Damien Miller
635fe98a7f
- markus@cvs.openbsd.org 2002/04/22 06:15:47
...
[radix.c]
fix check for overflow
2002-04-23 21:00:33 +10:00
Damien Miller
f61c01506f
- stevesk@cvs.openbsd.org 2002/04/21 16:25:06
...
[sshconnect1.c]
spelling in error message; ok markus@
2002-04-23 20:56:02 +10:00
Damien Miller
7a8558d3ea
- stevesk@cvs.openbsd.org 2002/04/21 16:19:27
...
[sshd.8 sshd_config]
document default AFSTokenPassing no; ok deraadt@
2002-04-23 20:51:15 +10:00
Damien Miller
bad0e0162f
- markus@cvs.openbsd.org 2002/04/20 09:17:19
...
[radix.c]
rewrite using the buffer_* API, fixes overflow; ok deraadt@
2002-04-23 20:46:56 +10:00
Damien Miller
3b23566a5b
- markus@cvs.openbsd.org 2002/04/20 09:14:58
...
[bufaux.c bufaux.h]
add buffer_{get,put}_short
2002-04-23 20:42:36 +10:00
Damien Miller
7941855f09
- (djm) Make privsep work with PAM (still experimental)
2002-04-23 20:28:48 +10:00
Damien Miller
594a71b9b9
- (djm) Bug #222 : Fix tests for getaddrinfo on OSF/1. Spotted by
...
Robert Urban <urban@spielwiese.de>
2002-04-23 20:22:59 +10:00
Tim Rice
f02dccc0dc
[entropy.c.] Portability fix for SCO Unix 3.2v4.x (SCO OSR 3.0).
...
entropy.c needs seteuid(getuid()) for the setuid(original_uid) to succeed.
Patch by gert@greenie.muc.de . This fixes one part of Bug 208
2002-04-21 11:26:10 -07:00
Damien Miller
a370f4dcc6
- (djm) Avoid SIGCHLD breakage when run from rsync. Fix from
...
Sturle Sunde <sturle.sunde@usit.uio.no>
2002-04-18 22:53:22 +10:00
Tim Rice
43a1c13e0f
[configure.ac] Issue warning on --with-default-path=/some_path
...
if LOGIN_CAP is enabled. Report & testing by Tuc <tuc@ttsg.com>
2002-04-17 21:19:14 -07:00
Damien Miller
5efd71038d
- (djm) Fix .Nm in mdoc2man.pl from pspencer@fields.utoronto.ca
2002-04-17 12:30:45 +10:00
Damien Miller
bd63874d4b
- (djm) Tell users to configure /dev/random support into OpenSSL in INSTALL
2002-04-17 12:22:58 +10:00
Tim Rice
66480f188e
[configure.ac] add tests for recvmsg and sendmsg.
...
[monitor_fdpass.c] add checks for HAVE_SENDMSG and HAVE_RECVMSG for
systems that HAVE_ACCRIGHTS_IN_MSGHDR but no recvmsg or sendmsg.
2002-04-15 21:10:09 -07:00
Kevin Steves
eb3630205a
- (stevesk) bsd-cygwin_util.[ch] BSD license from Corinna Vinschen
2002-04-15 22:00:51 +00:00
Damien Miller
8be24f3846
- (djm) Unbreak "make install". Fix from Darren Tucker <dtucker@zip.com.au>
2002-04-15 13:23:59 +10:00
Damien Miller
49411ff8a7
- (djm) Random number collection doc fixes from Ben
2002-04-14 23:16:04 +10:00
Damien Miller
32e4818015
- (djm) ssh-rand-helper improvements
...
- Add commandline debugging options
- Don't write binary data if stdout is a tty (use hex instead)
- Give it a manpage
2002-04-14 19:27:12 +10:00
Damien Miller
fd4c9eee25
- (djm) Add KrbV support patch from Simon Wilkinson <simon@sxw.org.uk>
2002-04-13 11:04:40 +10:00
Ben Lindstrom
927dfd2d7e
- (bal) disable privsep if no MAP_ANON. We can re-enable it
...
after the release when we can do more testing.
2002-04-12 18:51:22 +00:00
Ben Lindstrom
c42f7cfd16
- (bal) Mistaken in Cygwin scripts for ssh starting. Patch by
...
Corinna Vinschen <vinschen@redhat.com>
2002-04-12 17:44:13 +00:00
Tim Rice
ae49fe64ca
[configure.ac] add <sys/types.h> to msghdr tests.
...
Change -L to -h on testing for /bin being symbolic link
2002-04-12 10:26:21 -07:00
Kevin Steves
19fa9b544f
- (stevesk) [auth-sia.[ch]] add BSD license from Chris Adams
2002-04-12 15:36:07 +00:00
Tim Rice
813f0452ed
[acconfig.h defines.h includes.h] put includes in includes.h and
...
defines in defines.h [rijndael.c openbsd-compat/fake-socket.h
openbsd-compat/inet_aton.c] include "includes.h" instead of "config.h"
ok stevesk@
2002-04-11 20:35:39 -07:00
Kevin Steves
0c283d8444
- (stevesk) [auth-sia.c] cleanup
2002-04-11 20:39:40 +00:00
Kevin Steves
fe6ca54ac2
- (stevesk) [configure.ac monitor.c] HAVE_SOCKETPAIR
2002-04-10 22:04:54 +00:00
Ben Lindstrom
027e4de24f
- markus@cvs.openbsd.org 2002/04/10 08:56:01
...
[version.h]
OpenSSH_3.2
- Added p1 to idenify Portable release version.
2002-04-10 16:26:20 +00:00
Ben Lindstrom
b5115eaf80
- markus@cvs.openbsd.org 2002/04/10 08:21:47
...
[auth1.c compat.c compat.h]
strip '@' from username only for KerbV and known broken clients, bug #204
2002-04-10 16:17:34 +00:00
Kevin Steves
6939b233d0
- (stevesk) [auth-sia.c] compile fix Chris Adams <cmadams@hiwaay.net>
2002-04-10 16:09:51 +00:00
Ben Lindstrom
34b7320a9d
- (bal) Minor OpenSC updates. Fix up header locations and update
...
README.smartcard provided by Juha Yrjölä <jyrjola@cc.hut.fi>
2002-04-08 18:37:07 +00:00
Kevin Steves
265c9d00c3
- (stevesk) wrap munmap() with HAVE_MMAP also.
2002-04-07 22:36:49 +00:00
Kevin Steves
7ff911216b
- (stevesk) --with-privsep-user; default sshd
2002-04-07 19:22:54 +00:00
Kevin Steves
b1184bbf29
- (stevesk) remove configure support for poll.h; it was removed
...
from sshd.c a long time ago.
2002-04-07 18:12:03 +00:00
Kevin Steves
86b9fe6a77
- (stevesk) HAVE_MMAP and HAVE_SYS_MMAN_H and use them in
...
monitor_mm.c
2002-04-07 17:08:53 +00:00
Kevin Steves
c3c825575c
- (stevesk) [monitor_fdpass.c] fatal() for UsePrivilegeSeparation=yes
...
and no fd passing support.
2002-04-07 16:39:12 +00:00
Kevin Steves
a44e0351ee
- (stevesk) HAVE_CONTROL_IN_MSGHDR; not used right now.
...
Future: we may want to test if fd passing works correctly.
2002-04-07 16:18:03 +00:00
Ben Lindstrom
fdee8ef0ac
- (bal) We no longer use atexit()/xatexit()/on_exit()
2002-04-06 23:52:02 +00:00
Ben Lindstrom
0318801591
- (bal) Quiet down configure.ac if /bin/test does not exist.
2002-04-06 20:30:07 +00:00
Ben Lindstrom
8ff2a8d2c2
- (bal) Revered out of runtime IRIX runtime detection of joblimits. Code is
...
incomplete.
2002-04-06 18:58:31 +00:00
Ben Lindstrom
de3895d580
- mouring@cvs.openbsd.org 2002/04/06 18:24:09
...
[scp.c]
Fixes potental double // within path.
http://bugzilla.mindrot.org/show_bug.cgi?id=76
2002-04-06 18:29:59 +00:00
Ben Lindstrom
8d6017566c
- (bal) Slight update to OpenSC support. Better version checking. patch
...
by Juha Yrjölä <jyrjola@cc.hut.fi>
2002-04-06 18:19:38 +00:00
Ben Lindstrom
06e9515eb8
- djm@cvs.openbsd.org 2002/04/06 00:30:08
...
[sftp-client.c]
Fix occasional corruption on upload due to bad reuse of request id, spotted
by chombier@mac.com ; ok markus@
2002-04-06 04:16:45 +00:00
Ben Lindstrom
dc0594cc54
- (bal) Added MAP_FAILED to allow AIX and Trusted HP to compile.
2002-04-06 04:11:28 +00:00
Damien Miller
12db56ba2f
- (djm) Typo in Suse SPEC file. Fix from Carsten Grohmann
...
<carsten.grohmann@dr-baldeweg.de>
2002-04-06 11:12:52 +10:00
Ben Lindstrom
a11e270115
- stevesk@cvs.openbsd.org 2002/04/05 20:56:21
...
[sshd.8]
clarify sshrc some and handle X11UseLocalhost=yes; ok markus@
2002-04-05 22:18:48 +00:00
Ben Lindstrom
924144e650
- (bal) Too many <sys/queue.h> issues. Remove all workarounds and
...
using internal version only.
2002-04-05 20:23:35 +00:00
Ben Lindstrom
a42694fa25
- (bal) Patch for OpenSC SmartCard library; ok markus@; patch by
...
Juha Yrjölä <jyrjola@cc.hut.fi>
- (bal) Minor documentation update to reflect smartcard library
support changes.
2002-04-05 16:11:45 +00:00
Ben Lindstrom
8a725a843d
- markus@cvs.openbsd.org 2002/04/03 09:26:11
...
[cipher.c myproposal.h]
re-add rijndael-cbc@lysator.liu.se for MacSSH; ash@lab.poc.net
2002-04-04 22:10:38 +00:00
Kevin Steves
e683e76439
- (stevesk) [auth-pam.c auth-pam.h auth-passwd.c auth-sia.c auth-sia.h
...
auth1.c auth2.c] PAM, OSF_SIA password auth cleanup; from djm.
2002-04-04 19:02:28 +00:00
Ben Lindstrom
af40bc6a72
- (bal) mispelling in uidswap.c (portable only)
2002-04-03 03:36:54 +00:00
Ben Lindstrom
07739fe305
- markus@cvs.openbsd.org 2002/04/02 20:11:38
...
[ssh-rsa.c]
ignore SSH_BUG_SIGBLOB for ssh-rsa; #187
2002-04-03 03:03:04 +00:00
Ben Lindstrom
2f3d52a2d6
- markus@cvs.openbsd.org 2002/04/02 17:37:48
...
[sftp.c]
always call log_init()
2002-04-02 21:06:18 +00:00
Ben Lindstrom
eecdf23531
- markus@cvs.openbsd.org 2002/04/02 11:49:39
...
[ssh-agent.c]
check $SHELL for -k and -d, too;
http://bugzilla.mindrot.org/show_bug.cgi?id=199
2002-04-02 21:03:51 +00:00
Ben Lindstrom
f26ff5b9d8
- markus@cvs.openbsd.org 2002/04/01 22:07:17
...
[sftp-client.c]
fallback to stat if server does not support lstat
2002-04-02 21:00:31 +00:00
Ben Lindstrom
a1d8114044
- markus@cvs.openbsd.org 2002/04/01 22:02:16
...
[sftp-client.c]
20480 is an upper limit for older server
2002-04-02 20:58:11 +00:00
Ben Lindstrom
1e259bb0bf
- (bal) CVS ID sync of uidswap.c
2002-04-02 20:53:39 +00:00
Ben Lindstrom
47fd8112b5
- markus@cvs.openbsd.org 2002/03/30 18:51:15
...
[monitor.c serverloop.c sftp-int.c sftp.c sshd.c]
check waitpid for EINTR; based on patch from peter@ifm.liu.se
2002-04-02 20:48:19 +00:00
Ben Lindstrom
03f3932829
- stevesk@cvs.openbsd.org 2002/03/29 19:18:33
...
[auth-rsa.c ssh-rsa.c ssh.h]
make RSA modulus minimum #define; ok markus@
2002-04-02 20:43:11 +00:00
Ben Lindstrom
0d0be02a29
- stevesk@cvs.openbsd.org 2002/03/29 19:16:22
...
[sshd.8]
RSA key modulus size minimum 768; ok markus@
2002-04-02 20:39:29 +00:00
Ben Lindstrom
c447fee9f1
- markus@cvs.openbsd.org 2002/03/29 18:59:32
...
[session.c session.h]
retrieve last login time before the pty is allocated, store per session
2002-04-02 20:35:35 +00:00
Ben Lindstrom
2bf56e2dba
- markus@cvs.openbsd.org 2002/03/28 15:34:51
...
[session.c]
do not call record_login twice (for use_privsep)
2002-04-02 20:32:46 +00:00
Ben Lindstrom
155b981494
- markus@cvs.openbsd.org 2002/03/27 22:21:45
...
[ssh-keygen.c]
try to import keys with extra trailing === (seen with ssh.com < 2.0.12)
2002-04-02 20:26:26 +00:00
Ben Lindstrom
cdb66e0e82
- (bal) Hand Sync of scp.c (reverted to upstream code)
...
- deraadt@cvs.openbsd.org 2002/03/30 17:45:46
[scp.c]
stretch banners
2002-04-02 20:17:43 +00:00
Kevin Steves
38c4a28a7e
- (stevesk) [auth1.c] fix password auth for protocol 1 when
...
!USE_PAM && !HAVE_OSF_SIA; merge issue.
2002-04-02 03:24:56 +00:00
Kevin Steves
bd1901b7dc
- (stevesk) [monitor.c] PAM should work again; will *not* work with
...
UsePrivilegeSeparation=yes.
2002-04-01 18:04:35 +00:00
Tim Rice
c85496222b
[sshconnect2.c] change uint32_t to u_int32_t
2002-03-31 12:49:38 -08:00
Tim Rice
49e457c43b
[configure.ac] use /bin/test -L to work around broken builtin on Solaris 8
2002-03-31 11:23:06 -08:00
Kevin Steves
117b06dec9
- (stevesk) [configure.ac] remove header check for sys/ttcompat.h
...
bug 167
2002-03-30 17:55:21 +00:00
Ben Lindstrom
b57a4bf93f
- mouring@cvs.openbsd.org 2002/03/27 11:45:42
...
[monitor.c]
monitor_allowed_key() returns int instead of pointer. ok markus@
2002-03-27 18:00:59 +00:00
Ben Lindstrom
599717246c
- markus@cvs.openbsd.org 2002/03/26 23:14:51
...
[kex.c]
generate a new cookie for each SSH2_MSG_KEXINIT message we send out
2002-03-27 17:42:57 +00:00
Ben Lindstrom
e1f9e324e9
- markus@cvs.openbsd.org 2002/03/26 23:13:03
...
[auth-rsa.c]
disallow RSA keys < 768 for protocol 1, too (rhosts-rsa and rsa auth)
2002-03-27 17:38:43 +00:00
Ben Lindstrom
57686a82a5
- markus@cvs.openbsd.org 2002/03/26 22:50:39
...
[channels.h]
CHANNEL_EFD_OUTPUT_ACTIVE is false for CHAN_CLOSE_RCVD, too
2002-03-27 17:36:41 +00:00
Ben Lindstrom
43a5e2f70e
- rees@cvs.openbsd.org 2002/03/26 18:46:59
...
[scard.c]
try_AUT0 in read_pubkey too, for those paranoid few who want to acl 'sh'
2002-03-27 17:33:17 +00:00
Ben Lindstrom
38a69e6b53
- markus@cvs.openbsd.org 2002/03/26 15:58:46
...
[readpass.c readpass.h sshconnect2.c]
client side support for PASSWD_CHANGEREQ
2002-03-27 17:28:46 +00:00
Ben Lindstrom
cd8bbce80b
- markus@cvs.openbsd.org 2002/03/26 15:23:40
...
[bufaux.c]
do not talk about packets in bufaux
2002-03-27 17:23:44 +00:00
Ben Lindstrom
eb041dca1f
- markus@cvs.openbsd.org 2002/03/26 11:37:05
...
[ssh.c]
update Copyright
2002-03-27 17:20:38 +00:00
Ben Lindstrom
f181384a6b
- markus@cvs.openbsd.org 2002/03/26 11:34:49
...
[ssh.1 sshd.8]
update to recent drafts
2002-03-27 17:18:31 +00:00
Ben Lindstrom
53f1830d6a
- (bal) 'pw' should be 'authctxt->pw' in auth1.c spotted by
...
kent@lysator.liu.se
2002-03-27 16:50:03 +00:00
Ben Lindstrom
28364ecf45
- stevesk@cvs.openbsd.org 2002/03/26 03:24:01
...
[monitor.h monitor_fdpass.h monitor_mm.h monitor_wrap.h]
$OpenBSD$
2002-03-26 03:42:20 +00:00
Ben Lindstrom
cf15944c23
- markus@cvs.openbsd.org 2002/03/25 21:13:51
...
[channels.c channels.h compat.c compat.h nchan.c]
don't send stderr data after EOF, accept this from older known (broken)
sshd servers only, fixes http://bugzilla.mindrot.org/show_bug.cgi?id=179
2002-03-26 03:26:24 +00:00
Ben Lindstrom
4f054607f0
- markus@cvs.openbsd.org 2002/03/25 21:04:02
...
[ssh.c]
simplify num_identity_files handling
2002-03-26 03:23:00 +00:00
Ben Lindstrom
c861547f34
- stevesk@cvs.openbsd.org 2002/03/25 20:12:10
...
[monitor_mm.c monitor_wrap.c]
ssize_t args use "%ld" and cast to (long)
size_t args use "%lu" and cast to (u_long)
ok markus@ and thanks millert@
2002-03-26 03:20:45 +00:00
Ben Lindstrom
0936a5bb72
- markus@cvs.openbsd.org 2002/03/25 17:34:27
...
[scard.c scard.h ssh-agent.c ssh-keygen.c ssh.c]
change sc_get_key to sc_get_keys and hide smartcard details in scard.c
2002-03-26 03:17:42 +00:00
Ben Lindstrom
5facb2bbc4
- markus@cvs.openbsd.org 2002/03/25 09:25:06
...
[auth-rh-rsa.c]
rm bogus comment
2002-03-26 03:08:47 +00:00
Ben Lindstrom
f6d367b91a
- markus@cvs.openbsd.org 2002/03/25 09:21:13
...
[auth-rsa.c]
return 0 (not NULL); tomh@po.crl.go.jp
2002-03-26 02:59:31 +00:00
Ben Lindstrom
2e9d866608
- stevesk@cvs.openbsd.org 2002/03/24 23:20:00
...
[monitor.c]
remove "\n" from fatal()
2002-03-26 02:49:34 +00:00
Ben Lindstrom
c2c6cbc527
- markus@cvs.openbsd.org 2002/03/24 18:05:29
...
[scard.c]
we need to figure out AUT0 for sc_private_encrypt, too
2002-03-26 02:44:44 +00:00
Ben Lindstrom
31ee7aeb15
- stevesk@cvs.openbsd.org 2002/03/24 17:53:16
...
[monitor_fdpass.c]
minor cleanup and more error checking; ok markus@
2002-03-26 02:36:29 +00:00
Ben Lindstrom
fcad1c92c9
- stevesk@cvs.openbsd.org 2002/03/24 17:27:03
...
[kexgex.c]
typo; ok markus@
2002-03-26 02:20:06 +00:00
Ben Lindstrom
8b08d8115d
- markus@cvs.openbsd.org 2002/03/24 16:01:13
...
[packet.c]
debug->debug3 for extra padding
2002-03-26 02:09:41 +00:00
Ben Lindstrom
3dc40f997b
- markus@cvs.openbsd.org 2002/03/24 16:00:27
...
[serverloop.c]
remove unused debug
2002-03-26 02:01:30 +00:00
Ben Lindstrom
f90f58d846
- stevesk@cvs.openbsd.org 2002/03/23 20:57:26
...
[sshd.c]
setproctitle() after preauth child; ok markus@
2002-03-26 01:53:03 +00:00
Kevin Steves
6205a18f55
- (stevesk) import OpenBSD <sys/tree.h> as "openbsd-compat/tree.h"
2002-03-26 00:12:49 +00:00
Kevin Steves
b4799a31a5
- (stevesk) [session.c] disable LOGIN_NEEDS_TERM until we are sure
...
it can be removed. only used on solaris. will no longer compile with
privsep shuffling.
2002-03-24 23:19:54 +00:00
Kevin Steves
4408c2098f
- (stevesk) [LICENCE] OpenBSD sync
2002-03-23 02:20:07 +00:00
Tim Rice
f29a6539c0
[cipher.c] fix problem with OpenBSD sync
2002-03-22 13:27:40 -08:00
Kevin Steves
4435a55a4b
- (stevesk) [defines.h] #define MAP_ANON MAP_ANONYMOUS for HP-UX; other
...
platforms may need this--I'm not sure. mmap() issues will need to be
addressed further.
2002-03-22 21:08:03 +00:00
Kevin Steves
219bef12c6
- (stevesk) [defines.h] hp-ux 11 has ancillary data style fd passing, but
...
is missing CMSG_LEN() and CMSG_SPACE() macros.
2002-03-22 20:53:32 +00:00
Kevin Steves
205cc1ef46
- (stevesk) [auth2.c] merge cleanup/sync
2002-03-22 20:43:05 +00:00
Kevin Steves
1adb120779
- (stevesk) [monitor_fdpass.c] support for access rights style file
...
descriptor passing
2002-03-22 19:32:53 +00:00
Kevin Steves
4846f4ab69
- (stevesk) configure and cpp __FUNCTION__ gymnastics to handle nielsisms
2002-03-22 18:19:53 +00:00
Kevin Steves
7e147607f5
- (stevesk) [monitor.c monitor_wrap.c] #ifdef HAVE_PW_CLASS_IN_PASSWD
2002-03-22 18:07:17 +00:00
Kevin Steves
939c9db9b1
- (stevesk) HAVE_ACCRIGHTS_IN_MSGHDR configure support
2002-03-22 17:23:25 +00:00
Ben Lindstrom
681d932634
- markus@cvs.openbsd.org 2002/03/21 23:07:37
...
[clientloop.c]
remove unused, sync w/ cmdline patch in my tree.
2002-03-22 03:53:00 +00:00
Ben Lindstrom
ba72d30aa5
- rees@cvs.openbsd.org 2002/03/21 22:44:05
...
[authfd.c authfd.h ssh-add.c ssh-agent.c ssh.c]
Add PIN-protection for secret key.
2002-03-22 03:51:06 +00:00
Ben Lindstrom
266ec63eb3
- rees@cvs.openbsd.org 2002/03/21 21:54:34
...
[scard.c scard.h ssh-keygen.c]
Add PIN-protection for secret key.
2002-03-22 03:47:38 +00:00
Ben Lindstrom
943481cc77
- markus@cvs.openbsd.org 2002/03/21 21:23:34
...
[sshd.c]
add privsep_preauth() and remove 1 goto; ok provos@
2002-03-22 03:43:46 +00:00
Ben Lindstrom
fa1336ff47
- markus@cvs.openbsd.org 2002/03/21 20:51:12
...
[sshd_config]
add privsep (off)
2002-03-22 03:40:58 +00:00
Ben Lindstrom
818659a163
- rees@cvs.openbsd.org 2002/03/21 18:08:15
...
[scard.c]
In sc_put_key(), sc_reader_id should be id.
2002-03-22 03:38:35 +00:00
Ben Lindstrom
eda98a728d
- markus@cvs.openbsd.org 2002/03/21 16:58:13
...
[clientloop.c]
remove unused
2002-03-22 03:35:48 +00:00
Ben Lindstrom
70e3ad8231
- markus@cvs.openbsd.org 2002/03/21 16:57:15
...
[scard.c]
remove const
2002-03-22 03:33:43 +00:00
Ben Lindstrom
0b675b1659
- markus@cvs.openbsd.org 2002/03/21 16:38:06
...
[scard.c]
make compile w/ openssl 0.9.7
2002-03-22 03:28:11 +00:00
Ben Lindstrom
5589f4b55f
- jakob@cvs.openbsd.org 2002/03/21 15:17:26
...
[clientloop.c ssh.1]
add built-in command line for adding new port forwardings on the fly.
based on a patch from brian wellington. ok markus@.
2002-03-22 03:24:32 +00:00
Ben Lindstrom
58b391b1bd
- markus@cvs.openbsd.org 2002/03/21 10:21:20
...
[ssh-add.c]
ignore errors for nonexisting default keys in ssh-add,
fixes http://bugzilla.mindrot.org/show_bug.cgi?id=158
Last patch was SUPPOSE to be:
- stevesk@cvs.openbsd.org 2002/03/20 21:08:08
[sshd.c]
strerror() on chdir() fail; ok provos@
But it got co-mingled. <sigh> Flog me at will.
2002-03-22 03:21:16 +00:00
Ben Lindstrom
1ee9ec32a3
- markus@cvs.openbsd.org 2002/03/21 10:21:20
...
[ssh-add.c]
ignore errors for nonexisting default keys in ssh-add,
fixes http://bugzilla.mindrot.org/show_bug.cgi?id=158
2002-03-22 03:14:45 +00:00
Ben Lindstrom
c743134191
- stevesk@cvs.openbsd.org 2002/03/20 19:12:25
...
[servconf.c servconf.h ssh.h sshd.c]
for unprivileged user, group do:
pw=getpwnam(SSH_PRIVSEP_USER); do_setusercontext(pw). ok provos@
2002-03-22 03:11:49 +00:00
Ben Lindstrom
f34e4eb6c7
- markus@cvs.openbsd.org 2002/03/19 15:31:47
...
[auth.c]
check for NULL; from provos@
2002-03-22 03:08:30 +00:00
Ben Lindstrom
7ebb635d81
- markus@cvs.openbsd.org 2002/03/19 14:27:39
...
[auth.c auth1.c auth2.c]
make getpwnamallow() allways call pwcopy()
2002-03-22 03:04:08 +00:00
Ben Lindstrom
6328ab3989
- markus@cvs.openbsd.org 2002/03/19 10:49:35
...
[auth-krb5.c auth-rh-rsa.c auth.c cipher.c key.c misc.h packet.c session.c
sftp-client.c sftp-glob.h sftp.c ssh-add.c ssh.c sshconnect2.c sshd.c
ttymodes.c]
KNF whitespace
2002-03-22 02:54:23 +00:00
Ben Lindstrom
08105192fd
- markus@cvs.openbsd.org 2002/03/19 10:35:39
...
[auth-options.c auth.h session.c session.h sshd.c]
clean up prototypes
2002-03-22 02:50:06 +00:00
Ben Lindstrom
cb1f60efb5
- mpech@cvs.openbsd.org 2002/03/19 06:32:56
...
[sftp-int.c]
use xfree() after xstrdup().
markus@ ok
2002-03-22 02:47:28 +00:00
Ben Lindstrom
85520a6705
- stevesk@cvs.openbsd.org 2002/03/19 05:23:08
...
[sshd.8]
Banner has no default.
2002-03-22 02:44:40 +00:00
Ben Lindstrom
7a7edf77ed
- stevesk@cvs.openbsd.org 2002/03/19 03:03:43
...
[pathnames.h servconf.c servconf.h sshd.c]
_PATH_PRIVSEP_CHROOT_DIR; ok provos@
2002-03-22 02:42:37 +00:00
Ben Lindstrom
01426a67c8
- stevesk@cvs.openbsd.org 2002/03/18 23:52:51
...
[servconf.c]
UnprivUser/UnprivGroup usable now--specify numeric user/group; ok
provos@
2002-03-22 02:40:03 +00:00
Ben Lindstrom
191c8e5eb9
- provos@cvs.openbsd.org 2002/03/18 17:59:09
...
[sshd.8]
document UsePrivilegeSeparation
2002-03-22 02:37:50 +00:00
Ben Lindstrom
000dda5373
- provos@cvs.openbsd.org 2002/03/18 17:53:08
...
[sshd.8]
credits for privsep
2002-03-22 02:33:12 +00:00
Ben Lindstrom
7a2073c50b
- provos@cvs.openbsd.org 2002/03/18 17:50:31
...
[auth-bsdauth.c auth-options.c auth-rh-rsa.c auth-rsa.c auth-skey.c auth.h
auth1.c auth2-chall.c auth2.c kex.c kex.h kexdh.c kexgex.c servconf.c
session.h servconf.h serverloop.c session.c sshd.c]
integrate privilege separated openssh; its turned off by default for now.
work done by me and markus@
applied, but outside of ensure that smaller code bits migrated with
their owners.. no work was tried to 'fix' it to work. =) Later project!
2002-03-22 02:30:41 +00:00
Ben Lindstrom
0f345f5ee1
- provos@cvs.openbsd.org 2002/03/18 17:31:54
...
[compress.c]
export compression streams for ssh-privsep
2002-03-22 01:51:24 +00:00
Ben Lindstrom
88aa1b4527
- provos@cvs.openbsd.org 2002/03/18 17:25:29
...
[bufaux.c bufaux.h]
buffer_skip_string and extra sanity checking; needed by ssh-privsep
2002-03-22 01:47:52 +00:00
Ben Lindstrom
a674e8df80
- markus@cvs.openbsd.org 2002/03/18 17:23:31
...
[key.c key.h]
add key_demote() for ssh-privsep
2002-03-22 01:45:53 +00:00
Ben Lindstrom
f6027d3407
- markus@cvs.openbsd.org 2002/03/18 17:16:38
...
[packet.c packet.h]
export/import cipher state, iv and ssh2 seqnr; needed by ssh-privsep
2002-03-22 01:42:04 +00:00
Ben Lindstrom
212facacde
- markus@cvs.openbsd.org 2002/03/18 17:13:15
...
[cipher.c cipher.h]
export/import cipher states; needed by ssh-privsep
2002-03-22 01:39:44 +00:00
Ben Lindstrom
b481e1323e
- provos@cvs.openbsd.org 2002/03/18 03:41:08
...
[auth.c session.c]
move auth_approval into getpwnamallow with help from millert@
2002-03-22 01:35:47 +00:00
Ben Lindstrom
abf3144064
- dugsong@cvs.openbsd.org 2002/03/18 01:30:10
...
[auth-krb4.c]
set client to NULL after xfree(), from Rolf Braun
<rbraun+ssh@andrew.cmu.edu>
2002-03-22 01:30:40 +00:00
Ben Lindstrom
73ab9ba45d
- provos@cvs.openbsd.org 2002/03/18 01:12:14
...
[auth.h auth1.c auth2.c sshd.c]
have the authentication functions return the authentication context
and then do_authenticated; okay millert@
2002-03-22 01:27:35 +00:00
Ben Lindstrom
2ae18f40a7
- provos@cvs.openbsd.org 2002/03/17 20:25:56
...
[auth.c auth.h auth1.c auth2.c]
getpwnamallow returns struct passwd * only if user valid; okay markus@
2002-03-22 01:24:38 +00:00
Ben Lindstrom
eacc71b558
- stevesk@cvs.openbsd.org 2002/03/16 17:41:25
...
[auth-krb5.c]
BSD license. from Daniel Kouril via Dug Song. ok markus@
2002-03-22 01:22:27 +00:00
Ben Lindstrom
186b7da2d7
- markus@cvs.openbsd.org 2002/03/16 17:22:09
...
[auth-rh-rsa.c auth.h]
split auth_rhosts_rsa(), ok provos@
2002-03-22 01:20:32 +00:00
Ben Lindstrom
ce398b2278
- markus@cvs.openbsd.org 2002/03/16 11:24:53
...
[compress.c]
skip inflateEnd if inflate fails; ok provos@
2002-03-22 01:17:52 +00:00
Ben Lindstrom
b61e6df9f3
- itojun@cvs.openbsd.org 2002/03/15 11:00:38
...
[auth.c]
fix file type checking (use S_ISREG). ok by markus
2002-03-22 01:15:33 +00:00
Ben Lindstrom
9c8aefe750
- markus@cvs.openbsd.org 2002/03/14 16:56:33
...
[auth-rh-rsa.c auth-rsa.c auth.h]
split auth_rsa() for better readability and privsep; ok provos@
2002-03-22 01:12:58 +00:00
Ben Lindstrom
abcb145b38
- markus@cvs.openbsd.org 2002/03/14 16:38:26
...
[sshd.c]
split out ssh1 session key decryption; ok provos@
2002-03-22 01:10:21 +00:00
Ben Lindstrom
5c15958230
- markus@cvs.openbsd.org 2002/03/14 15:24:27
...
[sshconnect1.c]
don't trust size sent by (rogue) server; noted by s.esser@e-matters.de
2002-03-22 01:08:07 +00:00
Ben Lindstrom
83b79e48df
- itojun@cvs.openbsd.org 2002/03/11 03:19:53
...
[sftp-client.c]
indent
2002-03-22 01:05:27 +00:00
Ben Lindstrom
eb50545365
- itojun@cvs.openbsd.org 2002/03/11 03:18:49
...
[sftp-client.c]
correct type mismatches (u_int64_t != unsigned long long)
2002-03-22 01:03:15 +00:00
Ben Lindstrom
d45f28c116
- itojun@cvs.openbsd.org 2002/03/08 06:10:16
...
[sftp-client.c]
printf type mismatch
2002-03-22 01:00:57 +00:00
Tim Rice
3a4234699e
[contrib/aix/buildbff.sh contrib/aix/inventory.sh] AIX package
...
build fixes. Patch by Darren Tucker <dtucker@zip.com.au>
[contrib/solaris/buildpkg.sh] add missing dirs to SYSTEM_DIR. Have
postinstall check for $piddir and add if necessary.
2002-03-17 14:05:24 -08:00
Tim Rice
88f2ab5efb
[configure.ac] Assume path given with --with-pid-dir=PATH is wanted,
...
warn if directory doesn not exist. Put system directories in front of
PATH for finding entorpy commands.
2002-03-17 12:17:34 -08:00
Tim Rice
29bdd2c9bc
[contrib/solaris/buildpkg.sh, contrib/solaris/README] Updated to
...
build on all platforms that support SVR4 style package tools. Now runs
from build dir. Parts are based on patches from Antonio Navarro, and
Darren Tucker.
2002-03-11 20:55:53 -08:00
Damien Miller
4a10d2e90b
- (djm) ssh-keygen -i needs seeded RNG; report from markus@
2002-03-11 22:53:29 +11:00
Kevin Steves
581930735a
- (stevesk) entropy.c: typo in debug message
2002-03-11 00:16:34 +00:00
Damien Miller
c7375ac466
- (djm) Add Markus' patch for compat wih OpenSSL < 0.9.6.
...
Known issue: Blowfish for SSH1 does not work
2002-03-11 10:51:17 +11:00
Damien Miller
ff8f94c3e6
- (djm) Revert bits of Markus' OpenSSL compat patch which was accidentally
...
committed.
2002-03-11 10:48:53 +11:00
Ben Lindstrom
784e234c19
- (bal) Test for IRIX JOBS support at runtime. Patch provided
...
by David Kaelbling <drk@sgi.com>
2002-03-08 03:50:57 +00:00
Ben Lindstrom
7577fd83c1
- (bal) Add in check for rpc/types.h since it is needed on
...
some platforms for INADDR_LOOPBACK. We should retest
SCO 3 to see if this fixes their problem also.
2002-03-08 03:11:07 +00:00
Ben Lindstrom
dc16354aaa
- (bal) Updated INSTALL to reflect 0.9.6 OpenSSL requirement
2002-03-07 17:49:39 +00:00
Damien Miller
6e96c88c16
- (djm) Update RPM spec files with new version number
2002-03-07 13:04:37 +11:00
Damien Miller
3fd2872407
- markus@cvs.openbsd.org 2002/03/06 00:25:55
...
[version.h]
OpenSSH_3.1
2002-03-07 13:02:19 +11:00
Damien Miller
4e431d4b8e
- markus@cvs.openbsd.org 2002/03/06 00:24:39
...
[compat.c]
compat.c
2002-03-07 12:59:02 +11:00
Damien Miller
6d6c5d202f
- markus@cvs.openbsd.org 2002/03/06 00:23:27
...
[compat.c dh.c]
undo
2002-03-07 12:58:42 +11:00
Damien Miller
6ba693f70e
- OpenBSD CVS Sync
...
- markus@cvs.openbsd.org 2002/03/06 00:20:54
[compat.c dh.c]
compat.c
2002-03-07 12:58:24 +11:00
Kevin Steves
664b243ae4
- stevesk@cvs.openbsd.org 2002/03/02 09:34:42
...
[LICENCE]
correct copyright dates for scp license; ok markus@
2002-03-05 18:03:10 +00:00
Ben Lindstrom
01e7fa13b4
- (bal) Added contrib/aix/ to support BFF package generation provided
...
by Darren Tucker <dtucker@zip.com.au>
2002-03-05 03:38:35 +00:00
Ben Lindstrom
795488785e
- markus@cvs.openbsd.org 2002/03/04 19:37:58
...
[channels.c]
off by one; thanks to joost@pine.nl
2002-03-05 01:57:44 +00:00
Ben Lindstrom
6b28c35a04
- stevesk@cvs.openbsd.org 2002/03/04 18:30:23
...
[ssh-keyscan.c]
handle connection close during read of protocol version string.
fixes erroneous "bad greeting". ok markus@
2002-03-05 01:54:52 +00:00
Ben Lindstrom
05764b9286
- stevesk@cvs.openbsd.org 2002/03/04 17:27:39
...
[auth-krb5.c auth-options.h auth.h authfd.h authfile.h bufaux.h buffer.h
channels.h cipher.h compat.h compress.h crc32.h deattack.c getput.h
groupaccess.c misc.c mpaux.h packet.h readconf.h rsa.h scard.h
servconf.h ssh-agent.c ssh.h ssh2.h sshpty.h sshtty.c ttymodes.h
uuencode.c xmalloc.h]
$OpenBSD$ and RCSID() cleanup: don't use RCSID() in .h files; add
missing RCSID() to .c files and remove dup /*$OpenBSD$*/ from .c
files. ok markus@
2002-03-05 01:53:02 +00:00
Ben Lindstrom
84fcb312ff
- markus@cvs.openbsd.org 2002/03/04 13:10:46
...
[misc.c]
error-> debug, because O_NONBLOCK for /dev/null causes too many different
errnos; ok stevesk@, deraadt@
unused include
2002-03-05 01:48:09 +00:00
Ben Lindstrom
d96c8b3b56
- markus@cvs.openbsd.org 2002/03/04 12:43:06
...
[auth-passwd.c auth-rh-rsa.c auth-rhosts.c]
unused include
2002-03-05 01:45:56 +00:00
Ben Lindstrom
3fb5d00ffd
- markus@cvs.openbsd.org 2002/03/01 13:12:10
...
[auth.c match.c match.h]
undo the 'delay hostname lookup' change
match.c must not use compress.c (via canonhost.c/packet.c)
thanks to wilfried@
2002-03-05 01:42:42 +00:00
Ben Lindstrom
6ef9ec6b6b
- stevesk@cvs.openbsd.org 2002/02/28 20:56:00
...
[auth.c]
log user not allowed details, from dwd@bell-labs.com ; ok markus@
2002-03-05 01:40:37 +00:00
Ben Lindstrom
ea03db9dbb
- stevesk@cvs.openbsd.org 2002/02/28 20:46:10
...
[sshd.8]
-u0 DNS for user@host
2002-03-05 01:38:57 +00:00
Ben Lindstrom
778bf55d89
- stevesk@cvs.openbsd.org 2002/02/28 20:36:42
...
[sshd.8]
DenyUsers allows user@host pattern also
2002-03-05 01:37:12 +00:00
Ben Lindstrom
916d83d208
- stevesk@cvs.openbsd.org 2002/02/28 19:36:28
...
[auth.c match.c match.h]
delay hostname lookup until we see a ``@'' in DenyUsers and AllowUsers
for sshd -u0; ok markus@
2002-03-05 01:35:23 +00:00
Ben Lindstrom
80cb27dd7c
- markus@cvs.openbsd.org 2002/02/28 15:46:33
...
[authfile.c kex.c kexdh.c kexgex.c key.c ssh-dss.c]
add some const EVP_MD for openssl-0.9.7
2002-03-05 01:33:36 +00:00
Ben Lindstrom
733a2351f5
- stevesk@cvs.openbsd.org 2002/02/27 21:23:13
...
[canohost.c channels.c packet.c sshd.c]
remove unneeded casts in [gs]etsockopt(); ok markus@
2002-03-05 01:31:28 +00:00
Ben Lindstrom
e86de51afb
- stevesk@cvs.openbsd.org 2002/02/26 20:03:51
...
[misc.c]
use socklen_t
2002-03-05 01:28:14 +00:00
Ben Lindstrom
3612bda7fd
- deraadt@cvs.openbsd.org 2002/02/26 19:06:43
...
[sftp.1]
no, look closely. the comma was highlighted. split .Ic even more
2002-03-05 01:26:38 +00:00
Ben Lindstrom
a48f3681f4
- mouring@cvs.openbsd.org 2002/02/26 19:04:37
...
[sftp.1]
> Ic cannot have that many arguments; spotted by mouring@etoh.eviladmin.org
Last Ic on the first line should not have a space between it and the final
comma.
2002-03-05 01:24:52 +00:00
Ben Lindstrom
a54f61c1c0
- deraadt@cvs.openbsd.org 2002/02/26 18:52:32
...
[sftp.1]
Ic cannot have that many arguments; spotted by mouring@etoh.eviladmin.org
2002-03-05 01:23:13 +00:00
Tim Rice
200a5c0581
correction to sig_atomic_t test
2002-02-26 22:12:34 -08:00
Tim Rice
7d2d1f1e67
correction to Bug 123 fix
2002-02-26 22:05:11 -08:00
Ben Lindstrom
88c0cd8596
- (bal) Imported missing fatal.c and fixed up Makefile.in
2002-02-26 19:24:21 +00:00
Ben Lindstrom
c58ab02e45
- markus@cvs.openbsd.org 2002/02/25 16:33:27
...
[ssh-keygen.c sshconnect2.c uuencode.c uuencode.h]
more u_* fixes
2002-02-26 18:15:09 +00:00
Ben Lindstrom
1ebd7a5342
- stevesk@cvs.openbsd.org 2002/02/24 19:59:42
...
[channels.c misc.c]
disable Nagle in connect_to() and channel_post_port_listener() (port
forwarding endpoints). the intention is to preserve the on-the-wire
appearance to applications at either end; the applications can then
enable TCP_NODELAY according to their requirements. ok markus@
2002-02-26 18:12:51 +00:00
Ben Lindstrom
90fd814f90
- markus@cvs.openbsd.org 2002/02/24 19:14:59
...
[auth2.c authfd.c authfd.h authfile.c kexdh.c kexgex.c key.c key.h
ssh-dss.c ssh-dss.h ssh-keygen.c ssh-rsa.c ssh-rsa.h sshconnect2.c]
signed vs. unsigned: make size arguments u_int, ok stevesk@
2002-02-26 18:09:42 +00:00
Ben Lindstrom
e45a2cb2b7
- markus@cvs.openbsd.org 2002/02/24 18:31:09
...
[uuencode.c]
typo in comment
2002-02-26 18:07:26 +00:00
Ben Lindstrom
4a7714a43a
- markus@cvs.openbsd.org 2002/02/24 16:58:32
...
[packet.c]
make 'cp' unsigned and merge with 'ucp'; ok stevesk@
2002-02-26 18:04:38 +00:00
Ben Lindstrom
021fcd3a36
- markus@cvs.openbsd.org 2002/02/24 16:57:19
...
[sftp-client.c]
early close(), missing free; ok stevesk@
2002-02-26 18:02:43 +00:00
Ben Lindstrom
13c5d3b370
- stevesk@cvs.openbsd.org 2002/02/24 16:09:52
...
[sshd.c]
use u_char* here; ok markus@
2002-02-26 18:00:48 +00:00
Ben Lindstrom
14519086e4
- markus@cvs.openbsd.org 2002/02/23 17:59:02
...
[kex.c kexdh.c kexgex.c]
don't allow garbage after payload.
2002-02-26 17:58:29 +00:00
Ben Lindstrom
9c8edc96fc
- markus@cvs.openbsd.org 2002/02/22 12:20:34
...
[log.c log.h ssh-keyscan.c]
overwrite fatal() in ssh-keyscan.c; fixes pr 2354; ok provos@
2002-02-26 17:52:14 +00:00
Ben Lindstrom
351e919690
- (bal) Update sshd_config CVSID
2002-02-26 17:49:55 +00:00
Ben Lindstrom
b855028ff6
- markus@cvs.openbsd.org 2002/02/15 23:54:10
...
[auth-krb5.c]
krb5_get_err_text() does not like context==NULL; he@nordu.net via google;
ok provos@
2002-02-26 17:46:11 +00:00
Kevin Steves
a2b9607a86
- (stevesk) openbsd-compat/base64.h: typo in comment
2002-02-26 16:59:58 +00:00
Tim Rice
4cec93faed
Bug 12 [configure.ac] add sys/bitypes.h to int64_t tests
...
based on patch by mooney@dogbert.cc.ndsu.nodak.edu (Tim Mooney)
Bug 45 [configure.ac] modify skey test to work around conflict with autoconf
reported by nolan@naic.edu (Michael Nolan)
patch by Pekka Savola <pekkas@netcore.fi>
Bug 74 [configure.ac defines.h] add sig_atomic_t test
reported by dwd@bell-labs.com (Dave Dykstra)
Bug 102 [defines.h] UNICOS fixes. patch by wendyp@cray.com
[configure.ac Makefile.in] link libwrap only with sshd
based on patch by Maciej W. Rozycki <macro@ds2.pg.gda.pl>
Bug 123 link libpam only with sshd
reported by peak@argo.troja.mff.cuni.cz (Pavel Kankovsky)
[configure.ac defines.h] modify previous SCO3 fix to not break Solaris 7
[acconfig.h] remove unused HAVE_REGCOMP
2002-02-26 08:40:48 -08:00
Ben Lindstrom
c004135b72
- (bal) Last AIX patch. Moved aix_usrinfo() outside of do_setuserconext()
...
since we need more session information than provided by that function.
2002-02-25 15:48:02 +00:00
Tim Rice
e06ae4a4bc
[loginrec.c session.c sshlogin.c sshlogin.h] Bug 84
...
patch by wknox@mitre.org (William Knox).
[sshlogin.h] declare record_utmp_only for session.c
2002-02-24 17:56:46 -08:00
Ben Lindstrom
839ac4f8aa
- (bal) Part two.. Drop unused AIX header, fix up missing char *cp. All
...
that is left is handling aix_usrinfo().
2002-02-24 20:42:46 +00:00
Ben Lindstrom
127398c6ec
- (bal) Drop Session *s usage in ports-aix.[ch] and pass just what we
...
need to do the jobs (AIX still does not fully compile, but that is
coming).
2002-02-24 20:25:46 +00:00
Ben Lindstrom
3107efc12a
- (bal) Minor session.c for cygwin. mispelt 'is_winnt' variable.
2002-02-21 15:37:02 +00:00
Ben Lindstrom
e37f63ffa0
- markus@cvs.openbsd.org 2002/02/16 00:51:44
...
[session.c]
typo
- (bal) CVS ID sync since the last two patches were merged mistakenly
2002-02-19 21:58:19 +00:00