]> andersk Git - openssh.git/blame - ChangeLog
- Fix occasional crash on LinuxPPC. Patch from Franz Sirl
[openssh.git] / ChangeLog
CommitLineData
76b8607f 119991231
2 - Fix password support on systems with a mixture of shadowed and
3 non-shadowed passwords (e.g. NIS). Report and fix from
4 HARUYAMA Seigo <haruyama@nt.phys.s.u-tokyo.ac.jp>
723221b5 5 - Fix broken autoconf typedef detection. Report from Marc G.
6 Fournier <marc.fournier@acadiau.ca>
b92964b7 7 - Fix occasional crash on LinuxPPC. Patch from Franz Sirl
8 <Franz.Sirl-kernel@lauterbach.com>
76b8607f 9
13f825f4 1019991230
11 - OpenBSD CVS updates:
12 - [auth-passwd.c]
13 check for NULL 1st
a5c9cd31 14 - Removed most of the pam code into its own file auth-pam.[ch]. This
15 cleaned up sshd.c up significantly.
76b8607f 16 - PAM authentication was incorrectly interpreting
17 "PermitRootLogin without-password". Report from Matthias Andree
18 <ma@dt.e-technik.uni-dortmund.de
a5c9cd31 19 - Several other cleanups
0bc5b6fb 20 - Merged Dante SOCKS support patch from David Rankin
21 <drankin@bohemians.lexington.ky.us>
22 - Updated documentation with ./configure options
76b8607f 23 - Released 1.2.1pre23
13f825f4 24
c73a0cb5 2519991229
26 - Applied another NetBSD portability patch from David Rankin
27 <drankin@bohemians.lexington.ky.us>
28 - Fix --with-default-path option.
a0f84251 29 - Autodetect perl, patch from David Rankin
30 <drankin@bohemians.lexington.ky.us>
0a2ff95d 31 - Print whether OpenSSH was compiled with RSARef, patch from
32 Nalin Dahyabhai <nalin@thermo.stat.ncsu.edu>
f91bacbd 33 - Calls to pam_setcred, patch from Nalin Dahyabhai
34 <nalin@thermo.stat.ncsu.edu>
e3a93db0 35 - Detect missing size_t and typedef it.
5ab44a92 36 - Rename helper.[ch] to (more appropriate) bsd-misc.[ch]
37 - Minor Makefile cleaning
c73a0cb5 38
b6019d68 3919991228
40 - Replacement for getpagesize() for systems which lack it
70e0115b 41 - NetBSD login.c compile fix from David Rankin
42 <drankin@bohemians.lexington.ky.us>
43 - Fully set ut_tv if present in utmp or utmpx
d94aa2ae 44 - Portability fixes for Irix 5.3 (now compiles OK!)
45 - autoconf and other misc cleanups
ea1970a3 46 - Merged AIX patch from Darren Hall <dhall@virage.org>
47 - Cleaned up defines.h
fa9a2dd6 48 - Released 1.2.1pre22
b6019d68 49
d2dcff5f 5019991227
51 - Automatically correct paths in manpages and configuration files. Patch
52 and script from Andre Lucas <andre.lucas@dial.pipex.com>
53 - Removed credits from README to CREDITS file, updated.
cb807f40 54 - Added --with-default-path to specify custom path for server
55 - Removed #ifdef trickery from acconfig.h into defines.h
36a5b38e 56 - PAM bugfix. PermitEmptyPassword was being ignored.
57 - Fixed PAM config files to allow empty passwords if server does.
58 - Explained spurious PAM auth warning workaround in UPGRADING
21feb5fa 59 - Use last few chars of tty line as ut_id
5a7794be 60 - New SuSE RPM spec file from Chris Saia <csaia@wtower.com>
00e6dd70 61 - OpenBSD CVS updates:
62 - [packet.h auth-rhosts.c]
63 check format string for packet_disconnect and packet_send_debug, too
64 - [channels.c]
65 use packet_get_maxsize for channels. consistence.
d2dcff5f 66
f74efc8d 6719991226
68 - Enabled utmpx support by default for Solaris
69 - Cleanup sshd.c PAM a little more
bc7ea646 70 - Revised RPM package to include Jim Knoble's <jmknoble@pobox.com>
71 X11 ssh-askpass program.
20c43d8c 72 - Disable logging of PAM success and failures, PAM is verbose enough.
73 Unfortunatly there is currently no way to disable auth failure
74 messages. Mention this in UPGRADING file and sent message to PAM
75 developers
83b7f649 76 - OpenBSD CVS update:
77 - [ssh-keygen.1 ssh.1]
78 remove ref to .ssh/random_seed, mention .ssh/environment in
79 .Sh FILES, too
72251cb6 80 - Released 1.2.1pre21
81 - Fixed implicit '.' in default path, report from Jim Knoble
82 <jmknoble@pobox.com>
30a39691 83 - Redhat RPM spec fixes from Jim Knoble <jmknoble@pobox.com>
f74efc8d 84
f498ed15 8519991225
86 - More fixes from Andre Lucas <andre.lucas@dial.pipex.com>
87 - Cleanup of auth-passwd.c for shadow and MD5 passwords
88 - Cleanup and bugfix of PAM authentication code
f74efc8d 89 - Released 1.2.1pre20
90
91 - Merged fixes from Ben Taylor <bent@clark.net>
92 - Fixed configure support for PAM. Reported by Naz <96na@eng.cam.ac.uk>
93 - Disabled logging of PAM password authentication failures when password
94 is empty. (e.g start of authentication loop). Reported by Naz
95 <96na@eng.cam.ac.uk>)
f498ed15 96
9719991223
98 - Merged later HPUX patch from Andre Lucas
99 <andre.lucas@dial.pipex.com>
100 - Above patch included better utmpx support from Ben Taylor
f74efc8d 101 <bent@clark.net>
f498ed15 102
eef6f7e9 10319991222
104 - Fix undefined fd_set type in ssh.h from Povl H. Pedersen
105 <pope@netguide.dk>
ae28776a 106 - Fix login.c breakage on systems which lack ut_host in struct
107 utmp. Reported by Willard Dawson <willard.dawson@sbs.siemens.com>
eef6f7e9 108
a7effaac 10919991221
110 - Integration of large HPUX patch from Andre Lucas
111 <andre.lucas@dial.pipex.com>. Integrating it had a few other
112 benefits:
113 - Ability to disable shadow passwords at configure time
114 - Ability to disable lastlog support at configure time
115 - Support for IP address in $DISPLAY
ae2f7af7 116 - OpenBSD CVS update:
117 - [sshconnect.c]
118 say "REMOTE HOST IDENTIFICATION HAS CHANGED"
59dd7a31 119 - Fix DISABLE_SHADOW support
120 - Allow MD5 passwords even if shadow passwords are disabled
16034de9 121 - Release 1.2.1pre19
a7effaac 122
3f1d9bcd 12319991218
124 - Redhat init script patch from Chun-Chung Chen
125 <cjj@u.washington.edu>
7e1c2490 126 - Avoid breakage on systems without IPv6 headers
3f1d9bcd 127
60d804c8 12819991216
129 - Makefile changes for Solaris from Peter Kocks
130 <peter.kocks@baygate.com>
89cafde6 131 - Minor updates to docs
132 - Merged OpenBSD CVS changes:
133 - [authfd.c ssh-agent.c]
134 keysize warnings talk about identity files
135 - [packet.c]
136 "Connection closed by x.x.x.x": fatal() -> log()
c9d323f0 137 - Correctly handle empty passwords in shadow file. Patch from:
138 "Chris, the Young One" <cky@pobox.com>
139 - Released 1.2.1pre18
60d804c8 140
7dc6fc6d 14119991215
142 - Integrated patchs from Juergen Keil <jk@tools.de>
143 - Avoid void* pointer arithmatic
144 - Use LDFLAGS correctly
68227e6d 145 - Fix SIGIO error in scp
146 - Simplify status line printing in scp
906a2515 147 - Added better test for inline functions compiler support from
148 Darren_Hall@progressive.com
7dc6fc6d 149
95f1eccc 15019991214
151 - OpenBSD CVS Changes
152 - [canohost.c]
153 fix get_remote_port() and friends for sshd -i;
154 Holger.Trapp@Informatik.TU-Chemnitz.DE
155 - [mpaux.c]
156 make code simpler. no need for memcpy. niels@ ok
157 - [pty.c]
158 namebuflen not sizeof namebuflen; bnd@ep-ag.com via djm@mindrot.org
159 fix proto; markus
160 - [ssh.1]
161 typo; mark.baushke@solipsa.com
162 - [channels.c ssh.c ssh.h sshd.c]
163 type conflict for 'extern Type *options' in channels.c; dot@dotat.at
164 - [sshconnect.c]
165 move checking of hostkey into own function.
166 - [version.h]
167 OpenSSH-1.2.1
884bcb37 168 - Clean up broken includes in pty.c
7303768f 169 - Some older systems don't have poll.h, they use sys/poll.h instead
170 - Doc updates
95f1eccc 171
847e8865 17219991211
173 - Fix compilation on systems with AFS. Reported by
174 aloomis@glue.umd.edu
175 - Fix installation on Solaris. Reported by
176 Gordon Rowell <gordonr@gormand.com.au>
177 - Fix gccisms (__attribute__ and inline). Report by edgy@us.ibm.com,
178 patch from Markus Friedl <markus.friedl@informatik.uni-erlangen.de>
179 - Auto-locate xauth. Patch from David Agraz <dagraz@jahoopa.com>
180 - Compile fix from David Agraz <dagraz@jahoopa.com>
181 - Avoid compiler warning in bsd-snprintf.c
182 - Added pam_limits.so to default PAM config. Suggested by
183 Jim Knoble <jmknoble@pobox.com>
184
8946db53 18519991209
186 - Import of patch from Ben Taylor <bent@clark.net>:
187 - Improved PAM support
188 - "uninstall" rule for Makefile
189 - utmpx support
190 - Should fix PAM problems on Solaris
2d86a6cc 191 - OpenBSD CVS updates:
192 - [readpass.c]
193 avoid stdio; based on work by markus, millert, and I
194 - [sshd.c]
195 make sure the client selects a supported cipher
196 - [sshd.c]
197 fix sighup handling. accept would just restart and daemon handled
198 sighup only after the next connection was accepted. use poll on
199 listen sock now.
200 - [sshd.c]
201 make that a fatal
87e91331 202 - Applied patch from David Rankin <drankin@bohemians.lexington.ky.us>
203 to fix libwrap support on NetBSD
5001b9e4 204 - Released 1.2pre17
8946db53 205
6d8c4ea4 20619991208
207 - Compile fix for Solaris with /dev/ptmx from
208 David Agraz <dagraz@jahoopa.com>
209
4285816a 21019991207
211 - sshd Redhat init script patch from Jim Knoble <jmknoble@pobox.com>
212 fixes compatability with 4.x and 5.x
db28aeb5 213 - Fixed default SSH_ASKPASS
d465f2ca 214 - Fix PAM account and session being called multiple times. Problem
215 reported by Adrian Baugh <adrian@merlin.keble.ox.ac.uk>
a408af76 216 - Merged more OpenBSD changes:
217 - [atomicio.c authfd.c scp.c serverloop.c ssh.h sshconnect.c sshd.c]
218 move atomicio into it's own file. wrap all socket write()s which
219 were doing write(sock, buf, len) != len, with atomicio() calls.
220 - [auth-skey.c]
221 fd leak
222 - [authfile.c]
223 properly name fd variable
224 - [channels.c]
225 display great hatred towards strcpy
226 - [pty.c pty.h sshd.c]
227 use openpty() if it exists (it does on BSD4_4)
228 - [tildexpand.c]
229 check for ~ expansion past MAXPATHLEN
230 - Modified helper.c to use new atomicio function.
231 - Reformat Makefile a little
232 - Moved RC4 routines from rc4.[ch] into helper.c
233 - Added autoconf code to detect /dev/ptmx (Solaris) and /dev/ptc (AIX)
9983a8ca 234 - Updated SuSE spec from Chris Saia <csaia@wtower.com>
235 - Tweaked Redhat spec
9158d92f 236 - Clean up bad imports of a few files (forgot -kb)
237 - Released 1.2pre16
4285816a 238
9c7b6dfd 23919991204
240 - Small cleanup of PAM code in sshd.c
57112b5a 241 - Merged OpenBSD CVS changes:
242 - [auth-krb4.c auth-passwd.c auth-skey.c ssh.h]
243 move skey-auth from auth-passwd.c to auth-skey.c, same for krb4
244 - [auth-rsa.c]
245 warn only about mismatch if key is _used_
246 warn about keysize-mismatch with log() not error()
247 channels.c readconf.c readconf.h ssh.c ssh.h sshconnect.c
248 ports are u_short
249 - [hostfile.c]
250 indent, shorter warning
251 - [nchan.c]
252 use error() for internal errors
253 - [packet.c]
254 set loglevel for SSH_MSG_DISCONNECT to log(), not fatal()
255 serverloop.c
256 indent
257 - [ssh-add.1 ssh-add.c ssh.h]
258 document $SSH_ASKPASS, reasonable default
259 - [ssh.1]
260 CheckHostIP is not available for connects via proxy command
261 - [sshconnect.c]
262 typo
263 easier to read client code for passwd and skey auth
264 turn of checkhostip for proxy connects, since we don't know the remote ip
9c7b6dfd 265
dad3b556 26619991126
267 - Add definition for __P()
268 - Added [v]snprintf() replacement for systems that lack it
269
0ce43ae4 27019991125
271 - More reformatting merged from OpenBSD CVS
272 - Merged OpenBSD CVS changes:
273 - [channels.c]
274 fix packet_integrity_check() for !have_hostname_in_open.
275 report from mrwizard@psu.edu via djm@ibs.com.au
276 - [channels.c]
277 set SO_REUSEADDR and SO_LINGER for forwarded ports.
278 chip@valinux.com via damien@ibs.com.au
279 - [nchan.c]
280 it's not an error() if shutdown_write failes in nchan.
281 - [readconf.c]
282 remove dead #ifdef-0-code
283 - [readconf.c servconf.c]
284 strcasecmp instead of tolower
285 - [scp.c]
286 progress meter overflow fix from damien@ibs.com.au
287 - [ssh-add.1 ssh-add.c]
288 SSH_ASKPASS support
289 - [ssh.1 ssh.c]
290 postpone fork_after_authentication until command execution,
291 request/patch from jahakala@cc.jyu.fi via damien@ibs.com.au
292 plus: use daemon() for backgrounding
cf8dd513 293 - Added BSD compatible install program and autoconf test, thanks to
294 Niels Kristian Bech Jensen <nkbj@image.dk>
295 - Solaris fixing, thanks to Ben Taylor <bent@clark.net>
09041313 296 - Merged beginnings of AIX support from Tor-Ake Fransson <torake@hotmail.com>
3dbefdb8 297 - Release 1.2pre15
0ce43ae4 298
5260325f 29919991124
300 - Merged very large OpenBSD source code reformat
301 - OpenBSD CVS updates
302 - [channels.c cipher.c compat.c log-client.c scp.c serverloop.c]
303 [ssh.h sshd.8 sshd.c]
304 syslog changes:
305 * Unified Logmessage for all auth-types, for success and for failed
306 * Standard connections get only ONE line in the LOG when level==LOG:
307 Auth-attempts are logged only, if authentication is:
308 a) successfull or
309 b) with passwd or
310 c) we had more than AUTH_FAIL_LOG failues
311 * many log() became verbose()
312 * old behaviour with level=VERBOSE
313 - [readconf.c readconf.h ssh.1 ssh.h sshconnect.c sshd.c]
314 tranfer s/key challenge/response data in SSH_SMSG_AUTH_TIS_CHALLENGE
315 messages. allows use of s/key in windows (ttssh, securecrt) and
316 ssh-1.2.27 clients without 'ssh -v', ok: niels@
317 - [sshd.8]
318 -V, for fallback to openssh in SSH2 compatibility mode
319 - [sshd.c]
320 fix sigchld race; cjc5@po.cwru.edu
321
4655fe80 32219991123
323 - Added SuSE package files from Chris Saia <csaia@wtower.com>
8b241e50 324 - Restructured package-related files under packages/*
4655fe80 325 - Added generic PAM config
8b241e50 326 - Numerous little Solaris fixes
9c08d6ce 327 - Add recommendation to use GNU make to INSTALL document
4655fe80 328
60bed5fd 32919991122
330 - Make <enter> close gnome-ssh-askpass (Debian bug #50299)
2f2cc3f9 331 - OpenBSD CVS Changes
332 - [ssh-keygen.c]
333 don't create ~/.ssh only if the user wants to store the private
334 key there. show fingerprint instead of public-key after
335 keygeneration. ok niels@
b09a984b 336 - Added OpenBSD bsd-strlcat.c, created bsd-strlcat.h
96ad4350 337 - Added timersub() macro
b09a984b 338 - Tidy RCSIDs of bsd-*.c
96ad4350 339 - Added autoconf test and macro to deal with old PAM libraries
340 pam_strerror definition (one arg vs two).
530f1889 341 - Fix EGD problems (Thanks to Ben Taylor <bent@clark.net>)
342 - Retry /dev/urandom reads interrupted by signal (report from
343 Robert Hardy <rhardy@webcon.net>)
1647c2b5 344 - Added a setenv replacement for systems which lack it
d84a9a44 345 - Only display public key comment when presenting ssh-askpass dialog
346 - Released 1.2pre14
60bed5fd 347
2ddcfdf3 348 - Configure, Make and changelog corrections from Tudor Bosman
349 <tudorb@jm.nu> and Niels Kristian Bech Jensen <nkbj@image.dk>
350
9d6b7add 35119991121
2f2cc3f9 352 - OpenBSD CVS Changes:
60bed5fd 353 - [channels.c]
354 make this compile, bad markus
355 - [log.c readconf.c servconf.c ssh.h]
356 bugfix: loglevels are per host in clientconfig,
357 factor out common log-level parsing code.
358 - [servconf.c]
359 remove unused index (-Wall)
360 - [ssh-agent.c]
361 only one 'extern char *__progname'
362 - [sshd.8]
363 document SIGHUP, -Q to synopsis
364 - [sshconnect.c serverloop.c sshd.c packet.c packet.h]
365 [channels.c clientloop.c]
366 SSH_CMSG_MAX_PACKET_SIZE, some clients use this, some need this, niels@
367 [hope this time my ISP stays alive during commit]
368 - [OVERVIEW README] typos; green@freebsd
369 - [ssh-keygen.c]
370 replace xstrdup+strcat with strlcat+fixed buffer, fixes OF (bad me)
371 exit if writing the key fails (no infinit loop)
372 print usage() everytime we get bad options
373 - [ssh-keygen.c] overflow, djm@mindrot.org
374 - [sshd.c] fix sigchld race; cjc5@po.cwru.edu
375
2b942fe0 37619991120
377 - Merged more Solaris support from Marc G. Fournier
378 <marc.fournier@acadiau.ca>
379 - Wrote autoconf tests for integer bit-types
380 - Fixed enabling kerberos support
13c36c4c 381 - Fix segfault in ssh-keygen caused by buffer overrun in filename
382 handling.
2b942fe0 383
06479889 38419991119
385 - Merged PAM buffer overrun patch from Chip Salzenberg <chip@valinux.com>
2ad77510 386 - Merged OpenBSD CVS changes
387 - [auth-rhosts.c auth-rsa.c ssh-agent.c sshconnect.c sshd.c]
388 more %d vs. %s in fmt-strings
389 - [authfd.c]
390 Integers should not be printed with %s
7b1cc56c 391 - EGD uses a socket, not a named pipe. Duh.
392 - Fix includes in fingerprint.c
29dbde15 393 - Fix scp progress bar bug again.
2ddcfdf3 394 - Move ssh-askpass from ${libdir}/ssh to ${libexecdir}/ssh at request of
736890c4 395 David Rankin <drankin@bohemians.lexington.ky.us>
91b8065d 396 - Added autoconf option to enable Kerberos 4 support (untested)
397 - Added autoconf option to enable AFS support (untested)
398 - Added autoconf option to enable S/Key support (untested)
399 - Added autoconf option to enable TCP wrappers support (compiles OK)
beb43d31 400 - Renamed BSD helper function files to bsd-*
caf3bc51 401 - Added tests for login and daemon and enable OpenBSD replacements for
402 when they are absent.
403 - Added non-PAM MD5 password support patch from Tudor Bosman <tudorb@jm.nu>
06479889 404
2bd61362 40519991118
406 - Merged OpenBSD CVS changes
407 - [scp.c] foregroundproc() in scp
408 - [sshconnect.h] include fingerprint.h
409 - [sshd.c] bugfix: the log() for passwd-auth escaped during logging
410 changes.
0c16a097 411 - [ssh.1] Spell my name right.
2bd61362 412 - Added openssh.com info to README
413
f095fcc7 41419991117
415 - Merged OpenBSD CVS changes
416 - [ChangeLog.Ylonen] noone needs this anymore
417 - [authfd.c] close-on-exec for auth-socket, ok deraadt
418 - [hostfile.c]
419 in known_hosts key lookup the entry for the bits does not need
420 to match, all the information is contained in n and e. This
421 solves the problem with buggy servers announcing the wrong
422 modulus length. markus and me.
423 - [serverloop.c]
424 bugfix: check for space if child has terminated, from:
425 iedowse@maths.tcd.ie
426 - [ssh-add.1 ssh-add.c ssh-keygen.1 ssh-keygen.c sshconnect.c]
427 [fingerprint.c fingerprint.h]
428 rsa key fingerprints, idea from Bjoern Groenvall <bg@sics.se>
429 - [ssh-agent.1] typo
430 - [ssh.1] add OpenSSH information to AUTHOR section. okay markus@
431 - [sshd.c]
432 force logging to stderr while loading private key file
433 (lost while converting to new log-levels)
434
4d195447 43519991116
436 - Fix some Linux libc5 problems reported by Miles Wilson <mw@mctitle.com>
437 - Merged OpenBSD CVS changes:
438 - [auth-rh-rsa.c auth-rsa.c authfd.c authfd.h hostfile.c mpaux.c]
439 [mpaux.h ssh-add.c ssh-agent.c ssh.h ssh.c sshd.c]
440 the keysize of rsa-parameter 'n' is passed implizit,
441 a few more checks and warnings about 'pretended' keysizes.
442 - [cipher.c cipher.h packet.c packet.h sshd.c]
443 remove support for cipher RC4
444 - [ssh.c]
445 a note for legay systems about secuity issues with permanently_set_uid(),
446 the private hostkey and ptrace()
447 - [sshconnect.c]
448 more detailed messages about adding and checking hostkeys
449
dad9a31e 45019991115
451 - Merged OpenBSD CVS changes:
452 - [ssh-add.c] change passphrase loop logic and remove ref to
453 $DISPLAY, ok niels
454 - Changed to ssh-add.c broke askpass support. Revised it to be a little more
455 modular.
456 - Revised autoconf support for enabling/disabling askpass support.
e7c0f9d5 457 - Merged more OpenBSD CVS changes:
458 [auth-krb4.c]
459 - disconnect if getpeername() fails
460 - missing xfree(*client)
461 [canohost.c]
462 - disconnect if getpeername() fails
463 - fix comment: we _do_ disconnect if ip-options are set
464 [sshd.c]
465 - disconnect if getpeername() fails
466 - move checking of remote port to central place
467 [auth-rhosts.c] move checking of remote port to central place
468 [log-server.c] avoid extra fd per sshd, from millert@
469 [readconf.c] print _all_ bad config-options in ssh(1), too
470 [readconf.h] print _all_ bad config-options in ssh(1), too
471 [ssh.c] print _all_ bad config-options in ssh(1), too
472 [sshconnect.c] disconnect if getpeername() fails
473 - OpenBSD's changes to sshd.c broke the PAM stuff, re-merged it.
c75a1a66 474 - Various small cleanups to bring diff (against OpenBSD) size down.
f601d847 475 - Merged more Solaris compability from Marc G. Fournier
476 <marc.fournier@acadiau.ca>
477 - Wrote autoconf tests for __progname symbol
8c119fd0 478 - RPM spec file fixes from Jim Knoble <jmknoble@pobox.com>
0c372277 479 - Released 1.2pre12
480
481 - Another OpenBSD CVS update:
482 - [ssh-keygen.1] fix .Xr
dad9a31e 483
92da7197 48419991114
485 - Solaris compilation fixes (still imcomplete)
486
94f7bb9e 48719991113
dd092f97 488 - Build patch from Niels Kristian Bech Jensen <nkbj@image.dk>
489 - Don't install config files if they already exist
490 - Fix inclusion of additional preprocessor directives from acconfig.h
94f7bb9e 491 - Removed redundant inclusions of config.h
e9c75a39 492 - Added 'Obsoletes' lines to RPM spec file
94f7bb9e 493 - Merged OpenBSD CVS changes:
494 - [bufaux.c] save a view malloc/memcpy/memset/free's, ok niels
495 - [scp.c] fix overflow reported by damien@ibs.com.au: off_t
496 totalsize, ok niels,aaron
497 - Delay fork (-f option) in ssh until after port forwarded connections
498 have been initialised. Patch from Jani Hakala <jahakala@cc.jyu.fi>
b2344d54 499 - Added shadow password patch from Thomas Neumann <tom@smart.ruhr.de>
500 - Added ifdefs to auth-passwd.c to exclude it when PAM is enabled
dd092f97 501 - Tidied default config file some more
502 - Revised Redhat initscript to fix bug: sshd (re)start would fail
503 if executed from inside a ssh login.
94f7bb9e 504
e35c1dc2 50519991112
506 - Merged changes from OpenBSD CVS
507 - [sshd.c] session_key_int may be zero
b4748e2f 508 - [auth-rh-rsa.c servconf.c servconf.h ssh.h sshd.8 sshd.c sshd_config]
509 IgnoreUserKnownHosts(default=no), used for RhostRSAAuth, ok
510 deraadt,millert
511 - Brought default sshd_config more in line with OpenBSD's
547c9f30 512 - Grab server in gnome-ssh-askpass (Debian bug #49872)
513 - Released 1.2pre10
e35c1dc2 514
8bc7973f 515 - Added INSTALL documentation
6fa724bc 516 - Merged yet more changes from OpenBSD CVS
517 - [auth-rh-rsa.c auth-rhosts.c auth-rsa.c channels.c clientloop.c]
518 [ssh.c ssh.h sshconnect.c sshd.c]
519 make all access to options via 'extern Options options'
520 and 'extern ServerOptions options' respectively;
521 options are no longer passed as arguments:
522 * make options handling more consistent
523 * remove #include "readconf.h" from ssh.h
524 * readconf.h is only included if necessary
525 - [mpaux.c] clear temp buffer
526 - [servconf.c] print _all_ bad options found in configfile
045672f9 527 - Make ssh-askpass support optional through autoconf
59b0f0d4 528 - Fix nasty division-by-zero error in scp.c
529 - Released 1.2pre11
8bc7973f 530
4cca272e 53119991111
532 - Added (untested) Entropy Gathering Daemon (EGD) support
67d68e3a 533 - Fixed /dev/urandom fd leak (Debian bug #49722)
5bbb5681 534 - Merged OpenBSD CVS changes:
535 - [auth-rh-rsa.c] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
536 - [ssh.1] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
537 - [sshd.8] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
505fed0a 538 - Fix integer overflow which was messing up scp's progress bar for large
3f1d9bcd 539 file transfers. Fix submitted to OpenBSD developers. Report and fix
540 from Kees Cook <cook@cpoint.net>
6a17f9c2 541 - Merged more OpenBSD CVS changes:
542 - [auth-krb4.c auth-passwd.c] remove x11- and krb-cleanup from fatal()
543 + krb-cleanup cleanup
544 - [clientloop.c log-client.c log-server.c ]
545 [readconf.c readconf.h servconf.c servconf.h ]
546 [ssh.1 ssh.c ssh.h sshd.8]
547 add LogLevel {QUIET, FATAL, ERROR, INFO, CHAT, DEBUG} to ssh/sshd,
548 obsoletes QuietMode and FascistLogging in sshd.
e35c1dc2 549 - [sshd.c] fix fatal/assert() bug reported by damien@ibs.com.au:
550 allow session_key_int != sizeof(session_key)
551 [this should fix the pre-assert-removal-core-files]
552 - Updated default config file to use new LogLevel option and to improve
553 readability
554
f370266e 55519991110
67d68e3a 556 - Merged several minor fixes:
f370266e 557 - ssh-agent commandline parsing
558 - RPM spec file now installs ssh setuid root
559 - Makefile creates libdir
4cca272e 560 - Merged beginnings of Solaris compability from Marc G. Fournier
561 <marc.fournier@acadiau.ca>
f370266e 562
d4f11b59 56319991109
564 - Autodetection of SSL/Crypto library location via autoconf
565 - Fixed location of ssh-askpass to follow autoconf
566 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
567 - Autodetection of RSAref library for US users
568 - Minor doc updates
560557bb 569 - Merged OpenBSD CVS changes:
570 - [rsa.c] bugfix: use correct size for memset()
571 - [sshconnect.c] warn if announced size of modulus 'n' != real size
f025becb 572 - Added GNOME passphrase requestor (use --with-gnome-askpass)
d397b172 573 - RPM build now creates subpackages
aa51e7cc 574 - Released 1.2pre9
d4f11b59 575
e1a9c08d 57619991108
577 - Removed debian/ directory. This is now being maintained separately.
578 - Added symlinks for slogin in RPM spec file
579 - Fixed permissions on manpages in RPM spec file
580 - Added references to required libraries in README file
581 - Removed config.h.in from CVS
582 - Removed pwdb support (better pluggable auth is provided by glibc)
583 - Made PAM and requisite libdl optional
584 - Removed lots of unnecessary checks from autoconf
585 - Added support and autoconf test for openpty() function (Unix98 pty support)
586 - Fix for scp not finding ssh if not installed as /usr/bin/ssh
587 - Added TODO file
588 - Merged parts of Debian patch From Phil Hands <phil@hands.com>:
589 - Added ssh-askpass program
590 - Added ssh-askpass support to ssh-add.c
591 - Create symlinks for slogin on install
592 - Fix "distclean" target in makefile
593 - Added example for ssh-agent to manpage
594 - Added support for PAM_TEXT_INFO messages
595 - Disable internal /etc/nologin support if PAM enabled
596 - Merged latest OpenBSD CVS changes:
5bae4ab8 597 - [all] replace assert() with error, fatal or packet_disconnect
e1a9c08d 598 - [sshd.c] don't send fail-msg but disconnect if too many authentication
599 failures
e1a9c08d 600 - [sshd.c] remove unused argument. ok dugsong
601 - [sshd.c] typo
602 - [rsa.c] clear buffers used for encryption. ok: niels
603 - [rsa.c] replace assert() with error, fatal or packet_disconnect
ade6fccd 604 - [auth-krb4.c] remove unused argument. ok dugsong
e1a9c08d 605 - Fixed coredump after merge of OpenBSD rsa.c patch
9010d60a 606 - Released 1.2pre8
e1a9c08d 607
3028328e 60819991102
609 - Merged change from OpenBSD CVS
610 - One-line cleanup in sshd.c
611
474832c5 61219991030
613 - Integrated debian package support from Dan Brosemer <odin@linuxfreak.com>
69256d9d 614 - Merged latest updates for OpenBSD CVS:
615 - channels.[ch] - remove broken x11 fix and document istate/ostate
616 - ssh-agent.c - call setsid() regardless of argv[]
617 - ssh.c - save a few lines when disabling rhosts-{rsa-}auth
618 - Documentation cleanups
619 - Renamed README -> README.Ylonen
620 - Renamed README.openssh ->README
474832c5 621
339660f6 62219991029
623 - Renamed openssh* back to ssh* at request of Theo de Raadt
624 - Incorporated latest changes from OpenBSD's CVS
625 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
626 - Integrated PAM env patch from Nalin Dahyabhai <nalin.dahyabhai@pobox.com>
549b3eed 627 - Make distclean now removed configure script
628 - Improved PAM logging
629 - Added some debug() calls for PAM
4ecd19ea 630 - Removed redundant subdirectories
631 - Integrated part of a patch from Dan Brosemer <odin@linuxfreak.com> for
632 building on Debian.
242588e6 633 - Fixed off-by-one error in PAM env patch
634 - Released 1.2pre6
339660f6 635
5881cd60 63619991028
637 - Further PAM enhancements.
638 - Much cleaner
639 - Now uses account and session modules for all logins.
640 - Integrated patch from Dan Brosemer <odin@linuxfreak.com>
641 - Build fixes
642 - Autoconf
643 - Change binary names to open*
644 - Fixed autoconf script to detect PAM on RH6.1
645 - Added tests for libpwdb, and OpenBSD functions to autoconf
221395b3 646 - Released 1.2pre4
fca82d2e 647
648 - Imported latest OpenBSD CVS code
649 - Updated README.openssh
93f04616 650 - Released 1.2pre5
fca82d2e 651
5881cd60 65219991027
653 - Adapted PAM patch.
654 - Released 1.0pre2
655
656 - Excised my buggy replacements for strlcpy and mkdtemp
657 - Imported correct OpenBSD strlcpy and mkdtemp routines.
658 - Reduced arc4random_stir entropy read to 32 bytes (256 bits)
659 - Picked up correct version number from OpenBSD
660 - Added sshd.pam PAM configuration file
661 - Added sshd.init Redhat init script
662 - Added openssh.spec RPM spec file
663 - Released 1.2pre3
664
66519991026
666 - Fixed include paths of OpenSSL functions
667 - Use OpenSSL MD5 routines
668 - Imported RC4 code from nanocrypt
669 - Wrote replacements for OpenBSD arc4random* functions
670 - Wrote replacements for strlcpy and mkdtemp
671 - Released 1.0pre1
This page took 2.224756 seconds and 5 git commands to generate.