c]
re-keying is not supported; ok deraadt@
2001-01-29 07:55:07 +00:00
Ben Lindstrom
1170d71b5d
- stevesk@cvs.openbsd.org 2001/01/28 22:27:05
...
[authfile.c]
spelling. use sizeof vs. strlen(). ok markus@
2001-01-29 07:51:26 +00:00
Ben Lindstrom
36579d3daa
- niklas@cvs.openbsd.org 2001/01/2001
...
[atomicio.h canohost.h clientloop.h deattack.h dh.h dispatch.h
groupaccess.c groupaccess.h hmac.h hostfile.h includes.h kex.h
key.h log.h login.h match.h misc.h myproposal.h nchan.ms pathnames.h
radix.h readpass.h rijndael.h serverloop.h session.h sftp.h ssh-add.1
ssh-dss.h ssh-keygen.1 ssh-keyscan.1 ssh-rsa.h ssh1.h ssh_config
sshconnect.h sshd_config tildexpand.h uidswap.h uuencode.h]
$OpenBSD$
2001-01-29 07:39:26 +00:00
Ben Lindstrom
49af82bd7e
- (bal) Put USE_PIPES back into sco3.2v5
2001-01-27 20:43:57 +00:00
Ben Lindstrom
77808aba58
- deraadt@cvs.openbsd.org 2001/01/25 8:06:33
...
[ssh-agent.c]
call _exit() in signal handler
2001-01-26 05:10:34 +00:00
Ben Lindstrom
27eebe6c1b
- (bal) SSH_PROGRAM vs _PATH_SSH_PROGRAM fix pointed out by Roumen
...
Petrov <roumen.petrov@skalasoft.com>
2001-01-25 23:04:22 +00:00
Ben Lindstrom
87b147f539
- (bal) OpenBSD Resync
...
- stevesk@cvs.openbsd.org 2001/01/24 21:03:50
[channels.c]
missing freeaddrinfo(); ok markus@
2001-01-25 00:41:12 +00:00
Ben Lindstrom
ec3830ae6e
- (bal) AC_FUNC_STRFTIME added to autoconf
2001-01-25 00:07:33 +00:00
Damien Miller
0736c4df83
- (djm) Mention PRNGd in documentation, it is nicer than EGD
...
- (djm) Automatically search for "well-known" EGD/PRNGd sockets in autoconf
2001-01-25 10:51:46 +11:00
Damien Miller
2a5c1cede0
- (djm) Sync bsd-* support files:
...
- deraadt@cvs.openbsd.org 2000/01/26 03:43:20
[rresvport.c bindresvport.c]
new bindresvport() semantics that itojun, shin, jean-luc and i have
agreed on, which will be happy for the future. bindresvport_sa() for
sockaddr *, too. docs later..
- deraadt@cvs.openbsd.org 2000/01/24 02:24:21
[bindresvport.c]
in bindresvport(), if sin is non-NULL, example sin->sin_family for
the actual family being processed
2001-01-25 10:32:00 +11:00
Kevin Steves
12aaa04e96
whitespace sync, cleanup
2001-01-24 21:23:39 +00:00
Kevin Steves
f7ffab3ca8
- (stevesk) sftp-server.c: KNF
2001-01-24 20:11:06 +00:00
Kevin Steves
b6b37ba475
- (stevesk) sftp-server.c: fix chmod() mode mask
2001-01-24 20:01:44 +00:00
Kevin Steves
2926586a42
whitespace sync
2001-01-24 14:06:28 +00:00
Kevin Steves
0c69615e35
whitespace sync
2001-01-24 13:47:43 +00:00
Kevin Steves
54286c58da
whitespace sync
2001-01-24 13:10:56 +00:00
Ben Lindstrom
2396b30d95
- (bal) #ifdef around S_IFSOCK if platform does not support it.
...
patch by Tim Rice <tim@multitalents.net>
- (bal) fake-regex.h cleanup based on Tim Rice's patch.
2001-01-23 16:54:29 +00:00
Ben Lindstrom
16a86be01a
- (bal) no 64bit support patch from Tim Rice <tim@multitalents.net>
2001-01-23 16:26:52 +00:00
Ben Lindstrom
bda5bdcf8d
20010124
...
- (bal) OpenBSD Resync
- markus@cvs.openbsd.org 2001/01/23 10:45:10
[ssh.h]
nuke comment
2001-01-23 16:09:51 +00:00
Ben Lindstrom
95fb2dde77
- markus@cvs.openbsd.org 2001/01/22 23:06:39
...
[auth1.c auth2.c readconf.c readconf.h servconf.c servconf.h
sshconnect1.c sshconnect2.c sshd.c]
rename skey -> challenge response.
auto-enable kbd-interactive for ssh2 if challenge-reponse is enabled.
2001-01-23 03:12:10 +00:00
Ben Lindstrom
b1985f7279
- (bal) OpenBSD Resync
...
- markus@cvs.openbsd.org 2001/01/22 8:15:00
[auth-krb4.c sshconnect1.c]
only AFS needs radix.[ch]
- markus@cvs.openbsd.org 2001/01/22 8:32:53
[auth2.c]
no need to include; from mouring@etoh.eviladmin.org
- stevesk@cvs.openbsd.org 2001/01/22 16:55:21
[key.c]
free() -> xfree(); ok markus@
- stevesk@cvs.openbsd.org 2001/01/22 17:22:28
[sshconnect2.c sshd.c]
fix memory leaks in SSH2 key exchange; ok markus@
2001-01-23 00:19:15 +00:00
Ben Lindstrom
9dffa01368
A bit of this patch was in the last commit
...
- (bal) SSH_ASKPASS_DEFAULT to _PATH_SSH_ASKPASS_DEFAULT
2001-01-22 21:22:14 +00:00
Ben Lindstrom
cb577331b4
20010123
...
- (bal) regexp.h typo in configure.in. Should have been regex.h
- (bal) SSH_USER_DIR to _PATH_SSH_USER_DIR patch by stevesk@
2001-01-22 21:06:19 +00:00
Ben Lindstrom
226cfa0378
Hopefully things did not get mixed around too much. It compiles under
...
Linux and works. So that is at least a good sign. =)
20010122
- (bal) OpenBSD Resync
- markus@cvs.openbsd.org 2001/01/19 12:45:26 GMT 2001 by markus
[servconf.c ssh.h sshd.c]
only auth-chall.c needs #ifdef SKEY
- markus@cvs.openbsd.org 2001/01/19 15:55:10 GMT 2001 by markus
[auth-krb4.c auth-options.c auth-rh-rsa.c auth-rhosts.c auth-rsa.c
auth1.c auth2.c channels.c clientloop.c dh.c dispatch.c nchan.c
packet.c pathname.h readconf.c scp.c servconf.c serverloop.c
session.c ssh-add.c ssh-keygen.c ssh-keyscan.c ssh.c ssh.h
ssh1.h sshconnect1.c sshd.c ttymodes.c]
move ssh1 definitions to ssh1.h, pathnames to pathnames.h
- markus@cvs.openbsd.org 2001/01/19 16:48:14
[sshd.8]
fix typo; from stevesk@
- markus@cvs.openbsd.org 2001/01/19 16:50:58
[ssh-dss.c]
clear and free digest, make consistent with other code (use dlen); from
stevesk@
- markus@cvs.openbsd.org 2001/01/20 15:55:20 GMT 2001 by markus
[auth-options.c auth-options.h auth-rsa.c auth2.c]
pass the filename to auth_parse_options()
- markus@cvs.openbsd.org 2001/01/20 17:59:40 GMT 2001
[readconf.c]
fix SIGSEGV from -o ""; problem noted by jehsom@togetherweb.com
- stevesk@cvs.openbsd.org 2001/01/20 18:20:29
[sshconnect2.c]
dh_new_group() does not return NULL. ok markus@
- markus@cvs.openbsd.org 2001/01/20 21:33:42
[ssh-add.c]
do not loop forever if askpass does not exist; from
andrew@pimlott.ne.mediaone.net
- djm@cvs.openbsd.org 2001/01/20 23:00:56
[servconf.c]
Check for NULL return from strdelim; ok markus
- djm@cvs.openbsd.org 2001/01/20 23:02:07
[readconf.c]
KNF; ok markus
- jakob@cvs.openbsd.org 2001/01/21 9:00:33
[ssh-keygen.1]
remove -R flag; ok markus@
- markus@cvs.openbsd.org 2001/01/21 19:05:40
[atomicio.c automicio.h auth-chall.c auth-krb4.c auth-options.c
auth-options.h auth-passwd.c auth-rh-rsa.c auth-rhosts.c auth-rsa.c
auth.c auth.h auth1.c auth2-chall.c auth2.c authfd.c authfile.c
bufaux.c bufaux.h buffer.c canahost.c canahost.h channels.c
cipher.c cli.c clientloop.c clientloop.h compat.c compress.c
deattack.c dh.c dispatch.c groupaccess.c hmac.c hostfile.c kex.c
key.c key.h log-client.c log-server.c log.c log.h login.c login.h
match.c misc.c misc.h nchan.c packet.c pty.c radix.h readconf.c
readpass.c readpass.h rsa.c scp.c servconf.c serverloop.c serverloop.h
session.c sftp-server.c ssh-add.c ssh-agent.c ssh-dss.c ssh-keygen.c
ssh-keyscan.c ssh-rsa.c ssh.c ssh.h sshconnect.c sshconnect.h
sshconnect1.c sshconnect2.c sshd.c tildexpand.c tildexpand.h
ttysmodes.c uidswap.c xmalloc.c]
split ssh.h and try to cleanup the #include mess. remove unnecessary
#includes. rename util.[ch] -> misc.[ch]
- (bal) renamed 'PIDDIR' to '_PATH_SSH_PIDDIR' to match OpenBSD tree
- (bal) Moved #ifdef KRB4 in auth-krb4.c above the #include to resolve
conflict when compiling for non-kerb install
- (bal) removed the #ifdef SKEY in auth1.c to match Markus' changes
on 1/19.
2001-01-22 05:34:40 +00:00
Ben Lindstrom
401d58f361
- (bal) Slight auth2-pam.c clean up.
...
- (bal) Includes a fake-regexp.h to be only used if regcomp() is found,
but no 'regexp.h' found (SCO OpenServer 3 lacks the header).
2001-01-19 17:11:43 +00:00
Ben Lindstrom
cf0809d644
Removed one more 'ISSUE' comment in auth1.c
...
20010120
- (bal) OpenBSD Resync
- markus@cvs.openbsd.org 2001/01/19 12:45:26
[ssh-chall.c servconf.c servconf.h ssh.h sshd.c]
only auth-chall.c needs #ifdef SKEY
2001-01-19 15:44:10 +00:00
Ben Lindstrom
5dc81502cb
- (bal) Minor cygwin patch to auth1.c. Suggested by djm.
2001-01-19 06:10:29 +00:00
Ben Lindstrom
b100ec9542
- (bal) Updated contrib/cygwin/ by Corinna Vinschen <vinschen@redhat.com>
...
Also removed some of the 'ISSUES' comments that have been verified by djm.
2001-01-19 05:37:32 +00:00
Damien Miller
22e22bf9ba
- (djm) Merge patch from Tim Waugh (via Nalin Dahyabhai <nalin@redhat.com>)
...
to fix NULL pointer deref and fake authloop breakage in PAM code.
2001-01-19 15:46:38 +11:00
Ben Lindstrom
f569241db2
Oops.. missed theses in the merge.
2001-01-19 04:29:23 +00:00
Ben Lindstrom
db65e8fded
Please grep through the source and look for 'ISSUE' comments and verify
...
that I was able to get all the portable bits in the right location. As for
the SKEY comment there is an email out to Markus as to how it should be
resolved. Until then I just #ifdef SKEY/#endif out the whole block.
- (bal) OpenBSD Resync
- markus@cvs.openbsd.org 2001/01/18 16:20:21
[log-client.c log-server.c log.c readconf.c servconf.c ssh.1 ssh.h
sshd.8 sshd.c]
log() is at pri=LOG_INFO, since LOG_NOTICE goes to /dev/console on many
systems
- markus@cvs.openbsd.org 2001/01/18 16:59:59
[auth-passwd.c auth.c auth.h auth1.c auth2.c serverloop.c session.c
session.h sshconnect1.c]
1) removes fake skey from sshd, since this will be much
harder with /usr/libexec/auth/login_XXX
2) share/unify code used in ssh-1 and ssh-2 authentication (server side)
3) make addition of BSD_AUTH and other challenge reponse methods
easier.
- markus@cvs.openbsd.org 2001/01/18 17:12:43
[auth-chall.c auth2-chall.c]
rename *-skey.c *-chall.c since the files are not skey specific
2001-01-19 04:26:52 +00:00