]>
git.ipfire.org Git - thirdparty/openssh-portable.git/log
Ben Lindstrom [Fri, 28 Jun 2002 16:48:11 +0000 (16:48 +0000)]
- (bal) fix to auth2-pam.c to swap fatal() arguments, A bit of style
clean up while I'm near it.
Ben Lindstrom [Fri, 28 Jun 2002 00:37:33 +0000 (00:37 +0000)]
- (bal) FreeBSD needs <sys/types.h> to detect if mmap() is supported.
Bug #303
Ben Lindstrom [Thu, 27 Jun 2002 18:23:20 +0000 (18:23 +0000)]
- (bal) s/config.h/includes.h/ in openbsd-compat/ for *.c. Otherwise wise
have issues of our fixes not propogating right (ie bcopy instead of
memmove). OK tim
Ben Lindstrom [Thu, 27 Jun 2002 18:02:21 +0000 (18:02 +0000)]
- (bal) Cygwin uid0 fix by vinschen@redhat.com
Kevin Steves [Thu, 27 Jun 2002 16:59:50 +0000 (16:59 +0000)]
20020628
- (stevesk) [sshd_config] PAMAuthenticationViaKbdInt no; commented
options should contain default value. from solar.
Ben Lindstrom [Thu, 27 Jun 2002 00:25:07 +0000 (00:25 +0000)]
- markus@cvs.openbsd.org 2002/06/26 22:27:32
[ssh-keysign.c]
bug #304, xfree(data) called to early; openssh@sigint.cs.purdue.edu
Ben Lindstrom [Thu, 27 Jun 2002 00:23:02 +0000 (00:23 +0000)]
- deraadt@cvs.openbsd.org 2002/06/26 15:00:32
[monitor_wrap.c]
more %u
Ben Lindstrom [Thu, 27 Jun 2002 00:21:59 +0000 (00:21 +0000)]
- markus@cvs.openbsd.org 2002/06/26 14:51:33
[ssh-add.c]
fix exit code for -X/-x
Ben Lindstrom [Thu, 27 Jun 2002 00:21:03 +0000 (00:21 +0000)]
- deraadt@cvs.openbsd.org 2002/06/26 14:50:04
[monitor_fdpass.c]
use ssize_t for recvmsg() and sendmsg() return
Ben Lindstrom [Thu, 27 Jun 2002 00:12:57 +0000 (00:12 +0000)]
- deraadt@cvs.openbsd.org 2002/06/26 14:49:36
[monitor.c]
correct %u
Tim Rice [Wed, 26 Jun 2002 18:05:32 +0000 (11:05 -0700)]
[contrib/caldera/openssh.spec] remove 2 configure options I put in by mistake
Damien Miller [Wed, 26 Jun 2002 13:59:10 +0000 (23:59 +1000)]
- (djm) Release 3.4p1
Damien Miller [Wed, 26 Jun 2002 13:58:39 +0000 (23:58 +1000)]
- markus@cvs.openbsd.org 2002/06/26 13:55:37
[auth2-chall.c]
make sure # of response matches # of queries, fixes int overflow;
from ISS
Damien Miller [Wed, 26 Jun 2002 13:57:59 +0000 (23:57 +1000)]
- (djm) Fix int overflow in auth2-pam.c, similar to one discovered by ISS
Damien Miller [Wed, 26 Jun 2002 13:57:12 +0000 (23:57 +1000)]
- (djm) Update spec files for release
Damien Miller [Wed, 26 Jun 2002 13:51:06 +0000 (23:51 +1000)]
- deraadt@cvs.openbsd.org 2002/06/26 13:49:26
[session.c]
disclose less information from environment files; based on input
from djm, and dschultz@uclink.Berkeley.EDU
Damien Miller [Wed, 26 Jun 2002 13:27:11 +0000 (23:27 +1000)]
- deraadt@cvs.openbsd.org 2002/06/26 13:20:57
[monitor.c]
be careful in mm_zalloc
Damien Miller [Wed, 26 Jun 2002 13:05:16 +0000 (23:05 +1000)]
- (djm) Improve PAMAuthenticationViaKbdInt text from Nalin Dahyabhai
<nalin@redhat.com>
Damien Miller [Wed, 26 Jun 2002 09:42:52 +0000 (19:42 +1000)]
- (djm) Require krb5 devel for RPM build w/ KrbV
Damien Miller [Wed, 26 Jun 2002 09:24:56 +0000 (19:24 +1000)]
ssh-keysign
Damien Miller [Wed, 26 Jun 2002 09:15:07 +0000 (19:15 +1000)]
- markus@cvs.openbsd.org 2002/06/26 08:58:26
[session.c]
limit # of env vars to 1000; ok deraadt/djm
Damien Miller [Wed, 26 Jun 2002 09:14:43 +0000 (19:14 +1000)]
- markus@cvs.openbsd.org 2002/06/26 08:55:02
[channels.c]
limit # of channels to 10000
Damien Miller [Wed, 26 Jun 2002 09:14:25 +0000 (19:14 +1000)]
- markus@cvs.openbsd.org 2002/06/26 08:54:18
[buffer.c]
limit append to 1MB and buffers to 10MB
Damien Miller [Wed, 26 Jun 2002 09:14:08 +0000 (19:14 +1000)]
- (djm) OpenBSD CVS Sync
- markus@cvs.openbsd.org 2002/06/26 08:53:12
[bufaux.c]
limit size of BNs to 8KB; ok provos/deraadt
Damien Miller [Wed, 26 Jun 2002 09:12:59 +0000 (19:12 +1000)]
- (djm) setlogin needs pgid==pid on BSD/OS; from itojun@
Tim Rice [Wed, 26 Jun 2002 02:28:55 +0000 (19:28 -0700)]
[contrib/caldera/openssh.spec] add support for privsep
Kevin Steves [Wed, 26 Jun 2002 00:43:57 +0000 (00:43 +0000)]
- (stevesk) [README.privsep] more for sshd pseudo-account.
Ben Lindstrom [Wed, 26 Jun 2002 00:29:02 +0000 (00:29 +0000)]
- (bal) fixed NeXTStep missing munmap() issue. It defines HAVE_MMAP,
but it all damned lies.
Tim Rice [Wed, 26 Jun 2002 00:25:47 +0000 (17:25 -0700)]
UnixWare tip is no longer needed.
Ben Lindstrom [Wed, 26 Jun 2002 00:22:57 +0000 (00:22 +0000)]
- (bal) added back in error check for mmap(). I screwed up, Pointed
out by stevesk@
Tim Rice [Tue, 25 Jun 2002 23:45:42 +0000 (16:45 -0700)]
[Makefile.in] fix test on installing ssh-rand-helper.8
Ben Lindstrom [Tue, 25 Jun 2002 23:38:47 +0000 (23:38 +0000)]
- (bal) Updated AIX package build. Patch by dtucker@zip.com.au
Ben Lindstrom [Tue, 25 Jun 2002 23:24:18 +0000 (23:24 +0000)]
- markus@cvs.openbsd.org 2002/06/25 18:51:04
[sshd.c]
lightweight do_setusercontext after chroot()
Ben Lindstrom [Tue, 25 Jun 2002 23:22:54 +0000 (23:22 +0000)]
- markus@cvs.openbsd.org 2002/06/25 16:22:42
[authfd.c]
unnecessary cast
Ben Lindstrom [Tue, 25 Jun 2002 23:21:41 +0000 (23:21 +0000)]
- deraadt@cvs.openbsd.org 2002/06/24 17:57:20
[sftp-server.c sshpty.c]
explicit (u_int) for uid and gid
Ben Lindstrom [Tue, 25 Jun 2002 23:20:18 +0000 (23:20 +0000)]
- itojun@cvs.openbsd.org 2002/06/24 15:49:22
[msg.c]
printf type pedant
Ben Lindstrom [Tue, 25 Jun 2002 23:19:13 +0000 (23:19 +0000)]
- markus@cvs.openbsd.org 2002/06/24 14:55:38
[authfile.c kex.c ssh-agent.c]
cat to (void) when output from buffer_get_X is ignored
Ben Lindstrom [Tue, 25 Jun 2002 23:17:36 +0000 (23:17 +0000)]
- markus@cvs.openbsd.org 2002/06/24 14:33:27
[channels.c channels.h clientloop.c serverloop.c]
move channel counter to u_int
Ben Lindstrom [Tue, 25 Jun 2002 23:16:31 +0000 (23:16 +0000)]
- markus@cvs.openbsd.org 2002/06/24 13:12:23
[ssh-agent.1]
the socket name contains ssh-agent's ppid; via mpech@ from form@
Ben Lindstrom [Tue, 25 Jun 2002 23:15:30 +0000 (23:15 +0000)]
- markus@cvs.openbsd.org 2002/06/23 21:34:07
[channels.c]
tcode is u_int
Kevin Steves [Tue, 25 Jun 2002 23:01:37 +0000 (23:01 +0000)]
whitespace sync
Kevin Steves [Tue, 25 Jun 2002 22:43:19 +0000 (22:43 +0000)]
- (stevesk) [monitor.c] remove duplicate proto15 dispatch entry for PAM
Tim Rice [Tue, 25 Jun 2002 22:35:15 +0000 (15:35 -0700)]
[acconfig.h configure.ac sshd.c] BROKEN_FD_PASSING fix from Markus
for Cygwin, Cray, & SCO
Ben Lindstrom [Tue, 25 Jun 2002 17:12:26 +0000 (17:12 +0000)]
20020626
- (bal) moved aix_usrinfo() and noted not setting real TTY. Patch by
dtucker@zip.com.au
Tim Rice [Tue, 25 Jun 2002 17:07:25 +0000 (10:07 -0700)]
Sync with Caldera
Ben Lindstrom [Tue, 25 Jun 2002 14:14:30 +0000 (14:14 +0000)]
More privsep notes
Ben Lindstrom [Tue, 25 Jun 2002 14:01:55 +0000 (14:01 +0000)]
More notes for Privsep issues.
Ben Lindstrom [Tue, 25 Jun 2002 03:22:03 +0000 (03:22 +0000)]
- (bal) if mmap() is substandard, don't allow compression on server side.
Post 'event' we will add more options.
Ben Lindstrom [Tue, 25 Jun 2002 02:28:22 +0000 (02:28 +0000)]
- (bal) Started list of PrivSep issues in TODO
Damien Miller [Tue, 25 Jun 2002 00:24:47 +0000 (10:24 +1000)]
- (djm) Create privsep directory and warn if privsep user is missing
during make install
Kevin Steves [Mon, 24 Jun 2002 16:49:22 +0000 (16:49 +0000)]
- (stevesk) [README.privsep] minor updates
Kevin Steves [Mon, 24 Jun 2002 16:26:49 +0000 (16:26 +0000)]
- (stevesk) [INSTALL acconfig.h configure.ac defines.h] remove --with-rsh
Ben Lindstrom [Sun, 23 Jun 2002 21:49:25 +0000 (21:49 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 21:10:02
[packet.c]
packet_get_int() returns unsigned for reason & seqnr
Ben Lindstrom [Sun, 23 Jun 2002 21:48:28 +0000 (21:48 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 21:06:41
[channels.c channels.h session.c session.h]
display, screen, row, col, xpixel, ypixel are u_int; markus ok
- (bal) Also fixed IPADDR_IN_DISPLAY case where display, screen, row, col,
xpixel are u_int.
Ben Lindstrom [Sun, 23 Jun 2002 21:42:50 +0000 (21:42 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 21:06:13
[sshpty.c]
KNF
Ben Lindstrom [Sun, 23 Jun 2002 21:40:16 +0000 (21:40 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 20:39:45
[session.c]
compression_level is u_int
Ben Lindstrom [Sun, 23 Jun 2002 21:38:49 +0000 (21:38 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 10:29:52
[ssh-agent.c sshd.c]
some minor KNF and %u
Ben Lindstrom [Sun, 23 Jun 2002 21:29:23 +0000 (21:29 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 09:46:51
[bufaux.c servconf.c]
minor KNF. things the fingers do while you read
Ben Lindstrom [Sun, 23 Jun 2002 21:28:13 +0000 (21:28 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 09:39:55
[ssh-keygen.c]
u_int stuff
Ben Lindstrom [Sun, 23 Jun 2002 21:27:18 +0000 (21:27 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 09:30:14
[sftp-client.c sftp-client.h sftp-common.c sftp-int.c sftp-server.c
sftp.c]
bunch of u_int vs int stuff
Ben Lindstrom [Sun, 23 Jun 2002 21:23:20 +0000 (21:23 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 03:30:58
[scard.c ssh-dss.c ssh-rsa.c sshconnect.c sshconnect2.c sshd.c sshlogin.c
sshpty.c]
various KNF and %d for unsigned
Ben Lindstrom [Sun, 23 Jun 2002 21:21:30 +0000 (21:21 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 03:26:19
[cipher.c key.c]
KNF
Ben Lindstrom [Sun, 23 Jun 2002 21:20:34 +0000 (21:20 +0000)]
- deraadt@cvs.openbsd.org 2002/06/23 03:25:50
[tildexpand.c]
KNF
Ben Lindstrom [Sun, 23 Jun 2002 00:38:24 +0000 (00:38 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 23:09:51
[monitor.c]
save auth method before monitor_reset_key_state(); bugzilla bug #284;
ok provos@
Ben Lindstrom [Sun, 23 Jun 2002 00:37:10 +0000 (00:37 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 20:05:27
[sshd.c]
don't call setsid() if debugging or run from inetd; no "Operation not
permitted" errors now; ok millert@ markus@
Ben Lindstrom [Sun, 23 Jun 2002 00:35:25 +0000 (00:35 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 16:45:29
[ssh-agent.1 sshd.8 sshd_config.5]
use process ID vs. pid/PID/process identifier
Ben Lindstrom [Sun, 23 Jun 2002 00:34:37 +0000 (00:34 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 16:41:57
[scp.1]
typo
Ben Lindstrom [Sun, 23 Jun 2002 00:33:47 +0000 (00:33 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 16:40:19
[sshd.c]
check /var/empty owner mode; ok provos@
Ben Lindstrom [Sun, 23 Jun 2002 00:32:57 +0000 (00:32 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 16:32:54
[sshd.8]
add /var/empty in FILES section
Ben Lindstrom [Sun, 23 Jun 2002 00:32:11 +0000 (00:32 +0000)]
- naddy@cvs.openbsd.org 2002/06/22 11:51:39
[ssh.1]
typo
Ben Lindstrom [Sun, 23 Jun 2002 00:31:24 +0000 (00:31 +0000)]
- stevesk@cvs.openbsd.org 2002/06/22 02:40:23
[ssh.1]
section 5 not 4 for ssh_config
Ben Lindstrom [Sun, 23 Jun 2002 00:30:30 +0000 (00:30 +0000)]
- OpenBSD CVS Sync
- stevesk@cvs.openbsd.org 2002/06/22 02:00:29
[ssh.h]
correct comment
Ben Lindstrom [Sun, 23 Jun 2002 00:20:50 +0000 (00:20 +0000)]
- (bal) add extern char *getopt. Based on report by dtucker@zip.com.au
Ben Lindstrom [Sun, 23 Jun 2002 00:18:15 +0000 (00:18 +0000)]
- (bal) removed GNUism for getops in ssh-agent since glibc lacks optreset.
Kevin Steves [Sat, 22 Jun 2002 18:51:48 +0000 (18:51 +0000)]
- (stevesk) [configure.ac] bug #255 LOGIN_NEEDS_UTMPX for AIX.
Ben Lindstrom [Sat, 22 Jun 2002 00:26:59 +0000 (00:26 +0000)]
- (bal) getopt now can be staticly compiled on those platforms missing
optreset. Patch by binder@arago.de
Damien Miller [Fri, 21 Jun 2002 15:44:45 +0000 (01:44 +1000)]
- (djm) Release 3.3p1
Damien Miller [Fri, 21 Jun 2002 14:48:02 +0000 (00:48 +1000)]
mention systems without mmap or MAP_ANON
Damien Miller [Fri, 21 Jun 2002 14:45:50 +0000 (00:45 +1000)]
- (djm) Update README.privsep; spotted by fries@
Damien Miller [Fri, 21 Jun 2002 07:12:24 +0000 (17:12 +1000)]
unbreak
Damien Miller [Fri, 21 Jun 2002 07:11:02 +0000 (17:11 +1000)]
unbreak
Damien Miller [Fri, 21 Jun 2002 06:42:41 +0000 (16:42 +1000)]
- (djm) contrib/redhat/openssh.spec hacking:
- Merge in spec changes from seba@iq.pl (Sebastian Pachuta)
- Add new {ssh,sshd}_config.5 manpages
- Add new ssh-keysign program and remove setuid from ssh client
Damien Miller [Fri, 21 Jun 2002 06:21:11 +0000 (16:21 +1000)]
some xxx's for future privsep cleanup
Damien Miller [Fri, 21 Jun 2002 06:20:44 +0000 (16:20 +1000)]
- (djm) Warn and disable compression on platforms which can't handle both
useprivilegeseparation=yes and compression=yes
Damien Miller [Fri, 21 Jun 2002 06:05:12 +0000 (16:05 +1000)]
- ID sync for auth-passwd.c
Damien Miller [Fri, 21 Jun 2002 05:59:49 +0000 (15:59 +1000)]
- djm@cvs.openbsd.org 2002/06/21 05:50:51
[monitor.c]
Don't initialise compression buffers when compression=no in sshd_config;
ok Niels@
Ben Lindstrom [Fri, 21 Jun 2002 01:38:53 +0000 (01:38 +0000)]
- (bal) Still more Makefile.in updates for ssh{d}_config.5
Ben Lindstrom [Fri, 21 Jun 2002 01:24:01 +0000 (01:24 +0000)]
- (bal) Missed integrating ssh_config.5 and sshd_config.5
Ben Lindstrom [Fri, 21 Jun 2002 01:19:12 +0000 (01:19 +0000)]
- stevesk@cvs.openbsd.org 2002/05/25 20:40:08
[LICENCE]
missed Per Allansson (auth2-chall.c)
Ben Lindstrom [Fri, 21 Jun 2002 01:11:36 +0000 (01:11 +0000)]
- markus@cvs.openbsd.org 2002/06/20 23:37:12
[sshd_config]
add Compression
Ben Lindstrom [Fri, 21 Jun 2002 01:09:47 +0000 (01:09 +0000)]
- markus@cvs.openbsd.org 2002/06/20 23:05:56
[servconf.c servconf.h session.c sshd.c]
allow Compression=yes/no in sshd_config
Ben Lindstrom [Fri, 21 Jun 2002 01:06:03 +0000 (01:06 +0000)]
- stevesk@cvs.openbsd.org 2002/06/20 20:03:34
[ssh_config sshd_config]
refer to config file man page
Ben Lindstrom [Fri, 21 Jun 2002 01:02:39 +0000 (01:02 +0000)]
- stevesk@cvs.openbsd.org 2002/06/20 20:00:05
[scp.1 sftp.1]
ssh_config(5)
Ben Lindstrom [Fri, 21 Jun 2002 01:00:40 +0000 (01:00 +0000)]
tevesk@cvs.openbsd.org 2002/06/20 20:00:05
[scp.1 sftp.1]
ssh_config(5)
Ben Lindstrom [Fri, 21 Jun 2002 00:59:05 +0000 (00:59 +0000)]
- stevesk@cvs.openbsd.org 2002/06/20 19:56:07
[ssh.1 sshd.8]
move configuration file options from ssh.1/sshd.8 to
ssh_config.5/sshd_config.5; ok deraadt@ millert@
Ben Lindstrom [Fri, 21 Jun 2002 00:43:42 +0000 (00:43 +0000)]
- markus@cvs.openbsd.org 2002/06/19 18:01:00
[cipher.c monitor.c monitor_wrap.c packet.c packet.h]
make the monitor sync the transfer ssh1 session key;
transfer keycontext only for RC4 (this is still depends on EVP
implementation details and is broken).
Ben Lindstrom [Fri, 21 Jun 2002 00:41:51 +0000 (00:41 +0000)]
- deraadt@cvs.openbsd.org 2002/06/19 00:27:55
[auth-bsdauth.c auth-skey.c auth1.c auth2-chall.c auth2-none.c authfd.c
authfd.h monitor_wrap.c msg.c nchan.c radix.c readconf.c scp.c sftp.1
ssh-add.1 ssh-add.c ssh-agent.1 ssh-agent.c ssh-keygen.1 ssh-keygen.c
ssh-keysign.c ssh.1 sshconnect.c sshconnect.h sshconnect2.c ttymodes.c
xmalloc.h]
KNF done automatically while reading....
Ben Lindstrom [Fri, 21 Jun 2002 00:26:22 +0000 (00:26 +0000)]
- (bal) Cygwin special handling of empty passwords wrong. Patch by
vinschen@redhat.com
Ben Lindstrom [Fri, 21 Jun 2002 00:10:58 +0000 (00:10 +0000)]
- deraadt@cvs.openbsd.org 2002/06/17 06:05:56
[scp.c]
make usage like man page
Ben Lindstrom [Fri, 21 Jun 2002 00:09:54 +0000 (00:09 +0000)]
- itojun@cvs.openbsd.org 2002/06/16 21:30:58
[ssh-keyscan.c]
use TAILQ_xx macro. from lukem@netbsd. markus ok