]>
git.ipfire.org Git - thirdparty/openssh-portable.git/log
Damien Miller [Wed, 27 Jun 2001 06:52:03 +0000 (16:52 +1000)]
Bump versions in case we need to do another rel
Damien Miller [Wed, 27 Jun 2001 06:51:00 +0000 (16:51 +1000)]
- (markus) Unbreak -R forwarding for protocol 2
Damien Miller [Wed, 27 Jun 2001 06:46:02 +0000 (16:46 +1000)]
- (djm) Pull in fixes from -CURRENT:
- (djm) Reintroduce pam_session call for non-pty sessions.
- (djm) Remove redundant and incorrect test for max auth attempts in
PAM kbdint code. Based on fix from Matthew Melvin
<matthewm@webcentral.com.au>
Damien Miller [Sun, 17 Jun 2001 04:06:18 +0000 (14:06 +1000)]
doh - forgot to update version numbers
Damien Miller [Sun, 17 Jun 2001 03:40:50 +0000 (13:40 +1000)]
- (djm) Pull in small fix from -CURRENT for session.c:
typo, use pid not s->pid, mstone@cs.loyola.edu
Kevin Steves [Fri, 15 Jun 2001 02:10:41 +0000 (02:10 +0000)]
- (stevesk) don't set SA_RESTART and set SIGCHLD to SIG_DFL
around grantpt().
Ben Lindstrom [Wed, 13 Jun 2001 19:18:04 +0000 (19:18 +0000)]
- (bal) Applied X11 Cookie Patch. X11 Cookie behavior has changed to
no longer use /tmp/ssh-XXXXX/
Tim Rice [Mon, 28 May 2001 17:21:43 +0000 (10:21 -0700)]
- (tim) [conifgure.in] add setvbuf test needed for sftp-int.c
Patch by Corinna Vinschen <vinschen@redhat.com>
Ben Lindstrom [Sat, 12 May 2001 16:52:37 +0000 (16:52 +0000)]
- (bal) Patch to partial sync up contrib/solaris/ packaging software.
Patch by pete <ninjaz@webexpress.com>
Ben Lindstrom [Wed, 9 May 2001 00:39:18 +0000 (00:39 +0000)]
- (bal) Updates from the Sony NEWS-OS platform by NAKAJI Hiroyuki
<nakaji@tutrp.tut.ac.jp>
Ben Lindstrom [Tue, 8 May 2001 20:43:00 +0000 (20:43 +0000)]
- (bal) ./configure support to disable SIA on OSF1. Patch by
Chris Adams <cmadams@hiwaay.net>
Ben Lindstrom [Tue, 8 May 2001 20:34:31 +0000 (20:34 +0000)]
- (bal) UseLogin patch for Solaris/UNICOS. Patch by Wayne Davison
<wayne@blorf.net>
Ben Lindstrom [Mon, 7 May 2001 12:59:19 +0000 (12:59 +0000)]
- (bal) Fixed configure test for USE_SIA.
Damien Miller [Sun, 6 May 2001 00:55:37 +0000 (10:55 +1000)]
- (djm) Update config.guess and config.sub with latest versions (from
ftp://ftp.gnu.org/gnu/config/) to allow configure on ia64-hpux.
Suggested by Jason Mader <jason@ncac.gwu.edu>
Ben Lindstrom [Thu, 3 May 2001 23:00:39 +0000 (23:00 +0000)]
- (bal) Avoid socket file security issues in ssh-agent for Cygwin.
Patch by Egor Duda <deo@logos-m.ru>
Ben Lindstrom [Thu, 3 May 2001 22:48:03 +0000 (22:48 +0000)]
- (bal) Updated Cygwin README by Corinna Vinschen <vinschen@redhat.com>
Tim Rice [Mon, 30 Apr 2001 18:15:53 +0000 (11:15 -0700)]
- (tim) [contrib/caldera/openssh.spec] add Requires line for Caldera 3.1
Damien Miller [Mon, 30 Apr 2001 03:51:26 +0000 (13:51 +1000)]
- (djm) Add .cvsignore files, suggested by Wayne Davison <wayne@blorf.net>
Tim Rice [Mon, 30 Apr 2001 01:04:21 +0000 (18:04 -0700)]
- (tim) New version of mdoc2man.pl from Mark D. Roth <roth+openssh@feep.net>
Damien Miller [Sun, 29 Apr 2001 12:27:05 +0000 (22:27 +1000)]
Update a few things
Damien Miller [Sun, 29 Apr 2001 12:26:54 +0000 (22:26 +1000)]
Update to Ricardo Cerqueira's <rmcc@novis.pt> latest version.
Damien Miller [Sun, 29 Apr 2001 12:16:26 +0000 (22:16 +1000)]
Add some description to the SecurID patch
Damien Miller [Sun, 29 Apr 2001 12:04:15 +0000 (22:04 +1000)]
- (djm) Release 2.9p1
Damien Miller [Sun, 29 Apr 2001 12:03:41 +0000 (22:03 +1000)]
- (djm) Add Theo Schlossnagle's <jesus@omniti.com> SecurID patch to contrib/
Ben Lindstrom [Sat, 28 Apr 2001 17:31:23 +0000 (17:31 +0000)]
test of branch.. by delete some worthless space way down in the file.
Ben Lindstrom [Sat, 28 Apr 2001 16:32:10 +0000 (16:32 +0000)]
- (bal) Updated INSTALL. PCRE moved to a new place.
Tim Rice [Fri, 27 Apr 2001 05:50:48 +0000 (22:50 -0700)]
- (tim) update contrib/caldera files with what Caldera is using.
<sps@caldera.de>
Ben Lindstrom [Fri, 27 Apr 2001 02:15:00 +0000 (02:15 +0000)]
- (bal) version.h synced, RPM specs updated for 2.9
Ben Lindstrom [Fri, 27 Apr 2001 02:10:15 +0000 (02:10 +0000)]
- (bal) Cygwin lacks setgroups() API. Patch by Corinna Vinschen
<vinschen@redhat.com>
Ben Lindstrom [Fri, 27 Apr 2001 00:46:17 +0000 (00:46 +0000)]
- (bal) Add /etc/sysconfig/sshd support to redhat's sshd.init. Patch by
Pekka Savola <pekkas@netcore.fi>
Ben Lindstrom [Fri, 27 Apr 2001 00:34:44 +0000 (00:34 +0000)]
- (bal) arpa/nameser.h does not exist on Cygwin. Patch by Corinna
Vinschen <vinschen@redhat.com>
Ben Lindstrom [Fri, 27 Apr 2001 00:31:07 +0000 (00:31 +0000)]
- (bal) Build manpages and config files once unless changed. Patch by
Carson Gaspar <carson@taltos.org>
Ben Lindstrom [Thu, 26 Apr 2001 23:03:37 +0000 (23:03 +0000)]
- (bal) Fixed uidswap.c so it should work on non-posix complient systems.
patch based on 2.5.2 version by djm.
Tim Rice [Thu, 26 Apr 2001 04:40:28 +0000 (21:40 -0700)]
- tim@mindrot.org 2001/04/25 21:38:01 [configure.in]
man page detection fixes for SCO
Damien Miller [Wed, 25 Apr 2001 12:50:18 +0000 (22:50 +1000)]
- (djm) Include crypt.h if available in auth-passwd.c
Damien Miller [Wed, 25 Apr 2001 12:44:14 +0000 (22:44 +1000)]
- (djm) Add new server configuration directive 'PAMAuthenticationViaKbdInt'
(default: off), implies KbdInteractiveAuthentication. Suggestion from
markus@
Ben Lindstrom [Wed, 25 Apr 2001 06:27:11 +0000 (06:27 +0000)]
- (bal) Whitespace resync w/ OpenBSD for uidswap.c
Ben Lindstrom [Tue, 24 Apr 2001 16:59:28 +0000 (16:59 +0000)]
- markus@cvs.openbsd.org 2001/04/23 22:14:13
[ssh-keygen.c]
remove debug
Ben Lindstrom [Tue, 24 Apr 2001 16:56:58 +0000 (16:56 +0000)]
- markus@cvs.openbsd.org 2001/04/23 21:57:07
[ssh-keygen.1 ssh-keygen.c]
allow public key for -e, too
Ben Lindstrom [Tue, 24 Apr 2001 00:03:58 +0000 (00:03 +0000)]
- (bal) Fixed contrib/postinstall.in. Patch by wsanders@wsanders.net
Ben Lindstrom [Mon, 23 Apr 2001 22:39:42 +0000 (22:39 +0000)]
- (bal) sys/queue.h is bogus for NCR platform. Patch by Daniel Carroll
<dan@mesastate.edu>
Kevin Steves [Mon, 23 Apr 2001 18:38:37 +0000 (18:38 +0000)]
- (stevesk) auth-pam.c: use PERMIT_NO_PASSWD
Kevin Steves [Mon, 23 Apr 2001 17:55:26 +0000 (17:55 +0000)]
start_pam() not pam_start()
Kevin Steves [Mon, 23 Apr 2001 17:28:28 +0000 (17:28 +0000)]
- (stevesk) pam_start() doesn't use DNS now for sshd -u0.
Ben Lindstrom [Mon, 23 Apr 2001 13:02:16 +0000 (13:02 +0000)]
- markus@cvs.openbsd.org 2001/04/22 23:58:36
[ssh-keygen.1 ssh.1 sshd.8]
document hostbased and other cleanup
Ben Lindstrom [Sun, 22 Apr 2001 17:19:46 +0000 (17:19 +0000)]
- markus@cvs.openbsd.org 2001/04/22 13:41:02
[ssh-keygen.1 ssh-keygen.c]
style, noted by stevesk; sort flags in usage
Ben Lindstrom [Sun, 22 Apr 2001 17:17:46 +0000 (17:17 +0000)]
- markus@cvs.openbsd.org 2001/04/22 13:32:27
[sftp-server.8 sftp.1 ssh.1 sshd.8]
xref draft-ietf-secsh-*
Ben Lindstrom [Sun, 22 Apr 2001 17:15:46 +0000 (17:15 +0000)]
- markus@cvs.openbsd.org 2001/04/22 13:25:37
[ssh-keygen.1 ssh-keygen.c]
rename arguments -x -> -e (export key), -X -> -i (import key)
xref draft-ietf-secsh-publickeyfile-01.txt
Ben Lindstrom [Sun, 22 Apr 2001 17:13:20 +0000 (17:13 +0000)]
- markus@cvs.openbsd.org 2001/04/22 12:34:05
[scp.c]
scp > 2GB; niles@scyld.com; ok deraadt@, djm@
Ben Lindstrom [Sun, 22 Apr 2001 17:11:56 +0000 (17:11 +0000)]
- djm@cvs.openbsd.org 2001/04/22 08:13:30
[ssh.1]
typos spotted by stevesk@; ok deraadt@
Ben Lindstrom [Sun, 22 Apr 2001 17:10:11 +0000 (17:10 +0000)]
- mouring@cvs.openbsd.org 2001/04/21 00:55:57
[sftp.1]
Spelling
Ben Lindstrom [Sun, 22 Apr 2001 17:08:00 +0000 (17:08 +0000)]
- markus@cvs.openbsd.org 2001/04/20 16:32:22
[uidswap.c]
set non-privileged gid before uid; tholo@ and deraadt@
Tim Rice [Sat, 21 Apr 2001 21:31:52 +0000 (14:31 -0700)]
fix perl test, fix nroff test, fix Makefile to build outside source tree
Kevin Steves [Fri, 20 Apr 2001 20:56:21 +0000 (20:56 +0000)]
- (stevesk) document PAM service name change in INSTALL
Kevin Steves [Fri, 20 Apr 2001 17:43:47 +0000 (17:43 +0000)]
- (stevesk) set the default PAM service name to __progname instead
of the hard-coded value "sshd"; from Mark D. Roth <roth@feep.net>
Damien Miller [Fri, 20 Apr 2001 13:19:37 +0000 (23:19 +1000)]
- Update RPM spec files for CVS version.h
Ben Lindstrom [Fri, 20 Apr 2001 12:50:51 +0000 (12:50 +0000)]
- djm@cvs.openbsd.org 2001/04/20 07:17:51
[clientloop.c ssh.1]
Split out and improve escape character documentation, mention ~R in
~? help text; ok markus@
Ben Lindstrom [Fri, 20 Apr 2001 04:59:22 +0000 (04:59 +0000)]
- (bal) Put scp-common.h back into scp.c (it exists in the upstream
tree) pointed out by Tom Holroyd <tomh@po.crl.go.jp>
Ben Lindstrom [Thu, 19 Apr 2001 20:50:07 +0000 (20:50 +0000)]
- markus@cvs.openbsd.org 2001/04/19 00:05:11
[auth2.c]
use local variable, no function call needed.
(btw, hostbased works now with ssh.com >= 2.0.13)
Ben Lindstrom [Thu, 19 Apr 2001 20:47:10 +0000 (20:47 +0000)]
- markus@cvs.openbsd.org 2001/04/18 23:44:51
[authfile.c]
error->debug; noted by fries@
Ben Lindstrom [Thu, 19 Apr 2001 20:40:45 +0000 (20:40 +0000)]
- markus@cvs.openbsd.org 2001/04/18 23:43:26
[auth2.c compat.c sshconnect2.c]
more ssh v2 hostbased-auth interop: ssh.com >= 2.1.0 works now
(however the 2.1.0 server seems to work only if debug is enabled...)
Ben Lindstrom [Thu, 19 Apr 2001 20:38:06 +0000 (20:38 +0000)]
- markus@cvs.openbsd.org 2001/04/18 22:48:26
[auth2.c]
no longer const
Ben Lindstrom [Thu, 19 Apr 2001 20:35:40 +0000 (20:35 +0000)]
- markus@cvs.openbsd.org 2001/04/18 22:03:45
[auth2.c sshconnect2.c]
use FDQN with trailing dot in the hostbased auth packets, ok deraadt@
Ben Lindstrom [Thu, 19 Apr 2001 20:33:07 +0000 (20:33 +0000)]
- markus@cvs.openbsd.org 2001/04/18 21:57:42
[readpass.c ssh-add.c]
call askpass from ssh, too, based on work by roth@feep.net, ok deraadt
Ben Lindstrom [Thu, 19 Apr 2001 20:31:02 +0000 (20:31 +0000)]
- ian@cvs.openbsd.org 2001/04/18 16:21:05
[ssh-keyscan.1]
Fix typo reported in PR/1779
Ben Lindstrom [Wed, 18 Apr 2001 18:04:21 +0000 (18:04 +0000)]
- (bal) Makfile day... Cleaned up multiple mantype support (Patch by
Mark D. Roth <roth+openssh@feep.net>), and fixed PIDDIR support.
Ben Lindstrom [Wed, 18 Apr 2001 15:46:01 +0000 (15:46 +0000)]
- (bal) renabled 'catman-do:' and fixed it. So now catman pages should
be working again.
Ben Lindstrom [Wed, 18 Apr 2001 15:32:44 +0000 (15:32 +0000)]
- markus@cvs.openbsd.org 2001/04/18 14:15:00
[canohost.c]
debug->debug3
Ben Lindstrom [Wed, 18 Apr 2001 15:29:33 +0000 (15:29 +0000)]
- markus@cvs.openbsd.org 2001/04/17 19:34:25
[session.c]
move auth_approval to do_authenticated().
do_child(): nuke hostkeys from memory
don't source .ssh/rc for subsystems.
Ben Lindstrom [Tue, 17 Apr 2001 18:14:34 +0000 (18:14 +0000)]
- markus@cvs.openbsd.org 2001/04/17 12:55:04
[channels.c ssh.c]
undo socks5 and https support since they are not really used and
only bloat ssh. remove -D from usage(), since '-D' is experimental.
Ben Lindstrom [Tue, 17 Apr 2001 18:11:36 +0000 (18:11 +0000)]
- markus@cvs.openbsd.org 2001/04/17 10:53:26
[key.c key.h readconf.c readconf.h ssh.1 sshconnect2.c]
add HostKeyAlgorithms; based on patch from res@shore.net; ok provos@
Ben Lindstrom [Tue, 17 Apr 2001 18:09:42 +0000 (18:09 +0000)]
- markus@cvs.openbsd.org 2001/04/17 09:52:48
[clientloop.c]
handle EINTR/EAGAIN on read; ok deraadt@
Ben Lindstrom [Tue, 17 Apr 2001 18:08:15 +0000 (18:08 +0000)]
- markus@cvs.openbsd.org 2001/04/17 08:14:01
[sshconnect1.c]
check for key!=NULL, thanks to costa
Ben Lindstrom [Tue, 17 Apr 2001 18:06:14 +0000 (18:06 +0000)]
- deraadt@cvs.openbsd.org 2001/04/16 08:26:04
[key.c]
better safe than sorry in later mods; yongari@kt-is.co.kr
Ben Lindstrom [Tue, 17 Apr 2001 17:58:55 +0000 (17:58 +0000)]
Spelling.
Ben Lindstrom [Tue, 17 Apr 2001 17:57:09 +0000 (17:57 +0000)]
- (bal) Add perl5 check for HP/UX, Removed GNUness from Makefile.in
and temporary commneted out catman-do: since it's broken. Patches
for the first two by Lutz Jaenicke <Lutz.Jaenicke@aet.TU-Cottbus.DE>
Damien Miller [Mon, 16 Apr 2001 08:37:05 +0000 (18:37 +1000)]
- Fix OSF SIA support displaying too much information for quiet
logins and logins where access was denied by SIA. Patch from Chris Adams
<cmadams@hiwaay.net>
Damien Miller [Mon, 16 Apr 2001 08:36:38 +0000 (18:36 +1000)]
doh - missed these in sync
Damien Miller [Mon, 16 Apr 2001 08:29:15 +0000 (18:29 +1000)]
- djm@cvs.openbsd.org 2001/04/16 08:19:31
[session.c]
Split motd and hushlogin checks into seperate functions, helps for
portable. From Chris Adams <cmadams@hiwaay.net>; ok markus@
Damien Miller [Mon, 16 Apr 2001 08:27:07 +0000 (18:27 +1000)]
- deraadt@cvs.openbsd.org 2001/04/16 08:05:34
[xmalloc.c]
xrealloc dealing with ptr == nULL; mouring
Damien Miller [Mon, 16 Apr 2001 08:26:41 +0000 (18:26 +1000)]
- (djm) OpenBSD CVS Sync
- mouring@cvs.openbsd.org 2001/04/16 02:31:44
[scp.c sftp.c]
IPv6 support for sftp (which I bungled in my last patch) which is
borrowed from scp.c. Thanks to Markus@ for pointing it out.
Ben Lindstrom [Mon, 16 Apr 2001 02:13:26 +0000 (02:13 +0000)]
- stevesk@cvs.openbsd.org 2001/04/15 21:28:35
[readconf.c servconf.c]
use fatal() or error() vs. fprintf(); ok markus@
Ben Lindstrom [Mon, 16 Apr 2001 02:11:52 +0000 (02:11 +0000)]
- (bal) CVS ID fix up and slight manpage fix from OpenBSD tree.
Ben Lindstrom [Mon, 16 Apr 2001 02:03:49 +0000 (02:03 +0000)]
- stevesk@cvs.openbsd.org 2001/04/15 19:41:21
[sshd.8]
some ClientAlive cleanup; ok markus@
Ben Lindstrom [Mon, 16 Apr 2001 02:01:25 +0000 (02:01 +0000)]
- markus@cvs.openbsd.org 2001/04/15 17:16:00
[clientloop.c]
set stdin/out/err to nonblocking in SSH proto 1, too. suggested by ho@
should fix some of the blocking problems for rsync over SSH-1
Ben Lindstrom [Mon, 16 Apr 2001 02:00:02 +0000 (02:00 +0000)]
- markus@cvs.openbsd.org 2001/04/15 16:58:03
[authfile.c ssh-keygen.c sshd.c]
don't use errno for key_{load,save}_private; discussion w/ solar@openwall
Damien Miller [Mon, 16 Apr 2001 00:41:46 +0000 (10:41 +1000)]
- (djm) Convert mandoc manpages to man automatically. Patch from Mark D.
Roth <roth+openssh@feep.net>
Ben Lindstrom [Sun, 15 Apr 2001 14:27:16 +0000 (14:27 +0000)]
- markus@cvs.openbsd.org 2001/04/15 08:43:47
[dh.c sftp-glob.c sftp-glob.h sftp-int.c sshconnect2.c sshd.c]
some unused variable and typos; from tomh@po.crl.go.jp
Ben Lindstrom [Sun, 15 Apr 2001 14:25:12 +0000 (14:25 +0000)]
- OpenBSD CVS Sync
- stevesk@cvs.openbsd.org 2001/04/15 01:35:22
[ttymodes.c]
fix comments
Ben Lindstrom [Sat, 14 Apr 2001 23:21:50 +0000 (23:21 +0000)]
- Missed sshtty.[ch] in Sync.
Ben Lindstrom [Sat, 14 Apr 2001 23:14:22 +0000 (23:14 +0000)]
- stevesk@cvs.openbsd.org 2001/04/14 17:04:42
[scp.c]
'T' handling rcp/scp sync; ok markus@
Ben Lindstrom [Sat, 14 Apr 2001 23:13:02 +0000 (23:13 +0000)]
- stevesk@cvs.openbsd.org 2001/04/14 16:33:20
[clientloop.c packet.h session.c ssh.c ttymodes.c ttymodes.h]
protocol 2 tty modes support; ok markus@
Ben Lindstrom [Sat, 14 Apr 2001 23:10:09 +0000 (23:10 +0000)]
- markus@cvs.openbsd.org 2001/04/14 16:27:57
[ssh-add.c]
use clear_pass instead of xfree()
Ben Lindstrom [Sat, 14 Apr 2001 23:08:36 +0000 (23:08 +0000)]
- markus@cvs.openbsd.org 2001/04/14 16:17:14
[channels.c]
remove some channels that are not appropriate for keepalive.
Ben Lindstrom [Sat, 14 Apr 2001 23:07:16 +0000 (23:07 +0000)]
- deraadt@cvs.openbsd.org 2001/04/14 04:31:01
[ssh-add.c]
do not double free
Ben Lindstrom [Fri, 13 Apr 2001 23:28:01 +0000 (23:28 +0000)]
- beck@cvs.openbsd.org 2001/04/13 22:46:54
[channels.c channels.h servconf.c servconf.h serverloop.c sshd.8]
Add options ClientAliveInterval and ClientAliveCountMax to sshd.
This gives the ability to do a "keepalive" via the encrypted channel
which can't be spoofed (unlike TCP keepalives). Useful for when you want
to use ssh connections to authenticate people for something, and know
relatively quickly when they are no longer authenticated. Disabled
by default (of course). ok markus@
Damien Miller [Fri, 13 Apr 2001 14:28:42 +0000 (00:28 +1000)]
- Cygwin sftp/sftp-server binary mode patch from Corinna Vinschen
<vinschen@redhat.com>
Damien Miller [Fri, 13 Apr 2001 14:22:33 +0000 (00:22 +1000)]
- Sync with OpenBSD glob.c, strlcat.c and vis.c changes
Ben Lindstrom [Fri, 13 Apr 2001 04:44:37 +0000 (04:44 +0000)]
- stevesk@cvs.openbsd.org 2001/04/13 01:26:17
[ssh.c]
missing \n in error message
Ben Lindstrom [Fri, 13 Apr 2001 00:00:14 +0000 (00:00 +0000)]
- mouring@cvs.openbsd.org 2001/04/12 23:17:54
[sftp-int.c sftp-int.h sftp.1 sftp.c]
Add support for:
sftp [user@]host[:file [file]] - Fetch remote file(s)
sftp [user@]host[:dir[/]] - Start in remote dir/
OK deraadt@