Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | - (dtucker) [auth-pam.c defines.h] Bug #783: move __unused to defines.h and | Darren Tucker | 2004-01-08 | 3 | -5/+11 | |
| | | | | only define if not already. From des at freebsd.org. | |||||
* | - (dtucker) [acconfig.h configure.ac includes.h servconf.c session.c] | Darren Tucker | 2004-01-05 | 6 | -4/+23 | |
| | | | | Only enable KerberosGetAFSToken if Heimdal's libkafs is found. with jakob@ | |||||
* | - (dtucker) [contrib/ssh-copy-id] Bug #781: exit if ssh fails. Patch from | Darren Tucker | 2004-01-04 | 2 | -2/+6 | |
| | | | | cjwatson at debian.org. | |||||
* | - (djm) OSX/Darwin needs BIND_8_COMPAT to build getrrsetbyname. Report from | Damien Miller | 2004-01-02 | 1 | -1/+4 | |
| | | | | jakob@ | |||||
* | - (djm) OSX/Darwin put the PAM headers in a different place, detect this. | Damien Miller | 2004-01-02 | 4 | -5/+20 | |
| | | | | Report from jakob@ | |||||
* | - (djm) Remove useless DNS support configure summary message. from jakob@ | Damien Miller | 2004-01-02 | 2 | -3/+3 | |
| | ||||||
* | - (djm) OSX/Darwin needs BIND_8_COMPAT to build getrrsetbyname. Report from | Damien Miller | 2004-01-02 | 2 | -2/+7 | |
| | | | | jakob@ | |||||
* | - (dtucker) [configure.ac] Only test setresuid and setresgid if they exist. | Darren Tucker | 2003-12-31 | 2 | -19/+24 | |
| | ||||||
* | - dtucker@cvs.openbsd.org 2003/12/31 00:24:50 | Darren Tucker | 2003-12-31 | 2 | -7/+19 | |
| | | | | | | [auth2-passwd.c] Ignore password change request during password auth (which we currently don't support) and discard proposed new password. corrections/ok markus@ | |||||
* | - millert@cvs.openbsd.org 2003/12/29 16:39:50 | Darren Tucker | 2003-12-31 | 2 | -3/+6 | |
| | | | | | [sshd_config] KeepAlive has been obsoleted, use TCPKeepAlive instead; markus@ OK | |||||
* | - jakob@cvs.openbsd.org 2003/12/23 16:12:10 | Darren Tucker | 2003-12-31 | 5 | -5/+47 | |
| | | | | | [servconf.c servconf.h session.c sshd_config] implement KerberosGetAFSToken server option. ok markus@, beck@ | |||||
* | - markus@cvs.openbsd.org 2003/12/22 20:29:55 | Darren Tucker | 2003-12-31 | 2 | -2/+8 | |
| | | | | | [cipher-3des1.c] EVP_CIPHER_CTX_cleanup() for the des contexts; pruiksma@freesurf.fr | |||||
* | - djm@cvs.openbsd.org 2003/12/22 09:16:58 | Darren Tucker | 2003-12-31 | 4 | -13/+55 | |
| | | | | | | [moduli.c ssh-keygen.1 ssh-keygen.c] tidy up moduli generation debugging, add -v (verbose/debug) option to ssh-keygen; ok markus@ | |||||
* | - (dtucker) [defines.h] Bug #458: Define SIZE_T_MAX as UINT_MAX if we | Darren Tucker | 2003-12-19 | 2 | -2/+7 | |
| | | | | typedef size_t ourselves. | |||||
* | Enable commented-out "if (compat20)" test. (Should not have been committed.) | Darren Tucker | 2003-12-18 | 1 | -3/+3 | |
| | ||||||
* | - (dtucker) [auth-pam.c] Do PAM chauthtok during SSH2 keyboard-interactive | Darren Tucker | 2003-12-18 | 2 | -14/+54 | |
| | | | | | | | | | | | | authentication. Partially fixes bug #423. Feedback & ok djm@ Some background on why this is the way it is: * Solaris 8's pam_chauthtok ignores the CHANGE_EXPIRED_AUTHTOK flag, so we must call do_pam_account() to figure out if the password is expired. * AIX 5.2 does not like having pam_acct_mgmt() called twice, once from the authentication thread and once from the main shell child, so we cache the result, which must be passed from the authentication thread back to the monitor. | |||||
* | - (dtucker) [configure.ac] Don't use setre[ug]id on DG-UX, from Tom Orban. | Darren Tucker | 2003-12-18 | 2 | -2/+8 | |
| | ||||||
* | - (bal) [openbsd-compat/bsd-misc.c] unset 'signal' defined if we are | Ben Lindstrom | 2003-12-18 | 2 | -3/+5 | |
| | | | | using a real 'signal()' (Noticed by a NeXT Compile) | |||||
* | - (dtucker) [acconfig.h configure.ac uidswap.c] Bug #645: Check for | Darren Tucker | 2003-12-17 | 4 | -5/+38 | |
| | | | | | setres[ug]id() present but not implemented (eg some Linux/glibc combinations). | |||||
* | - markus@cvs.openbsd.org 2003/12/16 15:51:54 | Damien Miller | 2003-12-17 | 2 | -6/+8 | |
| | | | | | | [dh.c] use <= instead of < in dh_estimate; ok provos/hshoexer; do not return < DH_GRP_MIN | |||||
* | - markus@cvs.openbsd.org 2003/12/16 15:49:51 | Damien Miller | 2003-12-17 | 10 | -24/+117 | |
| | | | | | | | | [clientloop.c clientloop.h readconf.c readconf.h scp.1 sftp.1 ssh.1] [ssh.c ssh_config.5] application layer keep alive (ServerAliveInterval ServerAliveCountMax) for ssh(1), similar to the sshd(8) option; ok beck@; with help from jmc and dtucker@ | |||||
* | - markus@cvs.openbsd.org 2003/12/14 12:37:21 | Damien Miller | 2003-12-17 | 2 | -5/+6 | |
| | | | | | [ssh_config.5] we don't support GSS KEX; from Simon Wilkinson | |||||
* | - dtucker@cvs.openbsd.org 2003/12/09 23:45:32 | Damien Miller | 2003-12-17 | 2 | -2/+18 | |
| | | | | | [clientloop.c] Clear exit code when ssh -N is terminated with a SIGTERM. ok markus@ | |||||
* | - markus@cvs.openbsd.org 2003/12/09 21:53:37 | Damien Miller | 2003-12-17 | 12 | -76/+83 | |
| | | | | | | | [readconf.c readconf.h scp.1 servconf.c servconf.h sftp.1 ssh.1] [ssh_config.5 sshconnect.c sshd.c sshd_config.5] rename keepalive to tcpkeepalive; the old name causes too much confusion; ok djm, dtucker; with help from jmc@ | |||||
* | - markus@cvs.openbsd.org 2003/12/09 17:30:05 | Damien Miller | 2003-12-17 | 2 | -4/+9 | |
| | | | | | [ssh.c] don't modify argv for ssh -o; similar to sshd.c 1.283 | |||||
* | - markus@cvs.openbsd.org 2003/12/09 17:29:04 | Damien Miller | 2003-12-17 | 2 | -3/+9 | |
| | | | | | [sshd.c] fix -o and HUP; ok henning@ | |||||
* | 20031217 | Damien Miller | 2003-12-17 | 2 | -18/+25 | |
| | | | | | | | | | | - (djm) OpenBSD CVS Sync - markus@cvs.openbsd.org 2003/12/09 15:28:43 [serverloop.c] make ClientKeepAlive work for ssh -N, too (no login shell requested). 1) send a bogus channel request if we find a channel 2) send a bogus global request if we don't have a channel ok + test beck@ | |||||
* | - dtucker@cvs.openbsd.org 2003/12/09 13:52:55 | Darren Tucker | 2003-12-09 | 2 | -2/+15 | |
| | | | | | | [moduli.c] Prevent ssh-keygen -T from outputting moduli with a generator of 0, since they can't be used for Diffie-Hellman. Assistance and ok djm@ | |||||
* | - (dtucker) [ssh-keyscan.c] Sync RCSIDs, missed in SSH_SSFDMAX change below. | Darren Tucker | 2003-12-09 | 2 | -2/+3 | |
| | ||||||
* | - djm@cvs.openbsd.org 2003/12/07 06:34:18 | Darren Tucker | 2003-12-09 | 2 | -11/+5 | |
| | | | | | [moduli.c] remove unused debugging #define templates | |||||
* | - markus@cvs.openbsd.org 2003/12/08 11:00:47 | Darren Tucker | 2003-12-09 | 2 | -6/+10 | |
| | | | | | [kexgexc.c] print requested group size in debug; ok djm | |||||
* | - markus@cvs.openbsd.org 2003/12/02 17:01:15 | Darren Tucker | 2003-12-09 | 6 | -11/+17 | |
| | | | | | [channels.c session.c ssh-agent.c ssh.h sshd.c] use SSH_LISTEN_BACKLOG (=128) in listen(2). | |||||
* | - markus@cvs.openbsd.org 2003/12/02 12:15:10 | Darren Tucker | 2003-12-09 | 2 | -4/+15 | |
| | | | | | | | | | [progressmeter.c] improvments from andreas@: * saner speed estimate for transfers that takes less than a second by rounding the time to 1 second. * when the transfer is finished calculate the actual total speed rather than the current speed which is given during the transfer | |||||
* | - djm@cvs.openbsd.org 2003/11/26 21:44:29 | Darren Tucker | 2003-12-09 | 2 | -2/+6 | |
| | | | | | | [cipher-aes.c] fix #ifdef before #define; ok markus@ (RCS ID sync only, Portable already had this) | |||||
* | - matthieu@cvs.openbsd.org 2003/11/25 23:10:08 | Darren Tucker | 2003-12-09 | 2 | -4/+11 | |
| | | | | | [ssh-add.1] ssh-add doesn't need to be a descendant of ssh-agent. Ok markus@, jmc@. | |||||
* | [configure.ac] Bug 770. Fix --without-rpath. | Tim Rice | 2003-12-08 | 2 | -17/+26 | |
| | ||||||
* | - (djm) Annotate OpenBSD-derived files in openbsd-compat/ with original | Damien Miller | 2003-11-24 | 31 | -1/+63 | |
| | | | | source file path (in OpenBSD tree). | |||||
* | - dtucker@cvs.openbsd.org 2003/11/24 00:16:35 | Damien Miller | 2003-11-24 | 3 | -6/+8 | |
| | | | | | [ssh.1 ssh.c] Make ssh -k mean GSSAPIDelegateCredentials=no. Suggestion & ok markus@ | |||||
* | - djm@cvs.openbsd.org 2003/11/23 23:18:45 | Damien Miller | 2003-11-24 | 3 | -3/+11 | |
| | | | | | | | | | | [ssh-keygen.c] consistency PATH_MAX -> MAXPATHLEN; ok markus@ (RCS ID sync only) - djm@cvs.openbsd.org 2003/11/23 23:21:21 [scp.c] from portable: rename clashing variable limit-> limit_rate; ok markus@ (RCS ID sync only) | |||||
* | - (djm) OpenBSD CVS Sync | Damien Miller | 2003-11-24 | 3 | -6/+17 | |
| | | | | | | | - djm@cvs.openbsd.org 2003/11/23 23:17:34 [ssh-keyscan.c] from portable - use sysconf to detect fd limit; ok markus@ (tidy diff by adding SSH_SSFDMAX macro to defines.h) | |||||
* | - (djm) [canohost.c] Move IPv4inV6 mapped address normalisation to its own | Damien Miller | 2003-11-24 | 2 | -24/+34 | |
| | | | | function and call it unconditionally | |||||
* | - (djm) [packet.c] Shuffle #ifdef to reduce conditionally compiled code | Damien Miller | 2003-11-22 | 2 | -6/+4 | |
| | ||||||
* | - (djm) [sftp-int.c] Remove duplicated code from bogus sync | Damien Miller | 2003-11-22 | 2 | -2/+2 | |
| | ||||||
* | sync whitespace - no code change | Damien Miller | 2003-11-22 | 1 | -1/+0 | |
| | ||||||
* | - (djm) [scp.c] Rename limitbw -> limit_rate to match upstreamed patch | Damien Miller | 2003-11-22 | 2 | -6/+7 | |
| | ||||||
* | Minor sync w/OpenBSD | Darren Tucker | 2003-11-22 | 1 | -1/+0 | |
| | ||||||
* | - (dtucker) [auth-sia.c configure.ac] Tru64 update from cmadams at hiwaay.net. | Darren Tucker | 2003-11-22 | 3 | -6/+9 | |
| | | | | | Use permanently_set_uid for SIA, only define DISABLE_FD_PASSING when SIA is enabled, rely on SIA to check for locked accounts if enabled. ok djm@ | |||||
* | - (dtucker) [auth-passwd.c openbsd-compat/port-aix.c openbsd-compat/port-aix.h] | Darren Tucker | 2003-11-22 | 4 | -54/+68 | |
| | | | | | Move AIX specific password authentication code to port-aix.c, call authenticate() until reenter flag is clear. | |||||
* | knf in portable-code (no code change) | Damien Miller | 2003-11-22 | 1 | -1/+1 | |
| | ||||||
* | - (dtucker) [channels.c] Make AIX write limit code clearer. Suggested by djm@ | Darren Tucker | 2003-11-22 | 2 | -3/+6 | |
| |