]>
git.ipfire.org Git - thirdparty/openssh-portable.git/log
Damien Miller [Tue, 10 Apr 2001 01:08:40 +0000 (11:08 +1000)]
Add Theo E. Schlossnagle's <jesus@omniti.com> SecurID patch to contrib/
Kevin Steves [Wed, 4 Apr 2001 15:00:19 +0000 (15:00 +0000)]
- (stevesk) nchan.c: remove ostate checks and add EINVAL to
shutdown(SHUT_RD) error() bypass for HP-UX.
Damien Miller [Fri, 30 Mar 2001 01:01:42 +0000 (11:01 +1000)]
- (djm) Patch from OpenBSD CVS:
- stevesk@cvs.openbsd.org 2001/03/29 21:06:21
[sshconnect2.c sshd.c]
need to set both STOC and CTOS for SSH_BUG_BIGENDIANAES; ok markus@
Damien Miller [Fri, 30 Mar 2001 00:39:13 +0000 (10:39 +1000)]
- (djm) Document default protocol order in config files
Damien Miller [Fri, 30 Mar 2001 00:23:08 +0000 (10:23 +1000)]
- (djm) Another openbsd-compat/glob.c sync
Damien Miller [Wed, 28 Mar 2001 11:05:07 +0000 (21:05 +1000)]
- (djm) Sync openbsd-compat/glob.c
Damien Miller [Wed, 28 Mar 2001 04:37:52 +0000 (14:37 +1000)]
- (djm) Rework krbIV tests to get us closer to building on Redhat. Still
doesn't work because of conflicts between krbIV's and OpenSSL's des.h
Damien Miller [Wed, 28 Mar 2001 04:37:37 +0000 (14:37 +1000)]
- (djm) Work around Solaris' broken struct dirent. Diagnosis and suggested
fix from Philippe Levan <levan@epix.net>
Damien Miller [Wed, 28 Mar 2001 03:04:13 +0000 (13:04 +1000)]
- (djm) Reorder tests and library inclusion for Krb4/AFS to try to
resolve linking conflicts with libcrypto. Report and suggested fix
from Holger Trapp <Holger.Trapp@Informatik.TU-Chemnitz.DE>
Damien Miller [Tue, 27 Mar 2001 06:13:46 +0000 (16:13 +1000)]
- (djm) Reestablish PAM credentials (which can be supplemental group
memberships) after initgroups() blows them away. Report and suggested
fix from Nalin Dahyabhai <nalin@redhat.com>
Ben Lindstrom [Sat, 24 Mar 2001 04:53:32 +0000 (04:53 +0000)]
- djm@cvs.openbsd.org 2001/03/23 11:04:07
[compat.c compat.h sshconnect2.c sshd.c]
Compat for OpenSSH with broken Rijndael/AES. ok markus@
Ben Lindstrom [Sat, 24 Mar 2001 04:51:43 +0000 (04:51 +0000)]
- deraadt@cvs.openbsd.org 2001/03/22 20:22:55
[sshd.c]
do not place linefeeds in buffer
Ben Lindstrom [Sat, 24 Mar 2001 04:45:42 +0000 (04:45 +0000)]
- markus@cvs.openbsd.org 2001/03/23 13:10:57
[sftp-int.c]
fix put, upload to _absolute_ path, ok djm@
Ben Lindstrom [Sat, 24 Mar 2001 00:22:46 +0000 (00:22 +0000)]
- Fixed permissions ssh-keyscan. Thanks to Christopher Linn <celinn@mtu.edu>.
Damien Miller [Thu, 22 Mar 2001 05:04:12 +0000 (16:04 +1100)]
2.5.2p2
Damien Miller [Thu, 22 Mar 2001 00:58:26 +0000 (11:58 +1100)]
- (djm) Better AIX no tty fix, spotted by Gert Doering <gert@greenie.muc.de>
Damien Miller [Wed, 21 Mar 2001 05:13:16 +0000 (16:13 +1100)]
- (djm) Correctly handle SIA and AIX when no tty present. Spotted and
suggested fix from Mike Battersby <mib@unimelb.edu.au>
Damien Miller [Wed, 21 Mar 2001 02:13:21 +0000 (13:13 +1100)]
Update version number prior to 2.5.2p2 release
Damien Miller [Wed, 21 Mar 2001 02:12:12 +0000 (13:12 +1100)]
Merge changes on HEAD to 2.5.2 branch
Tim Rice [Tue, 20 Mar 2001 04:49:46 +0000 (20:49 -0800)]
add get_arg_max(). Use sysconf() if ARG_MAX is not defined.
Tim Rice [Tue, 20 Mar 2001 02:49:21 +0000 (18:49 -0800)]
change S_ISLNK macro to work for UnixWare 2.03
Tim Rice [Tue, 20 Mar 2001 02:31:44 +0000 (18:31 -0800)]
change S_ISLNK macro to work for UnixWare 2.03
Damien Miller [Mon, 19 Mar 2001 22:30:50 +0000 (09:30 +1100)]
- (djm) Update RPM spec version
- (djm) Release 2.5.2p1
Damien Miller [Mon, 19 Mar 2001 22:16:34 +0000 (09:16 +1100)]
- markus@cvs.openbsd.org 2001/03/19 17:12:10
[version.h]
version 2.5.2
Damien Miller [Mon, 19 Mar 2001 22:15:57 +0000 (09:15 +1100)]
- markus@cvs.openbsd.org 2001/03/19 17:07:23
[auth.c readconf.c]
undo /etc/shell and proto 2,1 change for openssh-2.5.2
Ben Lindstrom [Mon, 19 Mar 2001 21:29:30 +0000 (21:29 +0000)]
- (bal) Oops. Missed globc.h change (OpenBSD CVS).
Ben Lindstrom [Mon, 19 Mar 2001 19:00:09 +0000 (19:00 +0000)]
- (bal) glob.c update to set gl_pathv to NULL (OpenBSD CVS).
Ben Lindstrom [Mon, 19 Mar 2001 18:58:13 +0000 (18:58 +0000)]
- (bal) glob.c update to added GLOB_LIMITS.
Kevin Steves [Mon, 19 Mar 2001 14:58:47 +0000 (14:58 +0000)]
64-bit builds on HP-UX 11.X
Ben Lindstrom [Mon, 19 Mar 2001 13:42:21 +0000 (13:42 +0000)]
- (bal) Minor NeXT fixed. Forgot to #undef NGROUPS_MAX
Damien Miller [Mon, 19 Mar 2001 12:59:11 +0000 (23:59 +1100)]
- djm@cvs.openbsd.org 2001/03/19 05:49:52
[ssh.1]
document PreferredAuthentications option; ok markus@
Damien Miller [Mon, 19 Mar 2001 12:16:08 +0000 (23:16 +1100)]
- djm@cvs.openbsd.org 2001/03/19 12:10:17
[sshd.8]
Document permitopen authorized_keys option; ok markus@
Damien Miller [Mon, 19 Mar 2001 12:16:08 +0000 (23:16 +1100)]
- djm@cvs.openbsd.org 2001/03/19 12:10:17
[sshd.8]
Document permitopen authorized_keys option; ok markus@
Damien Miller [Mon, 19 Mar 2001 11:36:20 +0000 (22:36 +1100)]
- deraadt@cvs.openbsd.org 2001/03/18 23:30:55
[compat.c compat.h sshd.c]
specifically version match on ssh scanners. do not log scan
information to the console
Damien Miller [Mon, 19 Mar 2001 11:29:46 +0000 (22:29 +1100)]
- (djm) OpenBSD CVS Sync
- djm@cvs.openbsd.org 2001/03/19 03:52:51
[sftp-client.c]
Report ssh connection closing correctly; ok deraadt@
Ben Lindstrom [Mon, 19 Mar 2001 03:12:25 +0000 (03:12 +0000)]
- (bal) NeXTStep lacks S_ISLNK. Plus split up S_IS*
Ben Lindstrom [Mon, 19 Mar 2001 03:09:40 +0000 (03:09 +0000)]
- (bal) Small fix to scp. %lu vs %ld
Ben Lindstrom [Mon, 19 Mar 2001 03:01:56 +0000 (03:01 +0000)]
- Use 'NGROUPS' for NeXT Since 'MAX_NGROUPS' is wrapped up in -lposix
stuff. Change suggested by Mark Miller <markm@swoon.net>
Tim Rice [Mon, 19 Mar 2001 02:27:26 +0000 (18:27 -0800)]
move HAVE_LONG_LONG_INT where it works
Damien Miller [Mon, 19 Mar 2001 01:56:14 +0000 (12:56 +1100)]
Better fix for long long
Damien Miller [Mon, 19 Mar 2001 01:45:02 +0000 (12:45 +1100)]
- (djm) Make scp work on systems without 64-bit ints
Ben Lindstrom [Mon, 19 Mar 2001 00:13:46 +0000 (00:13 +0000)]
- markus@cvs.openbsd.org 2001/03/18 12:07:52
[auth-options.c]
ignore permitopen="host:port" if AllowTcpForwarding==no
Damien Miller [Sun, 18 Mar 2001 23:09:27 +0000 (10:09 +1100)]
- (djm) Add getusershell() functions from OpenBSD CVS
Damien Miller [Sun, 18 Mar 2001 23:00:53 +0000 (10:00 +1100)]
Add missing headers
Damien Miller [Sun, 18 Mar 2001 22:38:15 +0000 (09:38 +1100)]
- (djm) Seed PRNG at startup, rather than waiting for arc4random calls to
do it implicitly.
Tim Rice [Sun, 18 Mar 2001 02:43:16 +0000 (18:43 -0800)]
- tim@mindrot.org 2001/03/17 18:45:25 [compat.c]
openbsd-compat/fake-regex.h
Ben Lindstrom [Sat, 17 Mar 2001 23:13:27 +0000 (23:13 +0000)]
- markus@cvs.openbsd.org 2001/03/17 17:27:59
[auth.c]
check /etc/shells, too
Ben Lindstrom [Sat, 17 Mar 2001 18:07:46 +0000 (18:07 +0000)]
- (bal) Fixed scp type casing issue which causes "scp: protocol error:
size not delimited" fatal errors when tranfering.
Ben Lindstrom [Sat, 17 Mar 2001 01:15:38 +0000 (01:15 +0000)]
- Check for gl_matchc support in glob_t and fall back to the
openbsd-compat/glob.[ch] support if it does not exist.
Ben Lindstrom [Sat, 17 Mar 2001 00:47:54 +0000 (00:47 +0000)]
- markus@cvs.openbsd.org 2001/03/16 19:06:30
[auth-options.c channels.c channels.h serverloop.c session.c]
implement "permitopen" key option, restricts -L style forwarding to
to specified host:port pairs. based on work by harlan@genua.de
Ben Lindstrom [Sat, 17 Mar 2001 00:37:31 +0000 (00:37 +0000)]
- markus@cvs.openbsd.org 2001/03/16 13:44:24
[sftp-int.c]
discourage strcat/strcpy
Ben Lindstrom [Sat, 17 Mar 2001 00:36:17 +0000 (00:36 +0000)]
- markus@cvs.openbsd.org 2001/03/16 09:55:53
[sftp-int.c]
fix memset and whitespace
Ben Lindstrom [Sat, 17 Mar 2001 00:34:46 +0000 (00:34 +0000)]
- djm@cvs.openbsd.org 2001/03/16 08:16:18
[sftp-client.c sftp-client.h sftp-glob.c sftp-int.c]
Revise globbing for get/put to be more shell-like. In particular,
"get/put file* directory/" now works. ok markus@
Ben Lindstrom [Sat, 17 Mar 2001 00:32:57 +0000 (00:32 +0000)]
- markus@cvs.openbsd.org 2001/03/15 22:07:08
[session.c]
pass Session to do_child + KNF
Ben Lindstrom [Sat, 17 Mar 2001 00:10:20 +0000 (00:10 +0000)]
- markus@cvs.openbsd.org 2001/03/15 15:05:59
[scp.c]
use %lld in printf, ok millert@/deraadt@; report from ssh@client.fi
Damien Miller [Fri, 16 Mar 2001 23:29:50 +0000 (10:29 +1100)]
- Support usrinfo() on AIX. Based on patch from Gert Doering
<gert@greenie.muc.de>
Ben Lindstrom [Thu, 15 Mar 2001 00:09:15 +0000 (00:09 +0000)]
- deraadt@cvs.openbsd.org 2001/03/14 22:50:25
[sftp-server.c]
note no getopt()
Ben Lindstrom [Wed, 14 Mar 2001 21:30:18 +0000 (21:30 +0000)]
- (bal) Cygwin README change by Corinna Vinschen <vinschen@redhat.com>
Ben Lindstrom [Wed, 14 Mar 2001 21:26:27 +0000 (21:26 +0000)]
- markus@cvs.openbsd.org 2001/03/14 15:15:58
[sftp-int.c]
add version command
Kevin Steves [Wed, 14 Mar 2001 18:37:13 +0000 (18:37 +0000)]
- (stevesk) ssh-keyscan.c: specify "openbsd-compat/fake-queue.h"
Ben Lindstrom [Wed, 14 Mar 2001 15:16:34 +0000 (15:16 +0000)]
- markus@cvs.openbsd.org 2001/03/14 08:57:14
[sftp-client.c]
Wall
Damien Miller [Wed, 14 Mar 2001 00:39:45 +0000 (11:39 +1100)]
- (djm) Add replacement glob() from OpenBSD libc if the system glob is
missing or lacks the GLOB_ALTDIRFUNC extension
- (djm) Remove -I$(srcdir)/openbsd-compat from CFLAGS, refer to headers
relatively. Avoids conflict between glob.h and /usr/include/glob.h
Ben Lindstrom [Tue, 13 Mar 2001 23:38:20 +0000 (23:38 +0000)]
- Fix strerror() in bsd-misc.c
Damien Miller [Tue, 13 Mar 2001 23:27:09 +0000 (10:27 +1100)]
- djm@cvs.openbsd.org 2001/03/13 22:42:54
[sftp-client.c sftp-client.h sftp-glob.c sftp-glob.h sftp-int.c]
sftp client filename globbing for get, put, ch{mod,grp,own}. ok markus@
Damien Miller [Tue, 13 Mar 2001 23:15:20 +0000 (10:15 +1100)]
- OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/13 17:34:42
[auth-options.c]
missing xfree, deny key on parse error; ok stevesk@
Ben Lindstrom [Tue, 13 Mar 2001 04:57:58 +0000 (04:57 +0000)]
- OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/12 22:02:02
[key.c key.h ssh-add.c ssh-keygen.c sshconnect.c sshconnect2.c]
remove old key_fingerprint interface, s/_ex//
Ben Lindstrom [Mon, 12 Mar 2001 05:16:18 +0000 (05:16 +0000)]
- (bal) Reorder includes in Makefile.
Damien Miller [Mon, 12 Mar 2001 03:47:30 +0000 (14:47 +1100)]
- (djm) Add "static_openssl" RPM build option, remove rsh build dependency
Damien Miller [Mon, 12 Mar 2001 03:23:52 +0000 (14:23 +1100)]
- (djm) Bump portable version number for generating test RPMs
Ben Lindstrom [Mon, 12 Mar 2001 03:02:17 +0000 (03:02 +0000)]
- markus@cvs.openbsd.org 2001/03/11 22:33:24
[ssh-keygen.1 ssh-keygen.c]
remove -v again. use -B instead for bubblebabble. make -B consistent
with -l and make -B work with /path/to/known_hosts. ok deraadt@
Ben Lindstrom [Mon, 12 Mar 2001 02:59:31 +0000 (02:59 +0000)]
- markus@cvs.openbsd.org 2001/03/11 18:29:51
[key.c]
style+cleanup
Tim Rice [Mon, 12 Mar 2001 01:32:12 +0000 (17:32 -0800)]
test if snprintf() supports %ll
add /dev to search path for PRNGD/EGD socket
fix my mistake in USER_PATH test program
Ben Lindstrom [Sun, 11 Mar 2001 20:08:29 +0000 (20:08 +0000)]
- deraadt@cvs.openbsd.org 2001/03/11 16:39:03
[ssh-keygen.c]
KNF, and SHA1 binary output is just creeping featurism
Ben Lindstrom [Sun, 11 Mar 2001 20:06:59 +0000 (20:06 +0000)]
- jakob@cvs.openbsd.org 2001/03/11 15:13:09
[key.c]
cleanup & shorten some var names key_fingerprint_bubblebabble.
Ben Lindstrom [Sun, 11 Mar 2001 20:05:19 +0000 (20:05 +0000)]
- jakob@cvs.openbsd.org 2001/03/11 15:04:16
[ssh-keygen.1 ssh-keygen.c]
print both md5, sha1 and bubblebabble fingerprints when using
ssh-keygen -l -v. ok markus@.
Ben Lindstrom [Sun, 11 Mar 2001 20:03:44 +0000 (20:03 +0000)]
- jakob@cvs.openbsd.org 2001/03/11 15:03:16
[key.c key.h]
add improved fingerprint functions. based on work by Carsten
Raskgaard <cara@int.tele.dk> and modified by me. ok markus@.
Ben Lindstrom [Sun, 11 Mar 2001 20:01:55 +0000 (20:01 +0000)]
- markus@cvs.openbsd.org 2001/03/11 13:25:36
[auth2.c key.c]
debug
Ben Lindstrom [Sun, 11 Mar 2001 01:49:19 +0000 (01:49 +0000)]
- markus@cvs.openbsd.org 2001/03/10 17:51:04
[kex.c match.c match.h readconf.c readconf.h sshconnect2.c]
add PreferredAuthentications
Tim Rice [Sun, 11 Mar 2001 00:52:25 +0000 (16:52 -0800)]
- tim@mindrot.org 2001/03/10 16:33:42 [configure.in Makefile.in sshd_config]
make sure $bindir is in USER_PATH so scp will work
Tim Rice [Sat, 10 Mar 2001 21:50:45 +0000 (13:50 -0800)]
make sure $bindir is in USER_PATH so scp will work
Ben Lindstrom [Sat, 10 Mar 2001 17:22:20 +0000 (17:22 +0000)]
- deraadt@cvs.openbsd.org 2001/03/10 15:31:00
[compat.c compat.h sshconnect.c]
all known netscreen ssh versions, and older versions of OSU ssh cannot
handle password padding (newer OSU is fixed)
Ben Lindstrom [Sat, 10 Mar 2001 17:17:28 +0000 (17:17 +0000)]
- stevesk@cvs.openbsd.org 2001/03/10 15:02:05
[ttymodes.c ttymodes.h]
remove unused sgtty macros; ok markus@
Ben Lindstrom [Sat, 10 Mar 2001 17:15:39 +0000 (17:15 +0000)]
- deraadt@cvs.openbsd.org 2001/03/10 12:53:51
[readconf.c ssh_config]
default to SSH2, now that m68k runs fast
Ben Lindstrom [Sat, 10 Mar 2001 17:08:59 +0000 (17:08 +0000)]
- markus@cvs.openbsd.org 2001/03/10 12:48:27
[sshconnect2.c]
ignore nonexisting private keys; report rjmooney@mediaone.net
Ben Lindstrom [Fri, 9 Mar 2001 19:48:37 +0000 (19:48 +0000)]
- Removed log.o from sftp client. Not needed.
Ben Lindstrom [Fri, 9 Mar 2001 18:25:32 +0000 (18:25 +0000)]
- deraadt@cvs.openbsd.org 2001/03/09 12:30:29
[sshd.c]
typo; slade@shore.net
Ben Lindstrom [Fri, 9 Mar 2001 18:19:24 +0000 (18:19 +0000)]
- deraadt@cvs.openbsd.org 2001/03/09 03:14:39
[ssh-keygen.c]
create *.pub files with umask 0644, so that you can mv them to
authorized_keys
Ben Lindstrom [Fri, 9 Mar 2001 00:12:22 +0000 (00:12 +0000)]
- markus@cvs.openbsd.org 2001/03/08 21:42:33
[compat.c compat.h readconf.h ssh.c sshconnect1.c sshconnect2.c]
implement client side of SSH2_MSG_USERAUTH_PK_OK (test public key ->
no need to do enter passphrase or do expensive sign operations if the
server does not accept key).
Ben Lindstrom [Fri, 9 Mar 2001 00:09:02 +0000 (00:09 +0000)]
- stevesk@cvs.openbsd.org 2001/03/08 20:44:48
[sftp.1]
spelling, cleanup; ok deraadt@
Ben Lindstrom [Thu, 8 Mar 2001 20:37:22 +0000 (20:37 +0000)]
- stevesk@cvs.openbsd.org 2001/03/08 18:47:12
[auth1.c]
unused; ok markus@
Kevin Steves [Thu, 8 Mar 2001 18:26:57 +0000 (18:26 +0000)]
- (stevesk) Reliant Unix (SNI) needs HAVE_BOGUS_SYS_QUEUE_H;
Dirk Markwardt <D.Markwardt@tu-bs.de>
Ben Lindstrom [Thu, 8 Mar 2001 03:39:10 +0000 (03:39 +0000)]
- OpenBSD CVS Sync
- markus@cvs.openbsd.org 2001/03/08 00:15:48
[readconf.c ssh.1]
turn off useprivilegedports by default. only rhost-auth needs
this. older sshd's may need this, too.
Damien Miller [Wed, 7 Mar 2001 23:08:49 +0000 (10:08 +1100)]
- OpenBSD CVS Sync
- djm@cvs.openbsd.org 2001/03/07 10:11:23
[sftp-client.c sftp-client.h sftp-int.c sftp-server.c sftp.1 sftp.c sftp.h]
Support for new draft (draft-ietf-secsh-filexfer-01). New symlink handling
functions and small protocol change.
Damien Miller [Wed, 7 Mar 2001 10:38:19 +0000 (21:38 +1100)]
- Cygwin contrib improvements from Corinna Vinschen <vinschen@redhat.com>
Ben Lindstrom [Wed, 7 Mar 2001 06:08:50 +0000 (06:08 +0000)]
- deraadt@cvs.openbsd.org 2001/03/07 04:05:58
[ssh.1]
removed dated comment
Ben Lindstrom [Wed, 7 Mar 2001 06:07:22 +0000 (06:07 +0000)]
- deraadt@cvs.openbsd.org 2001/03/07 01:19:06
[ssh.1 sshd.8]
the name "secure shell" is boring, noone ever uses it
Ben Lindstrom [Wed, 7 Mar 2001 01:29:17 +0000 (01:29 +0000)]
- deraadt@cvs.openbsd.org 2001/03/06 15:10:42
[sftp.1]
order things
Ben Lindstrom [Wed, 7 Mar 2001 01:26:48 +0000 (01:26 +0000)]
- deraadt@cvs.openbsd.org 2001/03/06 06:11:44
[sftp-int.c sftp.1 sftp.c]
sftp -b batchfile; mouring@etoh.eviladmin.org
Ben Lindstrom [Wed, 7 Mar 2001 01:23:30 +0000 (01:23 +0000)]
- deraadt@cvs.openbsd.org 2001/03/06 06:11:18
[ssh-keyscan.c]
appease gcc
Ben Lindstrom [Tue, 6 Mar 2001 03:34:40 +0000 (03:34 +0000)]
- millert@cvs.openbsd.org 2001/03/06 01:08:27
[clientloop.c]
If read() fails with EINTR deal with it the same way we treat EAGAIN