]> andersk Git - openssh.git/blame - ChangeLog
- djm@cvs.openbsd.org 2003/06/12 12:22:47
[openssh.git] / ChangeLog
CommitLineData
b8e04133 120030618
2 - (djm) OpenBSD CVS Sync
3 - markus@cvs.openbsd.org 2003/06/12 07:57:38
4 [monitor.c sshlogin.c sshpty.c]
5 typos; dtucker at zip.com.au
b9ad9d13 6 - djm@cvs.openbsd.org 2003/06/12 12:22:47
7 [LICENCE]
8 mention more copyright holders; ok markus@
b8e04133 9
f5827134 1020030614
11 - (djm) Update license on fake-rfc2553.[ch]; ok itojun@
12
be193d89 1320030611
c12c6ef8 14 - (djm) Mention portable copyright holders in LICENSE
e52ca1e5 15 - (djm) Put licenses on substantial header files
8cb3fa9d 16 - (djm) Sync LICENSE against OpenBSD
be193d89 17 - (djm) OpenBSD CVS Sync
18 - jmc@cvs.openbsd.org 2003/06/10 09:12:11
19 [scp.1 sftp-server.8 ssh.1 ssh-add.1 ssh-agent.1 ssh_config.5]
20 [sshd.8 sshd_config.5 ssh-keygen.1 ssh-keyscan.1 ssh-keysign.8]
21 - section reorder
22 - COMPATIBILITY merge
23 - macro cleanup
24 - kill whitespace at EOL
25 - new sentence, new line
26 ssh pages ok markus@
0daa6547 27 - deraadt@cvs.openbsd.org 2003/06/10 22:20:52
28 [packet.c progressmeter.c]
29 mostly ansi cleanup; pval ok
1432b5c4 30 - jakob@cvs.openbsd.org 2003/06/11 10:16:16
31 [sshconnect.c]
32 clean up check_host_key() and improve SSHFP feedback. ok markus@
cc263107 33 - jakob@cvs.openbsd.org 2003/06/11 10:18:47
34 [dns.c]
35 sync with check_host_key() change
ca719034 36 - djm@cvs.openbsd.org 2003/06/11 11:18:38
37 [authfd.c authfd.h ssh-add.c ssh-agent.c]
38 make agent constraints (lifetime, confirm) work with smartcard keys;
39 ok markus@
be193d89 40
41
8a547250 4220030609
43 - (djm) Sync README.smartcard with OpenBSD -current
a1864983 44 - (djm) Re-merge OpenSC info into README.smartcard
8a547250 45
f5db6a03 4620030606
47 - (dtucker) [uidswap.c] Fix setreuid and add missing args to fatal(). ok djm@
48
02e2a074 4920030605
50 - (djm) Support AI_NUMERICHOST in fake-getaddrinfo.c. Needed for recent
51 canohost.c changes.
688eed4a 52 - (djm) Implement paranoid priv dropping checks, based on:
53 "SetUID demystified" - Hao Chen, David Wagner and Drew Dean
54 Proceedings of USENIX Security Symposium 2002
d6bd2b5a 55 - (djm) Don't use xmalloc() or pull in toplevel headers in fake-* code
52d58495 56 - (djm) Merge all the openbsd/fake-* into fake-rfc2553.[ch]
57c917f8 57 - (djm) Bug #588 - Add scard-opensc.o back to Makefile.in
58 Patch from larsch@trustcenter.de
7b7f164b 59 - (djm) Bug #589 - scard-opensc: load only keys with a private keys
60 Patch from larsch@trustcenter.de
4ed465ec 61 - (dtucker) Add includes.h to fake-rfc2553.c so it will build.
e932f447 62 - (dtucker) Define EAI_NONAME in fake-rfc2553.h (used by fake-rfc2553.c).
02e2a074 63
b08a39ff 6420030604
d60e487c 65 - (djm) Bug #573 - Remove unneeded Krb headers and compat goop. Patch from
66 simon@sxw.org.uk (Also matches a change in OpenBSD a while ago)
8acdec60 67 - (djm) Bug #577 - wrong flag in scard-opensc.c sc_private_decrypt.
11f1e60e 68 Patch from larsch@trustcenter.de; ok markus@
69 - (djm) Bug #584: scard-opensc.c doesn't work without PIN. Patch from
70 larsch@trustcenter.de; ok markus@
d453a600 71 - (djm) OpenBSD CVS Sync
72 - djm@cvs.openbsd.org 2003/06/04 08:25:18
73 [sshconnect.c]
74 disable challenge/response and keyboard-interactive auth methods
75 upon hostkey mismatch. based on patch from fcusack AT fcusack.com.
76 bz #580; ok markus@
ee50371d 77 - djm@cvs.openbsd.org 2003/06/04 10:23:48
78 [sshd.c]
79 remove duplicated group-dropping code; ok markus@
b08a39ff 80 - djm@cvs.openbsd.org 2003/06/04 12:03:59
81 [serverloop.c]
82 remove bitrotten commet; ok markus@
cf3248b8 83 - djm@cvs.openbsd.org 2003/06/04 12:18:49
84 [scp.c]
85 ansify; ok markus@
0f764b2f 86 - djm@cvs.openbsd.org 2003/06/04 12:40:39
87 [scp.c]
88 kill ssh process upon receipt of signal, bz #241.
89 based on patch from esb AT hawaii.edu; ok markus@
1b558925 90 - djm@cvs.openbsd.org 2003/06/04 12:41:22
91 [sftp.c]
92 kill ssh process on receipt of signal; ok markus@
fba33e81 93 - (djm) Update to fix of bug #584: lock card before return.
94 From larsch@trustcenter.de
8d9bb5dd 95 - (djm) Always use mysignal() for SIGALRM
d60e487c 96
3a2b2b44 9720030603
98 - (djm) Replace setproctitle replacement with code derived from
99 UCB sendmail
c5a7d788 100 - (djm) OpenBSD CVS Sync
101 - markus@cvs.openbsd.org 2003/06/02 09:17:34
102 [auth2-hostbased.c auth.c auth-options.c auth-rhosts.c auth-rh-rsa.c]
103 [canohost.c monitor.c servconf.c servconf.h session.c sshd_config]
104 [sshd_config.5]
105 deprecate VerifyReverseMapping since it's dangerous if combined
106 with IP based access control as noted by Mike Harding; replace with
107 a UseDNS option, UseDNS is on by default and includes the
108 VerifyReverseMapping check; with itojun@, provos@, jakob@ and deraadt@
109 ok deraadt@, djm@
d981089c 110 - millert@cvs.openbsd.org 2003/06/03 02:56:16
111 [scp.c]
112 Remove the advertising clause in the UCB license which Berkeley
113 rescinded 22 July 1999. Proofed by myself and Theo.
c5a7d788 114 - (djm) Fix portable-specific uses of verify_reverse_mapping too
3e67f7df 115 - (djm) Sync openbsd-compat with OpenBSD CVS.
484d59c7 116 - No more 4-term BSD licenses in linked code
5d8ca8c7 117 - (dtucker) [port-aix.c bsd-cray.c] Fix uses of verify_reverse_mapping.
3a2b2b44 118
aff561f9 11920030602
120 - (djm) Fix segv from bad reordering in auth-pam.c
416c732d 121 - (djm) Always use saved_argv in sshd.c as compat_init_setproctitle may
122 clobber
1b7342ab 123 - (tim) openbsd-compat/xmmap.[ch] License clarifications. Add missing
124 CVS ID.
8862e142 125 - (djm) Remove "noip6" option from RedHat spec file. This may now be
126 set at runtime using AddressFamily option.
58ba3cb7 127 - (djm) Fix use of macro before #define in cipher-aes.c
382fe2fa 128 - (djm) Sync license on openbsd-compat/bindresvport.c with OpenBSD CVS
b0545fe6 129 - (djm) OpenBSD CVS Sync
130 - djm@cvs.openbsd.org 2003/05/26 12:54:40
131 [sshconnect.c]
132 fix format strings; ok markus@
fa5120a0 133 - deraadt@cvs.openbsd.org 2003/05/29 16:58:45
134 [sshd.c uidswap.c]
135 seteuid and setegid; markus ok
0f92946c 136 - jakob@cvs.openbsd.org 2003/06/02 08:31:10
137 [ssh_config.5]
138 VerifyHostKeyDNS is v2 only. ok markus@
aff561f9 139
4f178be8 14020030530
141 - (dtucker) Add missing semicolon in md5crypt.c, patch from openssh at
142 roumenpetrov.info
eabb99c6 143 - (dtucker) Define SSHD_ACQUIRES_CTTY for NCR MP-RAS and Reliant Unix.
4f178be8 144
4881aebb 14520030526
146 - (djm) Avoid auth2-chall.c warning when compiling without
147 PAM, BSD_AUTH and SKEY
148
5b0fe364 14920030525
150- (djm) OpenBSD CVS Sync
151 - djm@cvs.openbsd.org 2003/05/24 09:02:22
152 [log.c]
153 pass logged data through strnvis; ok markus
b9ed513a 154 - djm@cvs.openbsd.org 2003/05/24 09:30:40
155 [authfile.c monitor.c sftp-common.c sshpty.c]
156 cast some types for printing; ok markus@
5b0fe364 157
44c78996 15820030524
159 - (dtucker) Correct --osfsia in INSTALL. Patch by skeleten at shillest.net
160
d83ebe4a 16120030523
162 - (djm) Use VIS_SAFE on logged strings rather than default strnvis
163 encoding (which encodes many more characters)
bd47824b 164 - OpenBSD CVS Sync
165 - jmc@cvs.openbsd.org 2003/05/20 12:03:35
166 [sftp.1]
167 - new sentence, new line
168 - added .Xr's
169 - typos
170 ok djm@
3cbc677d 171 - jmc@cvs.openbsd.org 2003/05/20 12:09:31
172 [ssh.1 ssh_config.5 sshd.8 sshd_config.5 ssh-keygen.1]
173 new sentence, new line
da54f5be 174 - djm@cvs.openbsd.org 2003/05/23 08:29:30
175 [sshconnect.c]
176 fix leak; ok markus@
d83ebe4a 177
c453493f 17820030520
179 - (djm) OpenBSD CVS Sync
180 - deraadt@cvs.openbsd.org 2003/05/18 23:22:01
181 [log.c]
182 use syslog_r() in a signal handler called place; markus ok
79d4fc55 183 - (djm) Configure logic to detect syslog_r and friends
c453493f 184
acb50584 18520030519
186 - (djm) Sync auth-pam.h with what we actually implement
187
18820030518
5ff453c0 189 - (djm) Return of the dreaded PAM_TTY_KLUDGE, which went missing in
190 recent merge
f811e52a 191 - (djm) OpenBSD CVS Sync
192 - djm@cvs.openbsd.org 2003/05/16 03:27:12
193 [readconf.c ssh_config ssh_config.5 ssh-keysign.c]
194 add AddressFamily option to ssh_config (like -4, -6 on commandline).
195 Portable bug #534; ok markus@
013b1214 196 - itojun@cvs.openbsd.org 2003/05/17 03:25:58
197 [auth-rhosts.c]
198 just in case, put numbers to sscanf %s arg.
25b66522 199 - markus@cvs.openbsd.org 2003/05/17 04:27:52
200 [cipher.c cipher-ctr.c myproposal.h]
201 experimental support for aes-ctr modes from
202 http://www.ietf.org/internet-drafts/draft-ietf-secsh-newmodes-00.txt
203 ok djm@
25351757 204 - (djm) Remove IPv4 by default hack now that we can specify AF in config
3bf784bc 205 - (djm) Tidy and trim TODO
bffa6723 206 - (djm) Sync openbsd-compat/ with OpenBSD CVS head
9901cb37 207 - (djm) Big KNF on openbsd-compat/
f1da2b8b 208 - (djm) KNF on md5crypt.[ch]
209 - (djm) KNF on auth-sia.[ch]
5ff453c0 210
f123055b 21120030517
212 - (bal) strcat -> strlcat on openbsd-compat/realpath.c (rev 1.8 OpenBSD)
213
c936c243 21420030516
215 - (djm) OpenBSD CVS Sync
216 - djm@cvs.openbsd.org 2003/05/15 13:52:10
217 [ssh.c]
218 Make "ssh -V" print the OpenSSL version in a human readable form. Patch
219 from Craig Leres (mindrot at ee.lbl.gov); ok markus@
a2144546 220 - jakob@cvs.openbsd.org 2003/05/15 14:02:47
221 [readconf.c servconf.c]
222 warn for unsupported config option. ok markus@
5bdfde81 223 - markus@cvs.openbsd.org 2003/05/15 14:09:21
224 [auth2-krb5.c]
225 fix 64bit issue; report itojun@
09ab3296 226 - djm@cvs.openbsd.org 2003/05/15 14:55:25
227 [readconf.c readconf.h ssh_config ssh_config.5 sshconnect.c]
228 add a ConnectTimeout option to ssh, based on patch from
229 Jean-Charles Longuet (jclonguet at free.fr); portable #207 ok markus@
b06b11ad 230 - (djm) Add warning for UsePAM when built without PAM support
7be625e1 231 - (djm) A few type mismatch fixes from Bug #565
0eb6370a 232 - (djm) Guard free_pam_environment against NULL argument. Works around
233 HP/UX PAM problems debugged by dtucker
c936c243 234
7efc7f57 23520030515
236 - (djm) OpenBSD CVS Sync
237 - jmc@cvs.openbsd.org 2003/05/14 13:11:56
238 [ssh-agent.1]
239 setup -> set up;
240 from wiz@netbsd
21289cd0 241 - jakob@cvs.openbsd.org 2003/05/14 18:16:20
242 [key.c key.h readconf.c readconf.h ssh_config.5 sshconnect.c]
243 [dns.c dns.h README.dns ssh-keygen.1 ssh-keygen.c]
244 add experimental support for verifying hos keys using DNS as described
245 in draft-ietf-secsh-dns-xx.txt. more information in README.dns.
246 ok markus@ and henning@
16a79097 247 - markus@cvs.openbsd.org 2003/05/14 22:24:42
248 [clientloop.c session.c ssh.1]
249 allow to send a BREAK to the remote system; ok various
b8c2031b 250 - markus@cvs.openbsd.org 2003/05/15 00:28:28
251 [sshconnect2.c]
252 cleanup unregister of per-method packet handlers; ok djm@
d0ec7f42 253 - jakob@cvs.openbsd.org 2003/05/15 01:48:10
254 [readconf.c readconf.h servconf.c servconf.h]
255 always parse kerberos options. ok djm@ markus@
b414a17b 256 - jakob@cvs.openbsd.org 2003/05/15 02:27:15
257 [dns.c]
258 add missing freerrset
3b6e3da9 259 - markus@cvs.openbsd.org 2003/05/15 03:08:29
260 [cipher.c cipher-bf1.c cipher-aes.c cipher-3des1.c]
261 split out custom EVP ciphers
02159d9b 262 - djm@cvs.openbsd.org 2003/05/15 03:10:52
263 [ssh-keygen.c]
264 avoid warning; ok jakob@
4a26f5c5 265 - mouring@cvs.openbsd.org 2003/05/15 03:39:07
266 [sftp-int.c]
267 Make put/get (globed and nonglobed) code more consistant. OK djm@
c44f10c6 268 - mouring@cvs.openbsd.org 2003/05/15 03:43:59
dc69f53c 269 [sftp-int.c sftp.c]
c44f10c6 270 Teach ls how to display multiple column display and allow users
271 to return to single column format via 'ls -1'. OK @djm
1457e7ff 272 - jakob@cvs.openbsd.org 2003/05/15 04:08:44
273 [readconf.c servconf.c]
274 disable kerberos when not supported. ok markus@
861f0365 275 - markus@cvs.openbsd.org 2003/05/15 04:08:41
276 [ssh.1]
277 ~B is ssh2 only
d0ec7f42 278 - (djm) Always parse UsePAM
3e05e934 279 - (djm) Configure glue for DNS support (code doesn't work in portable yet)
4460d509 280 - (djm) Import getrrsetbyname() function from OpenBSD libc (for DNS support)
86ee6794 281 - (djm) Tidy Makefile clean targets
2636769c 282 - (djm) Adapt README.dns for portable
2d2e4a34 283 - (djm) Avoid uuencode.c warnings
1457e7ff 284 - (djm) Enable UsePAM when built --with-pam
67467c30 285 - (djm) Only build getrrsetbyname replacement when using --with-dns
f420d2ba 286 - (djm) Bug #529: sshd doesn't work correctly after SIGHUP (copy argv
287 correctly)
3c49ef10 288 - (djm) Bug #444: Wrong paths after reconfigure
321735c7 289 - (dtucker) HP-UX needs to include <sys/strtio.h> for TIOCSBRK
f420d2ba 290
dd3ebb5a 29120030514
292 - (djm) Bug #117: Don't lie to PAM about username
0608f8a7 293 - (djm) RCSID sync w/ OpenBSD
204fde99 294 - (djm) OpenBSD CVS Sync
295 - djm@cvs.openbsd.org 2003/04/09 12:00:37
296 [readconf.c]
297 strip trailing whitespace from config lines before parsing.
298 Fixes bz 528; ok markus@
18ae3c67 299 - markus@cvs.openbsd.org 2003/04/12 10:13:57
300 [cipher.c]
301 hide cipher details; ok djm@
45c42d58 302 - markus@cvs.openbsd.org 2003/04/12 10:15:36
303 [misc.c]
304 debug->debug2
c825cd79 305 - naddy@cvs.openbsd.org 2003/04/12 11:40:15
306 [ssh.1]
307 document -V switch, fix wording; ok markus@
3e131a6d 308 - markus@cvs.openbsd.org 2003/04/14 14:17:50
309 [channels.c sshconnect.c sshd.c ssh-keyscan.c]
310 avoid hardcoded SOCK_xx; with itojun@; should allow ssh over SCTP
927e9f8b 311 - mouring@cvs.openbsd.org 2003/04/14 21:31:27
312 [sftp-int.c]
313 Missing globfree(&g) in process_put() spotted by Vince Brimhall
314 <VBrimhall@novell.com>. ok@ Theo
315 - markus@cvs.openbsd.org 2003/04/16 14:35:27
316 [auth.h]
317 document struct Authctxt; with solar
b9e5aff6 318 - deraadt@cvs.openbsd.org 2003/04/26 04:29:49
319 [ssh-keyscan.c]
320 -t in usage(); rogier@quaak.org
9a26a6e2 321 - mouring@cvs.openbsd.org 2003/04/30 01:16:20
322 [sshd.8 sshd_config.5]
323 Escape ?, * and ! in .Ql for nroff compatibility. OpenSSH Portable
324 Bug #550 and * escaping suggested by jmc@.
09dc8896 325 - david@cvs.openbsd.org 2003/04/30 20:41:07
326 [sshd.8]
327 fix invalid .Pf macro usage introduced in previous commit
328 ok jmc@ mouring@
3566c73c 329 - markus@cvs.openbsd.org 2003/05/11 16:56:48
330 [authfile.c ssh-keygen.c]
331 change key_load_public to try to read a public from:
332 rsa1 private or rsa1 public and ssh2 keys.
333 this makes ssh-keygen -e fail for ssh1 keys more gracefully
334 for example; report from itojun (netbsd pr 20550).
0d942eff 335 - markus@cvs.openbsd.org 2003/05/11 20:30:25
336 [channels.c clientloop.c serverloop.c session.c ssh.c]
337 make channel_new() strdup the 'remote_name' (not the caller); ok theo
43348518 338 - markus@cvs.openbsd.org 2003/05/12 16:55:37
339 [sshconnect2.c]
340 for pubkey authentication try the user keys in the following order:
341 1. agent keys that are found in the config file
342 2. other agent keys
343 3. keys that are only listed in the config file
344 this helps when an agent has many keys, where the server might
345 close the connection before the correct key is used. report & ok pb@
dc109cfe 346 - markus@cvs.openbsd.org 2003/05/12 18:35:18
347 [ssh-keyscan.1]
348 typo: DSA keys are of type ssh-dss; Brian Poole
81466908 349 - markus@cvs.openbsd.org 2003/05/14 00:52:59
350 [ssh2.h]
351 ranges for per auth method messages
352 - djm@cvs.openbsd.org 2003/05/14 01:00:44
353 [sftp.1]
354 emphasise the batchmode functionality and make reference to pubkey auth,
355 both of which are FAQs; ok markus@
802e01b8 356 - markus@cvs.openbsd.org 2003/05/14 02:15:47
357 [auth2.c monitor.c sshconnect2.c auth2-krb5.c]
358 implement kerberos over ssh2 ("kerberos-2@ssh.com"); tested with jakob@
359 server interops with commercial client; ok jakob@ djm@
72c5fe79 360 - jmc@cvs.openbsd.org 2003/05/14 08:25:39
361 [sftp.1]
362 - better formatting in SYNOPSIS
363 - whitespace at EOL
364 ok djm@
3a39206f 365 - markus@cvs.openbsd.org 2003/05/14 08:57:49
366 [monitor.c]
367 http://bugzilla.mindrot.org/show_bug.cgi?id=560
368 Privsep child continues to run after monitor killed.
369 Pass monitor signals through to child; Darren Tucker
751092f9 370 - (djm) Make portable build with MIT krb5 (some issues remain)
7fceb20d 371 - (djm) Add new UsePAM configuration directive to allow runtime control
372 over usage of PAM. This allows non-root use of sshd when built with
373 --with-pam
817e6d38 374 - (djm) Die screaming if start_pam() is called when UsePAM=no
83ccf11a 375 - (djm) Avoid KrbV leak for MIT Kerberos
b1848832 376 - (dtucker) Set ai_socktype and ai_protocol in fake-getaddrinfo.c. ok djm@
fa065de2 377 - (djm) Bug #258: sscanf("[0-9]") -> sscanf("[0123456789]") for portability
dd3ebb5a 378
91f3aa9b 37920030512
380 - (djm) Redhat spec: Don't install profile.d scripts when not
381 building with GNOME/GTK askpass (patch from bet@rahul.net)
382
5def520a 38320030510
384 - (dtucker) Bug #318: Create ssh_prng_cmds.out during "make" rather than
385 "make install". Patch by roth@feep.net.
ad84c479 386 - (dtucker) Bug #536: Test for and work around openpty/controlling tty
387 problem on Linux (fixes "could not set controlling tty" errors).
05114c74 388 - (djm) Merge FreeBSD PAM code: replaces PAM password auth kludge with
389 proper challenge-response module
23ab1f36 390 - (djm) 2-clause license on loginrec.c, with permission from
391 andre@ae-35.com
5def520a 392
43ce025d 39320030504
dd594f99 394 - (dtucker) Bug #497: Move #include of bsd-cygwin_util.h to openbsd-compat.h.
395 Patch from vinschen@redhat.com.
43ce025d 396
2cd5dbba 39720030503
398 - (dtucker) Add missing "void" to record_failed_login in bsd-cray.c. Noted
399 by wendyp@cray.com.
400
bf7c1e6c 40120030502
402 - (dtucker) Bug #544: ignore invalid cmsg_type on Linux 2.0 kernels,
403 privsep should now work.
73d9dad3 404 - (dtucker) Move handling of bad password authentications into a platform
990278ef 405 specific record_failed_login() function (affects AIX & Unicos). ok mouring@
bf7c1e6c 406
68ece370 40720030429
408 - (djm) Add back radix.o (used by AFS support), after it went missing from
409 Makefile many moons ago
410 - (djm) Apply "owl-always-auth" patch from Openwall/Solar Designer
411 - (djm) Fix blibpath specification for AIX/gcc
412 - (djm) Some systems have basename in -lgen. Fix from ayamura@ayamura.org
413
ded9dd18 41420030428
415 - (bal) [defines.h progressmeter.c scp.c] Some more culling of non 64bit
416 hacked code.
417
aceb0423 41820030427
419 - (bal) Bug #541: return; was dropped by mistake. Reported by
420 furrier@iglou.com
c8a50a34 421 - (bal) Since we don't support platforms lacking u_int_64. We may
422 as well clean out some of those evil #ifdefs
9a6fee8b 423 - (bal) auth1.c minor resync while looking at the code.
d7cf277b 424 - (bal) auth2.c same changed as above.
aceb0423 425
0a626302 42620030409
427 - (djm) Bug #539: Specify creation mode with O_CREAT for lastlog. Report
428 from matth@eecs.berkeley.edu
d35929b5 429 - (djm) Make the spec work with Redhat 9.0 (which renames sharutils)
ffd7b36b 430 - (djm) OpenBSD CVS Sync
431 - markus@cvs.openbsd.org 2003/04/02 09:48:07
432 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
433 [readconf.h serverloop.c sshconnect2.c]
434 reapply rekeying chage, tested by henning@, ok djm@
16f1b5ca 435 - markus@cvs.openbsd.org 2003/04/02 14:36:26
436 [ssh-keysign.c]
437 potential segfault if KEY_UNSPEC; cjwatson@debian.org; bug #526
6c1bc5c5 438 - itojun@cvs.openbsd.org 2003/04/03 07:25:27
439 [progressmeter.c]
440 $OpenBSD$
441 - itojun@cvs.openbsd.org 2003/04/03 10:17:35
442 [progressmeter.c]
443 remove $OpenBSD$, as other *.c does not have it.
806e4c11 444 - markus@cvs.openbsd.org 2003/04/07 08:29:57
445 [monitor_wrap.c]
446 typo: get correct counters; introduced during rekeying change.
2f5b2528 447 - millert@cvs.openbsd.org 2003/04/07 21:58:05
448 [progressmeter.c]
449 The UCB copyright here is incorrect. This code did not originate
450 at UCB, it was written by Luke Mewburn. Updated the copyright at
451 the author's request. markus@ OK
452 - itojun@cvs.openbsd.org 2003/04/08 20:21:29
453 [*.c *.h]
454 rename log() into logit() to avoid name conflict. markus ok, from
455 netbsd
456 - (djm) XXX - Performed locally using:
457 "perl -p -i -e 's/(\s|^)log\(/$1logit\(/g' *.c *.h"
70e1f62f 458 - hin@cvs.openbsd.org 2003/04/09 08:23:52
459 [servconf.c]
460 Don't include <krb.h> when compiling with Kerberos 5 support
2f5b2528 461 - (djm) Fix up missing include for packet.c
a3568201 462 - (djm) Fix missed log => logit occurance (reference by function pointer)
0a626302 463
4d0cb2e5 46420030402
465 - (bal) if IP_TOS is not found or broken don't try to compile in
466 packet_set_tos() function call. bug #527
467
a4e5acef 46820030401
469 - (djm) OpenBSD CVS Sync
470 - jmc@cvs.openbsd.org 2003/03/28 10:11:43
471 [scp.1 sftp.1 ssh.1 ssh-add.1 ssh-agent.1 ssh_config.5 sshd_config.5]
472 [ssh-keygen.1 ssh-keyscan.1 ssh-keysign.8]
473 - killed whitespace
474 - new sentence new line
475 - .Bk for arguments
476 ok markus@
177f584b 477 - markus@cvs.openbsd.org 2003/04/01 10:10:23
478 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
479 [readconf.h serverloop.c sshconnect2.c]
480 rekeying bugfixes and automatic rekeying:
481 * both client and server rekey _automatically_
482 (a) after 2^31 packets, because after 2^32 packets
483 the sequence number for packets wraps
484 (b) after 2^(blocksize_in_bits/4) blocks
485 (see: draft-ietf-secsh-newmodes-00.txt)
486 (a) and (b) are _enabled_ by default, and only disabled for known
487 openssh versions, that don't support rekeying properly.
488 * client option 'RekeyLimit'
489 * do not reply to requests during rekeying
490 - markus@cvs.openbsd.org 2003/04/01 10:22:21
491 [clientloop.c monitor.c monitor_wrap.c packet.c packet.h readconf.c]
492 [readconf.h serverloop.c sshconnect2.c]
493 backout rekeying changes (for 3.6.1)
519bdfe8 494 - markus@cvs.openbsd.org 2003/04/01 10:31:26
495 [compat.c compat.h kex.c]
496 bugfix causes stalled connections for ssh.com < 3.0; noticed by ho@;
497 tested by ho@ and myself
9dd240a3 498 - markus@cvs.openbsd.org 2003/04/01 10:56:46
499 [version.h]
500 3.6.1
ac01b518 501 - (djm) Crank spec file versions
b32453fe 502 - (djm) Release 3.6.1p1
a4e5acef 503
fd77a40f 50420030326
505 - (djm) OpenBSD CVS Sync
506 - deraadt@cvs.openbsd.org 2003/03/26 04:02:51
507 [sftp-server.c]
508 one last fix to the tree: race fix broke stuff; pr 3169;
509 srp@srparish.net, help from djm
510
8021857c 51120030325
512 - (djm) Fix getpeerid support for 64 bit BE systems. From
513 Arnd Bergmann <arndb@de.ibm.com>
514
cdb64c4d 51520030324
516 - (djm) OpenBSD CVS Sync
517 - markus@cvs.openbsd.org 2003/03/23 19:02:00
518 [monitor.c]
519 unbreak rekeying for privsep; ok millert@
520 - Release 3.6p1
62086365 521 - Fix sshd BindAddress and -b options for systems using fake-getaddrinfo.
522 Report from murple@murple.net, diagnosis from dtucker@zip.com.au
cdb64c4d 523
0b202697 524$Id$
This page took 0.578286 seconds and 5 git commands to generate.