]> andersk Git - openssh.git/blame - ChangeLog
- (djm) Bug #588 - Add scard-opensc.o back to Makefile.in
[openssh.git] / ChangeLog
CommitLineData
02e2a074 120030605
2 - (djm) Support AI_NUMERICHOST in fake-getaddrinfo.c. Needed for recent
3 canohost.c changes.
688eed4a 4 - (djm) Implement paranoid priv dropping checks, based on:
5 "SetUID demystified" - Hao Chen, David Wagner and Drew Dean
6 Proceedings of USENIX Security Symposium 2002
d6bd2b5a 7 - (djm) Don't use xmalloc() or pull in toplevel headers in fake-* code
52d58495 8 - (djm) Merge all the openbsd/fake-* into fake-rfc2553.[ch]
57c917f8 9 - (djm) Bug #588 - Add scard-opensc.o back to Makefile.in
10 Patch from larsch@trustcenter.de
02e2a074 11
b08a39ff 1220030604
d60e487c 13 - (djm) Bug #573 - Remove unneeded Krb headers and compat goop. Patch from
14 simon@sxw.org.uk (Also matches a change in OpenBSD a while ago)
8acdec60 15 - (djm) Bug #577 - wrong flag in scard-opensc.c sc_private_decrypt.
11f1e60e 16 Patch from larsch@trustcenter.de; ok markus@
17 - (djm) Bug #584: scard-opensc.c doesn't work without PIN. Patch from
18 larsch@trustcenter.de; ok markus@
d453a600 19 - (djm) OpenBSD CVS Sync
20 - djm@cvs.openbsd.org 2003/06/04 08:25:18
21 [sshconnect.c]
22 disable challenge/response and keyboard-interactive auth methods
23 upon hostkey mismatch. based on patch from fcusack AT fcusack.com.
24 bz #580; ok markus@
ee50371d 25 - djm@cvs.openbsd.org 2003/06/04 10:23:48
26 [sshd.c]
27 remove duplicated group-dropping code; ok markus@
b08a39ff 28 - djm@cvs.openbsd.org 2003/06/04 12:03:59
29 [serverloop.c]
30 remove bitrotten commet; ok markus@
cf3248b8 31 - djm@cvs.openbsd.org 2003/06/04 12:18:49
32 [scp.c]
33 ansify; ok markus@
0f764b2f 34 - djm@cvs.openbsd.org 2003/06/04 12:40:39
35 [scp.c]
36 kill ssh process upon receipt of signal, bz #241.
37 based on patch from esb AT hawaii.edu; ok markus@
1b558925 38 - djm@cvs.openbsd.org 2003/06/04 12:41:22
39 [sftp.c]
40 kill ssh process on receipt of signal; ok markus@
fba33e81 41 - (djm) Update to fix of bug #584: lock card before return.
42 From larsch@trustcenter.de
8d9bb5dd 43 - (djm) Always use mysignal() for SIGALRM
d60e487c 44
3a2b2b44 4520030603
46 - (djm) Replace setproctitle replacement with code derived from
47 UCB sendmail
c5a7d788 48 - (djm) OpenBSD CVS Sync
49 - markus@cvs.openbsd.org 2003/06/02 09:17:34
50 [auth2-hostbased.c auth.c auth-options.c auth-rhosts.c auth-rh-rsa.c]
51 [canohost.c monitor.c servconf.c servconf.h session.c sshd_config]
52 [sshd_config.5]
53 deprecate VerifyReverseMapping since it's dangerous if combined
54 with IP based access control as noted by Mike Harding; replace with
55 a UseDNS option, UseDNS is on by default and includes the
56 VerifyReverseMapping check; with itojun@, provos@, jakob@ and deraadt@
57 ok deraadt@, djm@
d981089c 58 - millert@cvs.openbsd.org 2003/06/03 02:56:16
59 [scp.c]
60 Remove the advertising clause in the UCB license which Berkeley
61 rescinded 22 July 1999. Proofed by myself and Theo.
c5a7d788 62 - (djm) Fix portable-specific uses of verify_reverse_mapping too
3e67f7df 63 - (djm) Sync openbsd-compat with OpenBSD CVS.
484d59c7 64 - No more 4-term BSD licenses in linked code
5d8ca8c7 65 - (dtucker) [port-aix.c bsd-cray.c] Fix uses of verify_reverse_mapping.
3a2b2b44 66
aff561f9 6720030602
68 - (djm) Fix segv from bad reordering in auth-pam.c
416c732d 69 - (djm) Always use saved_argv in sshd.c as compat_init_setproctitle may
70 clobber
1b7342ab 71 - (tim) openbsd-compat/xmmap.[ch] License clarifications. Add missing
72 CVS ID.
8862e142 73 - (djm) Remove "noip6" option from RedHat spec file. This may now be
74 set at runtime using AddressFamily option.
58ba3cb7 75 - (djm) Fix use of macro before #define in cipher-aes.c
382fe2fa 76 - (djm) Sync license on openbsd-compat/bindresvport.c with OpenBSD CVS
b0545fe6 77 - (djm) OpenBSD CVS Sync
78 - djm@cvs.openbsd.org 2003/05/26 12:54:40
79 [sshconnect.c]
80 fix format strings; ok markus@
fa5120a0 81 - deraadt@cvs.openbsd.org 2003/05/29 16:58:45
82 [sshd.c uidswap.c]
83 seteuid and setegid; markus ok
0f92946c 84 - jakob@cvs.openbsd.org 2003/06/02 08:31:10
85 [ssh_config.5]
86 VerifyHostKeyDNS is v2 only. ok markus@
aff561f9 87
4f178be8 8820030530
89 - (dtucker) Add missing semicolon in md5crypt.c, patch from openssh at
90 roumenpetrov.info
eabb99c6 91 - (dtucker) Define SSHD_ACQUIRES_CTTY for NCR MP-RAS and Reliant Unix.
4f178be8 92
4881aebb 9320030526
94 - (djm) Avoid auth2-chall.c warning when compiling without
95 PAM, BSD_AUTH and SKEY
96
5b0fe364 9720030525
98- (djm) OpenBSD CVS Sync
99 - djm@cvs.openbsd.org 2003/05/24 09:02:22
100 [log.c]
101 pass logged data through strnvis; ok markus
b9ed513a 102 - djm@cvs.openbsd.org 2003/05/24 09:30:40
103 [authfile.c monitor.c sftp-common.c sshpty.c]
104 cast some types for printing; ok markus@
5b0fe364 105
44c78996 10620030524
107 - (dtucker) Correct --osfsia in INSTALL. Patch by skeleten at shillest.net
108
d83ebe4a 10920030523
110 - (djm) Use VIS_SAFE on logged strings rather than default strnvis
111 encoding (which encodes many more characters)
bd47824b 112 - OpenBSD CVS Sync
113 - jmc@cvs.openbsd.org 2003/05/20 12:03:35
114 [sftp.1]
115 - new sentence, new line
116 - added .Xr's
117 - typos
118 ok djm@
3cbc677d 119 - jmc@cvs.openbsd.org 2003/05/20 12:09:31
120 [ssh.1 ssh_config.5 sshd.8 sshd_config.5 ssh-keygen.1]
121 new sentence, new line
da54f5be 122 - djm@cvs.openbsd.org 2003/05/23 08:29:30
123 [sshconnect.c]
124 fix leak; ok markus@
d83ebe4a 125
c453493f 12620030520
127 - (djm) OpenBSD CVS Sync
128 - deraadt@cvs.openbsd.org 2003/05/18 23:22:01
129 [log.c]
130 use syslog_r() in a signal handler called place; markus ok
79d4fc55 131 - (djm) Configure logic to detect syslog_r and friends
c453493f 132
acb50584 13320030519
134 - (djm) Sync auth-pam.h with what we actually implement
135
13620030518
5ff453c0 137 - (djm) Return of the dreaded PAM_TTY_KLUDGE, which went missing in
138 recent merge
f811e52a 139 - (djm) OpenBSD CVS Sync
140 - djm@cvs.openbsd.org 2003/05/16 03:27:12
141 [readconf.c ssh_config ssh_config.5 ssh-keysign.c]
142 add AddressFamily option to ssh_config (like -4, -6 on commandline).
143 Portable bug #534; ok markus@
013b1214 144 - itojun@cvs.openbsd.org 2003/05/17 03:25:58
145 [auth-rhosts.c]
146 just in case, put numbers to sscanf %s arg.
25b66522 147 - markus@cvs.openbsd.org 2003/05/17 04:27:52
148 [cipher.c cipher-ctr.c myproposal.h]
149 experimental support for aes-ctr modes from
150 http://www.ietf.org/internet-drafts/draft-ietf-secsh-newmodes-00.txt
151 ok djm@
25351757 152 - (djm) Remove IPv4 by default hack now that we can specify AF in config
3bf784bc 153 - (djm) Tidy and trim TODO
bffa6723 154 - (djm) Sync openbsd-compat/ with OpenBSD CVS head
9901cb37 155 - (djm) Big KNF on openbsd-compat/
f1da2b8b 156 - (djm) KNF on md5crypt.[ch]
157 - (djm) KNF on auth-sia.[ch]
5ff453c0 158
f123055b 15920030517
160 - (bal) strcat -> strlcat on openbsd-compat/realpath.c (rev 1.8 OpenBSD)
161
c936c243 16220030516
163 - (djm) OpenBSD CVS Sync
164 - djm@cvs.openbsd.org 2003/05/15 13:52:10
165 [ssh.c]
166 Make "ssh -V" print the OpenSSL version in a human readable form. Patch
167 from Craig Leres (mindrot at ee.lbl.gov); ok markus@
a2144546 168 - jakob@cvs.openbsd.org 2003/05/15 14:02:47
169 [readconf.c servconf.c]
170 warn for unsupported config option. ok markus@
5bdfde81 171 - markus@cvs.openbsd.org 2003/05/15 14:09:21
172 [auth2-krb5.c]
173 fix 64bit issue; report itojun@
09ab3296 174 - djm@cvs.openbsd.org 2003/05/15 14:55:25
175 [readconf.c readconf.h ssh_config ssh_config.5 sshconnect.c]
176 add a ConnectTimeout option to ssh, based on patch from
177 Jean-Charles Longuet (jclonguet at free.fr); portable #207 ok markus@
b06b11ad 178 - (djm) Add warning for UsePAM when built without PAM support
7be625e1 179 - (djm) A few type mismatch fixes from Bug #565
0eb6370a 180 - (djm) Guard free_pam_environment against NULL argument. Works around
181 HP/UX PAM problems debugged by dtucker
c936c243 182
7efc7f57 18320030515
184 - (djm) OpenBSD CVS Sync
185 - jmc@cvs.openbsd.org 2003/05/14 13:11:56
186 [ssh-agent.1]
187 setup -> set up;
188 from wiz@netbsd
21289cd0 189 - jakob@cvs.openbsd.org 2003/05/14 18:16:20
190 [key.c key.h readconf.c readconf.h ssh_config.5 sshconnect.c]
191 [dns.c dns.h README.dns ssh-keygen.1 ssh-keygen.c]
192 add experimental support for verifying hos keys using DNS as described
193 in draft-ietf-secsh-dns-xx.txt. more information in README.dns.
194 ok markus@ and henning@
16a79097 195 - markus@cvs.openbsd.org 2003/05/14 22:24:42
196 [clientloop.c session.c ssh.1]
197 allow to send a BREAK to the remote system; ok various
b8c2031b 198 - markus@cvs.openbsd.org 2003/05/15 00:28:28
199 [sshconnect2.c]
200 cleanup unregister of per-method packet handlers; ok djm@
d0ec7f42 201 - jakob@cvs.openbsd.org 2003/05/15 01:48:10
202 [readconf.c readconf.h servconf.c servconf.h]
203 always parse kerberos options. ok djm@ markus@
b414a17b 204 - jakob@cvs.openbsd.org 2003/05/15 02:27:15
205 [dns.c]
206 add missing freerrset
3b6e3da9 207 - markus@cvs.openbsd.org 2003/05/15 03:08:29
208 [cipher.c cipher-bf1.c cipher-aes.c cipher-3des1.c]
209 split out custom EVP ciphers
02159d9b 210 - djm@cvs.openbsd.org 2003/05/15 03:10:52
211 [ssh-keygen.c]
212 avoid warning; ok jakob@
4a26f5c5 213 - mouring@cvs.openbsd.org 2003/05/15 03:39:07
214 [sftp-int.c]
215 Make put/get (globed and nonglobed) code more consistant. OK djm@
c44f10c6 216 - mouring@cvs.openbsd.org 2003/05/15 03:43:59
dc69f53c 217 [sftp-int.c sftp.c]
c44f10c6 218 Teach ls how to display multiple column display and allow users
219 to return to single column format via 'ls -1'. OK @djm
1457e7ff 220 - jakob@cvs.openbsd.org 2003/05/15 04:08:44
221 [readconf.c servconf.c]
222 disable kerberos when not supported. ok markus@
861f0365 223 - markus@cvs.openbsd.org 2003/05/15 04:08:41
224 [ssh.1]
225 ~B is ssh2 only
d0ec7f42 226 - (djm) Always parse UsePAM
3e05e934 227 - (djm) Configure glue for DNS support (code doesn't work in portable yet)
4460d509 228 - (djm) Import getrrsetbyname() function from OpenBSD libc (for DNS support)
86ee6794 229 - (djm) Tidy Makefile clean targets
2636769c 230 - (djm) Adapt README.dns for portable
2d2e4a34 231 - (djm) Avoid uuencode.c warnings
1457e7ff 232 - (djm) Enable UsePAM when built --with-pam
67467c30 233 - (djm) Only build getrrsetbyname replacement when using --with-dns
f420d2ba 234 - (djm) Bug #529: sshd doesn't work correctly after SIGHUP (copy argv
235 correctly)
3c49ef10 236 - (djm) Bug #444: Wrong paths after reconfigure
321735c7 237 - (dtucker) HP-UX needs to include <sys/strtio.h> for TIOCSBRK
f420d2ba 238
dd3ebb5a 23920030514
240 - (djm) Bug #117: Don't lie to PAM about username
0608f8a7 241 - (djm) RCSID sync w/ OpenBSD
204fde99 242 - (djm) OpenBSD CVS Sync
243 - djm@cvs.openbsd.org 2003/04/09 12:00:37
244 [readconf.c]
245 strip trailing whitespace from config lines before parsing.
246 Fixes bz 528; ok markus@
18ae3c67 247 - markus@cvs.openbsd.org 2003/04/12 10:13:57
248 [cipher.c]
249 hide cipher details; ok djm@
45c42d58 250 - markus@cvs.openbsd.org 2003/04/12 10:15:36
251 [misc.c]
252 debug->debug2
c825cd79 253 - naddy@cvs.openbsd.org 2003/04/12 11:40:15
254 [ssh.1]
255 document -V switch, fix wording; ok markus@
3e131a6d 256 - markus@cvs.openbsd.org 2003/04/14 14:17:50
257 [channels.c sshconnect.c sshd.c ssh-keyscan.c]
258 avoid hardcoded SOCK_xx; with itojun@; should allow ssh over SCTP
927e9f8b 259 - mouring@cvs.openbsd.org 2003/04/14 21:31:27
260 [sftp-int.c]
261 Missing globfree(&g) in process_put() spotted by Vince Brimhall
262 <VBrimhall@novell.com>. ok@ Theo
263 - markus@cvs.openbsd.org 2003/04/16 14:35:27
264 [auth.h]
265 document struct Authctxt; with solar
b9e5aff6 266 - deraadt@cvs.openbsd.org 2003/04/26 04:29:49
267 [ssh-keyscan.c]
268 -t in usage(); rogier@quaak.org
9a26a6e2 269 - mouring@cvs.openbsd.org 2003/04/30 01:16:20
270 [sshd.8 sshd_config.5]
271 Escape ?, * and ! in .Ql for nroff compatibility. OpenSSH Portable
272 Bug #550 and * escaping suggested by jmc@.
09dc8896 273 - david@cvs.openbsd.org 2003/04/30 20:41:07
274 [sshd.8]
275 fix invalid .Pf macro usage introduced in previous commit
276 ok jmc@ mouring@
3566c73c 277 - markus@cvs.openbsd.org 2003/05/11 16:56:48
278 [authfile.c ssh-keygen.c]
279 change key_load_public to try to read a public from:
280 rsa1 private or rsa1 public and ssh2 keys.
281 this makes ssh-keygen -e fail for ssh1 keys more gracefully
282 for example; report from itojun (netbsd pr 20550).
0d942eff 283 - markus@cvs.openbsd.org 2003/05/11 20:30:25
284 [channels.c clientloop.c serverloop.c session.c ssh.c]
285 make channel_new() strdup the 'remote_name' (not the caller); ok theo
43348518 286 - markus@cvs.openbsd.org 2003/05/12 16:55:37
287 [sshconnect2.c]
288 for pubkey authentication try the user keys in the following order:
289 1. agent keys that are found in the config file
290 2. other agent keys
291 3. keys that are only listed in the config file
292 this helps when an agent has many keys, where the server might
293 close the connection before the correct key is used. report & ok pb@
dc109cfe 294 - markus@cvs.openbsd.org 2003/05/12 18:35:18
295 [ssh-keyscan.1]
296 typo: DSA keys are of type ssh-dss; Brian Poole
81466908 297 - markus@cvs.openbsd.org 2003/05/14 00:52:59
298 [ssh2.h]
299 ranges for per auth method messages
300 - djm@cvs.openbsd.org 2003/05/14 01:00:44
301 [sftp.1]
302 emphasise the batchmode functionality and make reference to pubkey auth,
303 both of which are FAQs; ok markus@
802e01b8 304 - markus@cvs.openbsd.org 2003/05/14 02:15:47
305 [auth2.c monitor.c sshconnect2.c auth2-krb5.c]
306 implement kerberos over ssh2 ("kerberos-2@ssh.com"); tested with jakob@
307 server interops with commercial client; ok jakob@ djm@
72c5fe79 308 - jmc@cvs.openbsd.org 2003/05/14 08:25:39
309 [sftp.1]
310 - better formatting in SYNOPSIS
311 - whitespace at EOL
312 ok djm@
3a39206f 313 - markus@cvs.openbsd.org 2003/05/14 08:57:49
314 [monitor.c]
315 http://bugzilla.mindrot.org/show_bug.cgi?id=560
316 Privsep child continues to run after monitor killed.
317 Pass monitor signals through to child; Darren Tucker
751092f9 318 - (djm) Make portable build with MIT krb5 (some issues remain)
7fceb20d 319 - (djm) Add new UsePAM configuration directive to allow runtime control
320 over usage of PAM. This allows non-root use of sshd when built with
321 --with-pam
817e6d38 322 - (djm) Die screaming if start_pam() is called when UsePAM=no
83ccf11a 323 - (djm) Avoid KrbV leak for MIT Kerberos
b1848832 324 - (dtucker) Set ai_socktype and ai_protocol in fake-getaddrinfo.c. ok djm@
fa065de2 325 - (djm) Bug #258: sscanf("[0-9]") -> sscanf("[0123456789]") for portability
dd3ebb5a 326
91f3aa9b 32720030512
328 - (djm) Redhat spec: Don't install profile.d scripts when not
329 building with GNOME/GTK askpass (patch from bet@rahul.net)
330
5def520a 33120030510
332 - (dtucker) Bug #318: Create ssh_prng_cmds.out during "make" rather than
333 "make install". Patch by roth@feep.net.
ad84c479 334 - (dtucker) Bug #536: Test for and work around openpty/controlling tty
335 problem on Linux (fixes "could not set controlling tty" errors).
05114c74 336 - (djm) Merge FreeBSD PAM code: replaces PAM password auth kludge with
337 proper challenge-response module
23ab1f36 338 - (djm) 2-clause license on loginrec.c, with permission from
339 andre@ae-35.com
5def520a 340
43ce025d 34120030504
dd594f99 342 - (dtucker) Bug #497: Move #include of bsd-cygwin_util.h to openbsd-compat.h.
343 Patch from vinschen@redhat.com.
43ce025d 344
2cd5dbba 34520030503
346 - (dtucker) Add missing "void" to record_failed_login in bsd-cray.c. Noted
347 by wendyp@cray.com.
348
bf7c1e6c 34920030502
350 - (dtucker) Bug #544: ignore invalid cmsg_type on Linux 2.0 kernels,
351 privsep should now work.
73d9dad3 352 - (dtucker) Move handling of bad password authentications into a platform
990278ef 353 specific record_failed_login() function (affects AIX & Unicos). ok mouring@
bf7c1e6c 354
68ece370 35520030429
356 - (djm) Add back radix.o (used by AFS support), after it went missing from
357 Makefile many moons ago
358 - (djm) Apply "owl-always-auth" patch from Openwall/Solar Designer
359 - (djm) Fix blibpath specification for AIX/gcc
360 - (djm) Some systems have basename in -lgen. Fix from ayamura@ayamura.org
361
ded9dd18 36220030428
363 - (bal) [defines.h progressmeter.c scp.c] Some more culling of non 64bit
364 hacked code.
365
aceb0423 36620030427
367 - (bal) Bug #541: return; was dropped by mistake. Reported by
368 furrier@iglou.com
c8a50a34 369 - (bal) Since we don't support platforms lacking u_int_64. We may
370 as well clean out some of those evil #ifdefs
9a6fee8b 371 - (bal) auth1.c minor resync while looking at the code.
d7cf277b 372 - (bal) auth2.c same changed as above.
aceb0423 373
0a626302 37420030409
375 - (djm) Bug #539: Specify creation mode with O_CREAT for lastlog. Report
376 from matth@eecs.berkeley.edu
d35929b5 377 - (djm) Make the spec work with Redhat 9.0 (which renames sharutils)
ffd7b36b 378 - (djm) OpenBSD CVS Sync
379 - markus@cvs.openbsd.org 2003/04/02 09:48:07
380 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
381 [readconf.h serverloop.c sshconnect2.c]
382 reapply rekeying chage, tested by henning@, ok djm@
16f1b5ca 383 - markus@cvs.openbsd.org 2003/04/02 14:36:26
384 [ssh-keysign.c]
385 potential segfault if KEY_UNSPEC; cjwatson@debian.org; bug #526
6c1bc5c5 386 - itojun@cvs.openbsd.org 2003/04/03 07:25:27
387 [progressmeter.c]
388 $OpenBSD$
389 - itojun@cvs.openbsd.org 2003/04/03 10:17:35
390 [progressmeter.c]
391 remove $OpenBSD$, as other *.c does not have it.
806e4c11 392 - markus@cvs.openbsd.org 2003/04/07 08:29:57
393 [monitor_wrap.c]
394 typo: get correct counters; introduced during rekeying change.
2f5b2528 395 - millert@cvs.openbsd.org 2003/04/07 21:58:05
396 [progressmeter.c]
397 The UCB copyright here is incorrect. This code did not originate
398 at UCB, it was written by Luke Mewburn. Updated the copyright at
399 the author's request. markus@ OK
400 - itojun@cvs.openbsd.org 2003/04/08 20:21:29
401 [*.c *.h]
402 rename log() into logit() to avoid name conflict. markus ok, from
403 netbsd
404 - (djm) XXX - Performed locally using:
405 "perl -p -i -e 's/(\s|^)log\(/$1logit\(/g' *.c *.h"
70e1f62f 406 - hin@cvs.openbsd.org 2003/04/09 08:23:52
407 [servconf.c]
408 Don't include <krb.h> when compiling with Kerberos 5 support
2f5b2528 409 - (djm) Fix up missing include for packet.c
a3568201 410 - (djm) Fix missed log => logit occurance (reference by function pointer)
0a626302 411
4d0cb2e5 41220030402
413 - (bal) if IP_TOS is not found or broken don't try to compile in
414 packet_set_tos() function call. bug #527
415
a4e5acef 41620030401
417 - (djm) OpenBSD CVS Sync
418 - jmc@cvs.openbsd.org 2003/03/28 10:11:43
419 [scp.1 sftp.1 ssh.1 ssh-add.1 ssh-agent.1 ssh_config.5 sshd_config.5]
420 [ssh-keygen.1 ssh-keyscan.1 ssh-keysign.8]
421 - killed whitespace
422 - new sentence new line
423 - .Bk for arguments
424 ok markus@
177f584b 425 - markus@cvs.openbsd.org 2003/04/01 10:10:23
426 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
427 [readconf.h serverloop.c sshconnect2.c]
428 rekeying bugfixes and automatic rekeying:
429 * both client and server rekey _automatically_
430 (a) after 2^31 packets, because after 2^32 packets
431 the sequence number for packets wraps
432 (b) after 2^(blocksize_in_bits/4) blocks
433 (see: draft-ietf-secsh-newmodes-00.txt)
434 (a) and (b) are _enabled_ by default, and only disabled for known
435 openssh versions, that don't support rekeying properly.
436 * client option 'RekeyLimit'
437 * do not reply to requests during rekeying
438 - markus@cvs.openbsd.org 2003/04/01 10:22:21
439 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
440 [readconf.h serverloop.c sshconnect2.c]
441 backout rekeying changes (for 3.6.1)
519bdfe8 442 - markus@cvs.openbsd.org 2003/04/01 10:31:26
443 [compat.c compat.h kex.c]
444 bugfix causes stalled connections for ssh.com < 3.0; noticed by ho@;
445 tested by ho@ and myself
9dd240a3 446 - markus@cvs.openbsd.org 2003/04/01 10:56:46
447 [version.h]
448 3.6.1
ac01b518 449 - (djm) Crank spec file versions
b32453fe 450 - (djm) Release 3.6.1p1
a4e5acef 451
fd77a40f 45220030326
453 - (djm) OpenBSD CVS Sync
454 - deraadt@cvs.openbsd.org 2003/03/26 04:02:51
455 [sftp-server.c]
456 one last fix to the tree: race fix broke stuff; pr 3169;
457 srp@srparish.net, help from djm
458
8021857c 45920030325
460 - (djm) Fix getpeerid support for 64 bit BE systems. From
461 Arnd Bergmann <arndb@de.ibm.com>
462
cdb64c4d 46320030324
464 - (djm) OpenBSD CVS Sync
465 - markus@cvs.openbsd.org 2003/03/23 19:02:00
466 [monitor.c]
467 unbreak rekeying for privsep; ok millert@
468 - Release 3.6p1
62086365 469 - Fix sshd BindAddress and -b options for systems using fake-getaddrinfo.
470 Report from murple@murple.net, diagnosis from dtucker@zip.com.au
cdb64c4d 471
0b202697 472$Id$
This page took 4.638124 seconds and 5 git commands to generate.