]> andersk Git - openssh.git/blame - ChangeLog
- Propogate LD through to Makefile
[openssh.git] / ChangeLog
CommitLineData
4696775a 120000316
2 - Fixed configure not passing LDFLAGS to Solaris. Report from David G.
3 Hesprich <dghespri@sprintparanet.com>
d423d822 4 - Propogate LD through to Makefile
4696775a 5
cb0b7ea4 620000315
7 - Fix broken CFLAGS handling during search for OpenSSL. Fixes va_list
8 problems with gcc/Solaris.
db55a3ea 9 - Don't free argument to putenv() after use (in setenv() replacement).
10 Report from Seigo Tanimura <tanimura@r.dl.itc.u-tokyo.ac.jp>
13652e52 11 - Created contrib/ subdirectory. Included helpers from Phil Hands'
12 Debian package, README file and chroot patch from Ricardo Cerqueira
13 <rmcc@clix.pt>
14 - Moved gnome-ssh-askpass.c to contrib directory and reomved config
15 option.
16 - Slight cleanup to doc files
b14b2ae7 17 - Configure fix from Bratislav ILICH <bilic@zepter.ru>
cb0b7ea4 18
a8ed9fd9 1920000314
20 - Include macro for IN6_IS_ADDR_V4MAPPED. Report from
21 peter@frontierflying.com
84afc958 22 - Include /usr/local/include and /usr/local/lib for systems that don't
23 do it themselves
24 - -R/usr/local/lib for Solaris
25 - Fix RSAref detection
26 - Fix IN6_IS_ADDR_V4MAPPED macro
a8ed9fd9 27
bcf36c78 2820000311
29 - Detect RSAref
43e48848 30 - OpenBSD CVS change
31 [sshd.c]
32 - disallow guessing of root password
867dbf40 33 - More configure fixes
80faa19f 34 - IPv6 workarounds from Hideaki YOSHIFUJI <yoshfuji@ecei.tohoku.ac.jp>
bcf36c78 35
c8d54615 3620000309
37 - OpenBSD CVS updates to v1.2.3
38 [ssh.h atomicio.c]
39 - int atomicio -> ssize_t (for alpha). ok deraadt@
40 [auth-rsa.c]
41 - delay MD5 computation until client sends response, free() early, cleanup.
42 [cipher.c]
43 - void* -> unsigned char*, ok niels@
44 [hostfile.c]
45 - remove unused variable 'len'. fix comments.
46 - remove unused variable
47 [log-client.c log-server.c]
48 - rename a cpp symbol, to avoid param.h collision
49 [packet.c]
50 - missing xfree()
51 - getsockname() requires initialized tolen; andy@guildsoftware.com
52 - use getpeername() in packet_connection_is_on_socket(), fixes sshd -i;
53 from Holger.Trapp@Informatik.TU-Chemnitz.DE
54 [pty.c pty.h]
55 - register cleanup for pty earlier. move code for pty-owner handling to
56 pty.c ok provos@, dugsong@
57 [readconf.c]
58 - turn off x11-fwd for the client, too.
59 [rsa.c]
60 - PKCS#1 padding
61 [scp.c]
62 - allow '.' in usernames; from jedgar@fxp.org
63 [servconf.c]
64 - typo: ignore_user_known_hosts int->flag; naddy@mips.rhein-neckar.de
65 - sync with sshd_config
66 [ssh-keygen.c]
67 - enable ssh-keygen -l -f ~/.ssh/known_hosts, ok deraadt@
68 [ssh.1]
69 - Change invalid 'CHAT' loglevel to 'VERBOSE'
70 [ssh.c]
71 - suppress AAAA query host when '-4' is used; from shin@nd.net.fujitsu.co.jp
72 - turn off x11-fwd for the client, too.
73 [sshconnect.c]
74 - missing xfree()
75 - retry rresvport_af(), too. from sumikawa@ebina.hitachi.co.jp.
76 - read error vs. "Connection closed by remote host"
77 [sshd.8]
78 - ie. -> i.e.,
79 - do not link to a commercial page..
80 - sync with sshd_config
81 [sshd.c]
82 - no need for poll.h; from bright@wintelcom.net
83 - log with level log() not fatal() if peer behaves badly.
84 - don't panic if client behaves strange. ok deraadt@
85 - make no-port-forwarding for RSA keys deny both -L and -R style fwding
86 - delay close() of pty until the pty has been chowned back to root
87 - oops, fix comment, too.
88 - missing xfree()
89 - move XAUTHORITY to subdir. ok dugsong@. fixes debian bug #57907, too.
90 (http://cgi.debian.org/cgi-bin/bugreport.cgi?archive=no&bug=57907)
91 - register cleanup for pty earlier. move code for pty-owner handling to
92 pty.c ok provos@, dugsong@
93 - create x11 cookie file
94 - fix pr 1113, fclose() -> pclose(), todo: remote popen()
95 - version 1.2.3
96 - Cleaned up
d8223847 97 - Removed warning workaround for Linux and devpts filesystems (no longer
98 required after OpenBSD updates)
c8d54615 99
07055445 10020000308
101 - Configure fix from Hiroshi Takekawa <takekawa@sr3.t.u-tokyo.ac.jp>
102
10320000307
104 - Released 1.2.2p1
105
9c8c3fc6 10620000305
107 - Fix DEC compile fix
54096dcc 108 - Explicitly seed OpenSSL's PRNG before checking rsa_alive()
aa6bd60a 109 - Check for getpagesize in libucb.a if not found in libc. Fix for old
110 Solaris from Andre Lucas <andre.lucas@dial.pipex.com>
9fc7867e 111 - Check for libwrap if --with-tcp-wrappers option specified. Suggestion
112 Mate Wierdl <mw@moni.msci.memphis.edu>
9c8c3fc6 113
6bf4d066 11420000303
115 - Added "make host-key" target, Suggestion from Dominik Brettnacher
116 <domi@saargate.de>
16218745 117 - Don't permanently fail on bind() if getaddrinfo has more choices left for
118 us. Needed to work around messy IPv6 on Linux. Patch from Arkadiusz
119 Miskiewicz <misiek@pld.org.pl>
22fa590f 120 - DEC Unix compile fix from David Del Piero <David.DelPiero@qed.qld.gov.au>
121 - Manpage fix from David Del Piero <David.DelPiero@qed.qld.gov.au>
6bf4d066 122
a0391976 12320000302
124 - Big cleanup of autoconf code
125 - Rearranged to be a little more logical
126 - Added -R option for Solaris
127 - Rewrote OpenSSL detection code. Now uses AC_TRY_RUN with a test program
128 to detect library and header location _and_ ensure library has proper
129 RSA support built in (this is a problem with OpenSSL 0.9.5).
817175bc 130 - Applied pty cleanup patch from markus.friedl@informatik.uni-erlangen.de
0a1718dc 131 - Avoid warning message with Unix98 ptys
3276571c 132 - Warning was valid - possible race condition on PTYs. Avoided using
133 platform-specific code.
134 - Document some common problems
81eef326 135 - Allow root access to any key. Patch from
136 markus.friedl@informatik.uni-erlangen.de
a0391976 137
f55afe71 13820000207
139 - Removed SOCKS code. Will support through a ProxyCommand.
140
d07d1c58 14120000203
142 - Fixed SEGVs in authloop, fix from vbzoli@hbrt.hu
d581b7ae 143 - Add --with-ssl-dir option
d07d1c58 144
9d5f374b 14520000202
146 - Fix lastlog code for directory based lastlogs. Fix from Josh Durham
147 <jmd@aoe.vt.edu>
6b1f3fdb 148 - Documentation fixes from HARUYAMA Seigo <haruyama@nt.phys.s.u-tokyo.ac.jp>
149 - Added URLs to Japanese translations of documents by HARUYAMA Seigo
150 <haruyama@nt.phys.s.u-tokyo.ac.jp>
9d5f374b 151
bc8c2601 15220000201
153 - Use socket pairs by default (instead of pipes). Prevents race condition
154 on several (buggy) OSs. Report and fix from tridge@linuxcare.com
155
69c76614 15620000127
157 - Seed OpenSSL's random number generator before generating RSA keypairs
158 - Split random collector into seperate file
aaf2abd7 159 - Compile fix from Andre Lucas <andre.lucas@dial.pipex.com>
69c76614 160
f9507c24 16120000126
162 - Released 1.2.2 stable
163
164 - NeXT keeps it lastlog in /usr/adm. Report from
165 mouring@newton.pconline.com
587120ad 166 - Added note in UPGRADING re interop with commercial SSH using idea.
167 Report from Jim Knoble <jmknoble@pobox.com>
168 - Fix linking order for Kerberos/AFS. Fix from Holget Trapp
169 <Holger.Trapp@Informatik.TU-Chemnitz.DE>
f9507c24 170
bfae20ad 17120000125
172 - Fix NULL pointer dereference in login.c. Fix from Andre Lucas
173 <andre.lucas@dial.pipex.com>
07b0cb78 174 - Reorder PAM initialisation so it does not mess up lastlog. Reported
175 by Andre Lucas <andre.lucas@dial.pipex.com>
9755cbdb 176 - Use preformatted manpages on SCO, report from Gary E. Miller
177 <gem@rellim.com>
178 - New URL for x11-ssh-askpass.
7e31dc81 179 - Fixpaths was missing /etc/ssh_known_hosts. Report from Jim Knoble
180 <jmknoble@pobox.com>
ff8ecdb8 181 - Added 'DESTDIR' option to Makefile to ease package building. Patch from
182 Jim Knoble <jmknoble@pobox.com>
183 - Updated RPM spec files to use DESTDIR
bfae20ad 184
bb58aa4b 18520000124
186 - Pick up version 1.2.2 from OpenBSD CVS (no changes, just version number
187 increment)
188
d45317d8 18920000123
190 - OpenBSD CVS:
191 - [packet.c]
192 getsockname() requires initialized tolen; andy@guildsoftware.com
4c40f834 193 - AIX patch from Matt Richards <v2matt@btv.ibm.com> and David Rankin
194 <drankin@bohemians.lexington.ky.us>
12aa90af 195 - Fix lastlog support, patch from Andre Lucas <andre.lucas@dial.pipex.com>
d45317d8 196
e844f761 19720000122
198 - Fix compilation of bsd-snprintf.c on Solaris, fix from Ben Taylor
199 <bent@clark.net>
c54a6257 200 - Merge preformatted manpage patch from Andre Lucas
201 <andre.lucas@dial.pipex.com>
8eb34e02 202 - Make IPv4 use the default in RPM packages
203 - Irix uses preformatted manpages
1e64903d 204 - Missing htons() in bsd-bindresvport.c, fix from Holger Trapp
205 <Holger.Trapp@Informatik.TU-Chemnitz.DE>
9bc5ddfe 206 - OpenBSD CVS updates:
207 - [packet.c]
208 use getpeername() in packet_connection_is_on_socket(), fixes sshd -i;
209 from Holger.Trapp@Informatik.TU-Chemnitz.DE
210 - [sshd.c]
211 log with level log() not fatal() if peer behaves badly.
212 - [readpass.c]
213 instead of blocking SIGINT, catch it ourselves, so that we can clean
214 the tty modes up and kill ourselves -- instead of our process group
215 leader (scp, cvs, ...) going away and leaving us in noecho mode.
216 people with cbreak shells never even noticed..
399d9d44 217 - [ssh-add.1 ssh-agent.1 ssh-keygen.1 ssh.1 sshd.8]
218 ie. -> i.e.,
e844f761 219
4c8ef3fb 22020000120
221 - Don't use getaddrinfo on AIX
7b2ea3a1 222 - Update to latest OpenBSD CVS:
223 - [auth-rsa.c]
224 - fix user/1056, sshd keeps restrictions; dbt@meat.net
225 - [sshconnect.c]
226 - disable agent fwding for proto 1.3, remove abuse of auth-rsa flags.
227 - destroy keys earlier
d468fc76 228 - split key exchange (kex) and user authentication (user-auth),
229 ok: provos@
7b2ea3a1 230 - [sshd.c]
231 - no need for poll.h; from bright@wintelcom.net
232 - disable agent fwding for proto 1.3, remove abuse of auth-rsa flags.
d468fc76 233 - split key exchange (kex) and user authentication (user-auth),
234 ok: provos@
f3bba493 235 - Big manpage and config file cleanup from Andre Lucas
236 <andre.lucas@dial.pipex.com>
5f4fdfae 237 - Re-added latest (unmodified) OpenBSD manpages
47f9a56a 238 - Doc updates
d468fc76 239 - NetBSD patch from David Rankin <drankin@bohemians.lexington.ky.us> and
240 Christos Zoulas <christos@netbsd.org>
4c8ef3fb 241
082bbfb3 24220000119
20af321f 243 - SCO compile fixes from Gary E. Miller <gem@rellim.com>
082bbfb3 244 - Compile fix from Darren_Hall@progressive.com
59e76f33 245 - Linux/glibc-2.1.2 takes a *long* time to look up names for AF_UNSPEC
246 addresses using getaddrinfo(). Added a configure switch to make the
247 default lookup mode AF_INET
082bbfb3 248
a63a7f37 24920000118
250 - Fixed --with-pid-dir option
51a6baf8 251 - Makefile fix from Gary E. Miller <gem@rellim.com>
976f7e19 252 - Compile fix for HPUX and Solaris from Andre Lucas
253 <andre.lucas@dial.pipex.com>
a63a7f37 254
f914c7fb 25520000117
256 - Clean up bsd-bindresvport.c. Use arc4random() for picking initial
257 port, ignore EINVAL errors (Linux) when searching for free port.
de93b046 258 - Revert __snprintf -> snprintf aliasing. Apparently Solaris
259 __snprintf isn't. Report from Theo de Raadt <theo@cvs.openbsd.org>
9b363e1c 260 - Document location of Redhat PAM file in INSTALL.
80a44451 261 - Fixed X11 forwarding bug on Linux. libc advertises AF_INET6
262 INADDR_ANY_INIT addresses via getaddrinfo, but may not be able to
f4a7cf29 263 deliver (no IPv6 kernel support)
80a44451 264 - Released 1.2.1pre27
f914c7fb 265
f4a7cf29 266 - Fix rresvport_af failure errors (logic error in bsd-bindresvport.c)
cf8ad170 267 - Fix --with-ipaddr-display option test. Fix from Jarno Huuskonen
268 <jhuuskon@hytti.uku.fi>
691a8a9f 269 - Fix hang on logout if processes are still using the pty. Needs
270 further testing.
5957fd29 271 - Patch from Christos Zoulas <christos@zoulas.com>
272 - Try $prefix first when looking for OpenSSL.
273 - Include sys/types.h when including sys/socket.h in test programs
19d9ac2a 274 - Substitute PID directory in sshd.8. Suggestion from Andrew
275 Stribblehill <a.d.stribblehill@durham.ac.uk>
f4a7cf29 276
47e45e44 27720000116
278 - Renamed --with-xauth-path to --with-xauth
279 - Added --with-pid-dir option
280 - Released 1.2.1pre26
281
a82ef8ae 282 - Compilation fix from Kiyokazu SUTO <suto@ks-and-ks.ne.jp>
66be05a1 283 - Fixed broken bugfix for /dev/ptmx on Linux systems which lack
284 openpty(). Report from Kiyokazu SUTO <suto@ks-and-ks.ne.jp>
a82ef8ae 285
5cdfe03f 28620000115
287 - Add --with-xauth-path configure directive and explicit test for
288 /usr/openwin/bin/xauth for Solaris systems. Report from Anders
289 Nordby <anders@fix.no>
290 - Fix incorrect detection of /dev/ptmx on Linux systems that lack
291 openpty. Report from John Seifarth <john@waw.be>
292 - Look for intXX_t and u_intXX_t in sys/bitypes.h if they are not in
293 sys/types.h. Fixes problems on SCO, report from Gary E. Miller
294 <gem@rellim.com>
295 - Use __snprintf and __vnsprintf if they are found where snprintf and
296 vnsprintf are lacking. Suggested by Ben Taylor <bent@shell.clark.net>
297 and others.
298
48e671d5 29920000114
300 - Merged OpenBSD IPv6 patch:
301 - [sshd.c sshd.8 sshconnect.c ssh.h ssh.c servconf.h servconf.c scp.1]
302 [scp.c packet.h packet.c login.c log.c canohost.c channels.c]
303 [hostfile.c sshd_config]
304 ipv6 support: mostly gethostbyname->getaddrinfo/getnameinfo, new
305 features: sshd allows multiple ListenAddress and Port options. note
306 that libwrap is not IPv6-ready. (based on patches from
307 fujiwara@rcac.tdi.co.jp)
308 - [ssh.c canohost.c]
309 more hints (hints.ai_socktype=SOCK_STREAM) for getaddrinfo,
310 from itojun@
311 - [channels.c]
312 listen on _all_ interfaces for X11-Fwd (hints.ai_flags = AI_PASSIVE)
313 - [packet.h]
314 allow auth-kerberos for IPv4 only
315 - [scp.1 sshd.8 servconf.h scp.c]
316 document -4, -6, and 'ssh -L 2022/::1/22'
317 - [ssh.c]
318 'ssh @host' is illegal (null user name), from
319 karsten@gedankenpolizei.de
320 - [sshconnect.c]
321 better error message
322 - [sshd.c]
323 allow auth-kerberos for IPv4 only
324 - Big IPv6 merge:
325 - Cleanup overrun in sockaddr copying on RHL 6.1
326 - Replacements for getaddrinfo, getnameinfo, etc based on versions
327 from patch from KIKUCHI Takahiro <kick@kyoto.wide.ad.jp>
328 - Replacement for missing structures on systems that lack IPv6
329 - record_login needed to know about AF_INET6 addresses
330 - Borrowed more code from OpenBSD: rresvport_af and requisites
331
2598df62 33220000110
333 - Fixes to auth-skey to enable it to use the standard OpenSSL libraries
334
b8a0310d 33520000107
336 - New config.sub and config.guess to fix problems on SCO. Supplied
337 by Gary E. Miller <gem@rellim.com>
b6a98a85 338 - SCO build fix from Gary E. Miller <gem@rellim.com>
2598df62 339 - Released 1.2.1pre25
b8a0310d 340
dfb95100 34120000106
342 - Documentation update & cleanup
343 - Better KrbIV / AFS detection, based on patch from:
344 Holger Trapp <Holger.Trapp@Informatik.TU-Chemnitz.DE>
345
b9795b89 34620000105
347 - Fixed annoying DES corruption problem. libcrypt has been
348 overriding symbols in libcrypto. Removed libcrypt and crypt.h
349 altogether (libcrypto includes its own crypt(1) replacement)
350 - Added platform-specific rules for Irix 6.x. Included warning that
351 they are untested.
352
a1ec4d79 35320000103
354 - Add explicit make rules for files proccessed by fixpaths.
355 - Fix "make install" in RPM spec files. Report from Tenkou N. Hattori
356 <tnh@kondara.org>
607d73e6 357 - Removed "nullok" directive from default PAM configuration files.
358 Added information on enabling EmptyPasswords on openssh+PAM in
359 UPGRADING file.
e02735bb 360 - OpenBSD CVS updates
361 - [ssh-agent.c]
362 cleanup_exit() for SIGTERM/SIGHUP, too. from fgsch@ and
363 dgaudet@arctic.org
364 - [sshconnect.c]
365 compare correct version for 1.3 compat mode
a1ec4d79 366
93c7f644 36720000102
368 - Prevent multiple inclusion of config.h and defines.h. Suggested
369 by Andre Lucas <andre.lucas@dial.pipex.com>
370 - Properly clean up on exit of ssh-agent. Patch from Dean Gaudet
371 <dgaudet@arctic.org>
372
76b8607f 37319991231
374 - Fix password support on systems with a mixture of shadowed and
375 non-shadowed passwords (e.g. NIS). Report and fix from
376 HARUYAMA Seigo <haruyama@nt.phys.s.u-tokyo.ac.jp>
723221b5 377 - Fix broken autoconf typedef detection. Report from Marc G.
378 Fournier <marc.fournier@acadiau.ca>
b92964b7 379 - Fix occasional crash on LinuxPPC. Patch from Franz Sirl
380 <Franz.Sirl-kernel@lauterbach.com>
a6ddc88b 381 - Prevent typedefs from being compiled more than once. Report from
382 Marc G. Fournier <marc.fournier@acadiau.ca>
4811cc0b 383 - Fill in ut_utaddr utmp field. Report from Benjamin Charron
384 <iretd@bigfoot.com>
c43d69a9 385 - Really fix broken default path. Fix from Jim Knoble
386 <jmknoble@pobox.com>
ae3a3d31 387 - Remove test for quad_t. No longer needed.
76a8e733 388 - Released 1.2.1pre24
389
390 - Added support for directory-based lastlogs
391 - Really fix typedefs, patch from Ben Taylor <bent@clark.net>
76b8607f 392
13f825f4 39319991230
394 - OpenBSD CVS updates:
395 - [auth-passwd.c]
396 check for NULL 1st
a5c9cd31 397 - Removed most of the pam code into its own file auth-pam.[ch]. This
398 cleaned up sshd.c up significantly.
76b8607f 399 - PAM authentication was incorrectly interpreting
400 "PermitRootLogin without-password". Report from Matthias Andree
401 <ma@dt.e-technik.uni-dortmund.de
a5c9cd31 402 - Several other cleanups
0bc5b6fb 403 - Merged Dante SOCKS support patch from David Rankin
404 <drankin@bohemians.lexington.ky.us>
405 - Updated documentation with ./configure options
76b8607f 406 - Released 1.2.1pre23
13f825f4 407
c73a0cb5 40819991229
409 - Applied another NetBSD portability patch from David Rankin
410 <drankin@bohemians.lexington.ky.us>
411 - Fix --with-default-path option.
a0f84251 412 - Autodetect perl, patch from David Rankin
413 <drankin@bohemians.lexington.ky.us>
0a2ff95d 414 - Print whether OpenSSH was compiled with RSARef, patch from
415 Nalin Dahyabhai <nalin@thermo.stat.ncsu.edu>
f91bacbd 416 - Calls to pam_setcred, patch from Nalin Dahyabhai
417 <nalin@thermo.stat.ncsu.edu>
e3a93db0 418 - Detect missing size_t and typedef it.
5ab44a92 419 - Rename helper.[ch] to (more appropriate) bsd-misc.[ch]
420 - Minor Makefile cleaning
c73a0cb5 421
b6019d68 42219991228
423 - Replacement for getpagesize() for systems which lack it
70e0115b 424 - NetBSD login.c compile fix from David Rankin
425 <drankin@bohemians.lexington.ky.us>
426 - Fully set ut_tv if present in utmp or utmpx
d94aa2ae 427 - Portability fixes for Irix 5.3 (now compiles OK!)
428 - autoconf and other misc cleanups
ea1970a3 429 - Merged AIX patch from Darren Hall <dhall@virage.org>
430 - Cleaned up defines.h
fa9a2dd6 431 - Released 1.2.1pre22
b6019d68 432
d2dcff5f 43319991227
434 - Automatically correct paths in manpages and configuration files. Patch
435 and script from Andre Lucas <andre.lucas@dial.pipex.com>
436 - Removed credits from README to CREDITS file, updated.
cb807f40 437 - Added --with-default-path to specify custom path for server
438 - Removed #ifdef trickery from acconfig.h into defines.h
36a5b38e 439 - PAM bugfix. PermitEmptyPassword was being ignored.
440 - Fixed PAM config files to allow empty passwords if server does.
441 - Explained spurious PAM auth warning workaround in UPGRADING
21feb5fa 442 - Use last few chars of tty line as ut_id
5a7794be 443 - New SuSE RPM spec file from Chris Saia <csaia@wtower.com>
00e6dd70 444 - OpenBSD CVS updates:
445 - [packet.h auth-rhosts.c]
446 check format string for packet_disconnect and packet_send_debug, too
447 - [channels.c]
448 use packet_get_maxsize for channels. consistence.
d2dcff5f 449
f74efc8d 45019991226
451 - Enabled utmpx support by default for Solaris
452 - Cleanup sshd.c PAM a little more
bc7ea646 453 - Revised RPM package to include Jim Knoble's <jmknoble@pobox.com>
454 X11 ssh-askpass program.
20c43d8c 455 - Disable logging of PAM success and failures, PAM is verbose enough.
456 Unfortunatly there is currently no way to disable auth failure
457 messages. Mention this in UPGRADING file and sent message to PAM
458 developers
83b7f649 459 - OpenBSD CVS update:
460 - [ssh-keygen.1 ssh.1]
461 remove ref to .ssh/random_seed, mention .ssh/environment in
462 .Sh FILES, too
72251cb6 463 - Released 1.2.1pre21
464 - Fixed implicit '.' in default path, report from Jim Knoble
465 <jmknoble@pobox.com>
30a39691 466 - Redhat RPM spec fixes from Jim Knoble <jmknoble@pobox.com>
f74efc8d 467
f498ed15 46819991225
469 - More fixes from Andre Lucas <andre.lucas@dial.pipex.com>
470 - Cleanup of auth-passwd.c for shadow and MD5 passwords
471 - Cleanup and bugfix of PAM authentication code
f74efc8d 472 - Released 1.2.1pre20
473
474 - Merged fixes from Ben Taylor <bent@clark.net>
475 - Fixed configure support for PAM. Reported by Naz <96na@eng.cam.ac.uk>
476 - Disabled logging of PAM password authentication failures when password
477 is empty. (e.g start of authentication loop). Reported by Naz
478 <96na@eng.cam.ac.uk>)
f498ed15 479
48019991223
481 - Merged later HPUX patch from Andre Lucas
482 <andre.lucas@dial.pipex.com>
483 - Above patch included better utmpx support from Ben Taylor
f74efc8d 484 <bent@clark.net>
f498ed15 485
eef6f7e9 48619991222
487 - Fix undefined fd_set type in ssh.h from Povl H. Pedersen
488 <pope@netguide.dk>
ae28776a 489 - Fix login.c breakage on systems which lack ut_host in struct
490 utmp. Reported by Willard Dawson <willard.dawson@sbs.siemens.com>
eef6f7e9 491
a7effaac 49219991221
493 - Integration of large HPUX patch from Andre Lucas
494 <andre.lucas@dial.pipex.com>. Integrating it had a few other
495 benefits:
496 - Ability to disable shadow passwords at configure time
497 - Ability to disable lastlog support at configure time
498 - Support for IP address in $DISPLAY
ae2f7af7 499 - OpenBSD CVS update:
500 - [sshconnect.c]
501 say "REMOTE HOST IDENTIFICATION HAS CHANGED"
59dd7a31 502 - Fix DISABLE_SHADOW support
503 - Allow MD5 passwords even if shadow passwords are disabled
16034de9 504 - Release 1.2.1pre19
a7effaac 505
3f1d9bcd 50619991218
507 - Redhat init script patch from Chun-Chung Chen
508 <cjj@u.washington.edu>
7e1c2490 509 - Avoid breakage on systems without IPv6 headers
3f1d9bcd 510
60d804c8 51119991216
512 - Makefile changes for Solaris from Peter Kocks
513 <peter.kocks@baygate.com>
89cafde6 514 - Minor updates to docs
515 - Merged OpenBSD CVS changes:
516 - [authfd.c ssh-agent.c]
517 keysize warnings talk about identity files
518 - [packet.c]
519 "Connection closed by x.x.x.x": fatal() -> log()
c9d323f0 520 - Correctly handle empty passwords in shadow file. Patch from:
521 "Chris, the Young One" <cky@pobox.com>
522 - Released 1.2.1pre18
60d804c8 523
7dc6fc6d 52419991215
525 - Integrated patchs from Juergen Keil <jk@tools.de>
526 - Avoid void* pointer arithmatic
527 - Use LDFLAGS correctly
68227e6d 528 - Fix SIGIO error in scp
529 - Simplify status line printing in scp
906a2515 530 - Added better test for inline functions compiler support from
531 Darren_Hall@progressive.com
7dc6fc6d 532
95f1eccc 53319991214
534 - OpenBSD CVS Changes
535 - [canohost.c]
536 fix get_remote_port() and friends for sshd -i;
537 Holger.Trapp@Informatik.TU-Chemnitz.DE
538 - [mpaux.c]
539 make code simpler. no need for memcpy. niels@ ok
540 - [pty.c]
541 namebuflen not sizeof namebuflen; bnd@ep-ag.com via djm@mindrot.org
542 fix proto; markus
543 - [ssh.1]
544 typo; mark.baushke@solipsa.com
545 - [channels.c ssh.c ssh.h sshd.c]
546 type conflict for 'extern Type *options' in channels.c; dot@dotat.at
547 - [sshconnect.c]
548 move checking of hostkey into own function.
549 - [version.h]
550 OpenSSH-1.2.1
884bcb37 551 - Clean up broken includes in pty.c
7303768f 552 - Some older systems don't have poll.h, they use sys/poll.h instead
553 - Doc updates
95f1eccc 554
847e8865 55519991211
556 - Fix compilation on systems with AFS. Reported by
557 aloomis@glue.umd.edu
558 - Fix installation on Solaris. Reported by
559 Gordon Rowell <gordonr@gormand.com.au>
560 - Fix gccisms (__attribute__ and inline). Report by edgy@us.ibm.com,
561 patch from Markus Friedl <markus.friedl@informatik.uni-erlangen.de>
562 - Auto-locate xauth. Patch from David Agraz <dagraz@jahoopa.com>
563 - Compile fix from David Agraz <dagraz@jahoopa.com>
564 - Avoid compiler warning in bsd-snprintf.c
565 - Added pam_limits.so to default PAM config. Suggested by
566 Jim Knoble <jmknoble@pobox.com>
567
8946db53 56819991209
569 - Import of patch from Ben Taylor <bent@clark.net>:
570 - Improved PAM support
571 - "uninstall" rule for Makefile
572 - utmpx support
573 - Should fix PAM problems on Solaris
2d86a6cc 574 - OpenBSD CVS updates:
575 - [readpass.c]
576 avoid stdio; based on work by markus, millert, and I
577 - [sshd.c]
578 make sure the client selects a supported cipher
579 - [sshd.c]
580 fix sighup handling. accept would just restart and daemon handled
581 sighup only after the next connection was accepted. use poll on
582 listen sock now.
583 - [sshd.c]
584 make that a fatal
87e91331 585 - Applied patch from David Rankin <drankin@bohemians.lexington.ky.us>
586 to fix libwrap support on NetBSD
5001b9e4 587 - Released 1.2pre17
8946db53 588
6d8c4ea4 58919991208
590 - Compile fix for Solaris with /dev/ptmx from
591 David Agraz <dagraz@jahoopa.com>
592
4285816a 59319991207
594 - sshd Redhat init script patch from Jim Knoble <jmknoble@pobox.com>
595 fixes compatability with 4.x and 5.x
db28aeb5 596 - Fixed default SSH_ASKPASS
d465f2ca 597 - Fix PAM account and session being called multiple times. Problem
598 reported by Adrian Baugh <adrian@merlin.keble.ox.ac.uk>
a408af76 599 - Merged more OpenBSD changes:
600 - [atomicio.c authfd.c scp.c serverloop.c ssh.h sshconnect.c sshd.c]
601 move atomicio into it's own file. wrap all socket write()s which
602 were doing write(sock, buf, len) != len, with atomicio() calls.
603 - [auth-skey.c]
604 fd leak
605 - [authfile.c]
606 properly name fd variable
607 - [channels.c]
608 display great hatred towards strcpy
609 - [pty.c pty.h sshd.c]
610 use openpty() if it exists (it does on BSD4_4)
611 - [tildexpand.c]
612 check for ~ expansion past MAXPATHLEN
613 - Modified helper.c to use new atomicio function.
614 - Reformat Makefile a little
615 - Moved RC4 routines from rc4.[ch] into helper.c
616 - Added autoconf code to detect /dev/ptmx (Solaris) and /dev/ptc (AIX)
9983a8ca 617 - Updated SuSE spec from Chris Saia <csaia@wtower.com>
618 - Tweaked Redhat spec
9158d92f 619 - Clean up bad imports of a few files (forgot -kb)
620 - Released 1.2pre16
4285816a 621
9c7b6dfd 62219991204
623 - Small cleanup of PAM code in sshd.c
57112b5a 624 - Merged OpenBSD CVS changes:
625 - [auth-krb4.c auth-passwd.c auth-skey.c ssh.h]
626 move skey-auth from auth-passwd.c to auth-skey.c, same for krb4
627 - [auth-rsa.c]
628 warn only about mismatch if key is _used_
629 warn about keysize-mismatch with log() not error()
630 channels.c readconf.c readconf.h ssh.c ssh.h sshconnect.c
631 ports are u_short
632 - [hostfile.c]
633 indent, shorter warning
634 - [nchan.c]
635 use error() for internal errors
636 - [packet.c]
637 set loglevel for SSH_MSG_DISCONNECT to log(), not fatal()
638 serverloop.c
639 indent
640 - [ssh-add.1 ssh-add.c ssh.h]
641 document $SSH_ASKPASS, reasonable default
642 - [ssh.1]
643 CheckHostIP is not available for connects via proxy command
644 - [sshconnect.c]
645 typo
646 easier to read client code for passwd and skey auth
647 turn of checkhostip for proxy connects, since we don't know the remote ip
9c7b6dfd 648
dad3b556 64919991126
650 - Add definition for __P()
651 - Added [v]snprintf() replacement for systems that lack it
652
0ce43ae4 65319991125
654 - More reformatting merged from OpenBSD CVS
655 - Merged OpenBSD CVS changes:
656 - [channels.c]
657 fix packet_integrity_check() for !have_hostname_in_open.
658 report from mrwizard@psu.edu via djm@ibs.com.au
659 - [channels.c]
660 set SO_REUSEADDR and SO_LINGER for forwarded ports.
661 chip@valinux.com via damien@ibs.com.au
662 - [nchan.c]
663 it's not an error() if shutdown_write failes in nchan.
664 - [readconf.c]
665 remove dead #ifdef-0-code
666 - [readconf.c servconf.c]
667 strcasecmp instead of tolower
668 - [scp.c]
669 progress meter overflow fix from damien@ibs.com.au
670 - [ssh-add.1 ssh-add.c]
671 SSH_ASKPASS support
672 - [ssh.1 ssh.c]
673 postpone fork_after_authentication until command execution,
674 request/patch from jahakala@cc.jyu.fi via damien@ibs.com.au
675 plus: use daemon() for backgrounding
cf8dd513 676 - Added BSD compatible install program and autoconf test, thanks to
677 Niels Kristian Bech Jensen <nkbj@image.dk>
678 - Solaris fixing, thanks to Ben Taylor <bent@clark.net>
09041313 679 - Merged beginnings of AIX support from Tor-Ake Fransson <torake@hotmail.com>
3dbefdb8 680 - Release 1.2pre15
0ce43ae4 681
5260325f 68219991124
683 - Merged very large OpenBSD source code reformat
684 - OpenBSD CVS updates
685 - [channels.c cipher.c compat.c log-client.c scp.c serverloop.c]
686 [ssh.h sshd.8 sshd.c]
687 syslog changes:
688 * Unified Logmessage for all auth-types, for success and for failed
689 * Standard connections get only ONE line in the LOG when level==LOG:
690 Auth-attempts are logged only, if authentication is:
691 a) successfull or
692 b) with passwd or
693 c) we had more than AUTH_FAIL_LOG failues
694 * many log() became verbose()
695 * old behaviour with level=VERBOSE
696 - [readconf.c readconf.h ssh.1 ssh.h sshconnect.c sshd.c]
697 tranfer s/key challenge/response data in SSH_SMSG_AUTH_TIS_CHALLENGE
698 messages. allows use of s/key in windows (ttssh, securecrt) and
699 ssh-1.2.27 clients without 'ssh -v', ok: niels@
700 - [sshd.8]
701 -V, for fallback to openssh in SSH2 compatibility mode
702 - [sshd.c]
703 fix sigchld race; cjc5@po.cwru.edu
704
4655fe80 70519991123
706 - Added SuSE package files from Chris Saia <csaia@wtower.com>
8b241e50 707 - Restructured package-related files under packages/*
4655fe80 708 - Added generic PAM config
8b241e50 709 - Numerous little Solaris fixes
9c08d6ce 710 - Add recommendation to use GNU make to INSTALL document
4655fe80 711
60bed5fd 71219991122
713 - Make <enter> close gnome-ssh-askpass (Debian bug #50299)
2f2cc3f9 714 - OpenBSD CVS Changes
715 - [ssh-keygen.c]
716 don't create ~/.ssh only if the user wants to store the private
717 key there. show fingerprint instead of public-key after
718 keygeneration. ok niels@
b09a984b 719 - Added OpenBSD bsd-strlcat.c, created bsd-strlcat.h
96ad4350 720 - Added timersub() macro
b09a984b 721 - Tidy RCSIDs of bsd-*.c
96ad4350 722 - Added autoconf test and macro to deal with old PAM libraries
723 pam_strerror definition (one arg vs two).
530f1889 724 - Fix EGD problems (Thanks to Ben Taylor <bent@clark.net>)
725 - Retry /dev/urandom reads interrupted by signal (report from
726 Robert Hardy <rhardy@webcon.net>)
1647c2b5 727 - Added a setenv replacement for systems which lack it
d84a9a44 728 - Only display public key comment when presenting ssh-askpass dialog
729 - Released 1.2pre14
60bed5fd 730
2ddcfdf3 731 - Configure, Make and changelog corrections from Tudor Bosman
732 <tudorb@jm.nu> and Niels Kristian Bech Jensen <nkbj@image.dk>
733
9d6b7add 73419991121
2f2cc3f9 735 - OpenBSD CVS Changes:
60bed5fd 736 - [channels.c]
737 make this compile, bad markus
738 - [log.c readconf.c servconf.c ssh.h]
739 bugfix: loglevels are per host in clientconfig,
740 factor out common log-level parsing code.
741 - [servconf.c]
742 remove unused index (-Wall)
743 - [ssh-agent.c]
744 only one 'extern char *__progname'
745 - [sshd.8]
746 document SIGHUP, -Q to synopsis
747 - [sshconnect.c serverloop.c sshd.c packet.c packet.h]
748 [channels.c clientloop.c]
749 SSH_CMSG_MAX_PACKET_SIZE, some clients use this, some need this, niels@
750 [hope this time my ISP stays alive during commit]
751 - [OVERVIEW README] typos; green@freebsd
752 - [ssh-keygen.c]
753 replace xstrdup+strcat with strlcat+fixed buffer, fixes OF (bad me)
754 exit if writing the key fails (no infinit loop)
755 print usage() everytime we get bad options
756 - [ssh-keygen.c] overflow, djm@mindrot.org
757 - [sshd.c] fix sigchld race; cjc5@po.cwru.edu
758
2b942fe0 75919991120
760 - Merged more Solaris support from Marc G. Fournier
761 <marc.fournier@acadiau.ca>
762 - Wrote autoconf tests for integer bit-types
763 - Fixed enabling kerberos support
13c36c4c 764 - Fix segfault in ssh-keygen caused by buffer overrun in filename
765 handling.
2b942fe0 766
06479889 76719991119
768 - Merged PAM buffer overrun patch from Chip Salzenberg <chip@valinux.com>
2ad77510 769 - Merged OpenBSD CVS changes
770 - [auth-rhosts.c auth-rsa.c ssh-agent.c sshconnect.c sshd.c]
771 more %d vs. %s in fmt-strings
772 - [authfd.c]
773 Integers should not be printed with %s
7b1cc56c 774 - EGD uses a socket, not a named pipe. Duh.
775 - Fix includes in fingerprint.c
29dbde15 776 - Fix scp progress bar bug again.
2ddcfdf3 777 - Move ssh-askpass from ${libdir}/ssh to ${libexecdir}/ssh at request of
736890c4 778 David Rankin <drankin@bohemians.lexington.ky.us>
91b8065d 779 - Added autoconf option to enable Kerberos 4 support (untested)
780 - Added autoconf option to enable AFS support (untested)
781 - Added autoconf option to enable S/Key support (untested)
782 - Added autoconf option to enable TCP wrappers support (compiles OK)
beb43d31 783 - Renamed BSD helper function files to bsd-*
caf3bc51 784 - Added tests for login and daemon and enable OpenBSD replacements for
785 when they are absent.
786 - Added non-PAM MD5 password support patch from Tudor Bosman <tudorb@jm.nu>
06479889 787
2bd61362 78819991118
789 - Merged OpenBSD CVS changes
790 - [scp.c] foregroundproc() in scp
791 - [sshconnect.h] include fingerprint.h
792 - [sshd.c] bugfix: the log() for passwd-auth escaped during logging
793 changes.
0c16a097 794 - [ssh.1] Spell my name right.
2bd61362 795 - Added openssh.com info to README
796
f095fcc7 79719991117
798 - Merged OpenBSD CVS changes
799 - [ChangeLog.Ylonen] noone needs this anymore
800 - [authfd.c] close-on-exec for auth-socket, ok deraadt
801 - [hostfile.c]
802 in known_hosts key lookup the entry for the bits does not need
803 to match, all the information is contained in n and e. This
804 solves the problem with buggy servers announcing the wrong
805 modulus length. markus and me.
806 - [serverloop.c]
807 bugfix: check for space if child has terminated, from:
808 iedowse@maths.tcd.ie
809 - [ssh-add.1 ssh-add.c ssh-keygen.1 ssh-keygen.c sshconnect.c]
810 [fingerprint.c fingerprint.h]
811 rsa key fingerprints, idea from Bjoern Groenvall <bg@sics.se>
812 - [ssh-agent.1] typo
813 - [ssh.1] add OpenSSH information to AUTHOR section. okay markus@
814 - [sshd.c]
815 force logging to stderr while loading private key file
816 (lost while converting to new log-levels)
817
4d195447 81819991116
819 - Fix some Linux libc5 problems reported by Miles Wilson <mw@mctitle.com>
820 - Merged OpenBSD CVS changes:
821 - [auth-rh-rsa.c auth-rsa.c authfd.c authfd.h hostfile.c mpaux.c]
822 [mpaux.h ssh-add.c ssh-agent.c ssh.h ssh.c sshd.c]
823 the keysize of rsa-parameter 'n' is passed implizit,
824 a few more checks and warnings about 'pretended' keysizes.
825 - [cipher.c cipher.h packet.c packet.h sshd.c]
826 remove support for cipher RC4
827 - [ssh.c]
828 a note for legay systems about secuity issues with permanently_set_uid(),
829 the private hostkey and ptrace()
830 - [sshconnect.c]
831 more detailed messages about adding and checking hostkeys
832
dad9a31e 83319991115
834 - Merged OpenBSD CVS changes:
835 - [ssh-add.c] change passphrase loop logic and remove ref to
836 $DISPLAY, ok niels
837 - Changed to ssh-add.c broke askpass support. Revised it to be a little more
838 modular.
839 - Revised autoconf support for enabling/disabling askpass support.
e7c0f9d5 840 - Merged more OpenBSD CVS changes:
841 [auth-krb4.c]
842 - disconnect if getpeername() fails
843 - missing xfree(*client)
844 [canohost.c]
845 - disconnect if getpeername() fails
846 - fix comment: we _do_ disconnect if ip-options are set
847 [sshd.c]
848 - disconnect if getpeername() fails
849 - move checking of remote port to central place
850 [auth-rhosts.c] move checking of remote port to central place
851 [log-server.c] avoid extra fd per sshd, from millert@
852 [readconf.c] print _all_ bad config-options in ssh(1), too
853 [readconf.h] print _all_ bad config-options in ssh(1), too
854 [ssh.c] print _all_ bad config-options in ssh(1), too
855 [sshconnect.c] disconnect if getpeername() fails
856 - OpenBSD's changes to sshd.c broke the PAM stuff, re-merged it.
c75a1a66 857 - Various small cleanups to bring diff (against OpenBSD) size down.
f601d847 858 - Merged more Solaris compability from Marc G. Fournier
859 <marc.fournier@acadiau.ca>
860 - Wrote autoconf tests for __progname symbol
8c119fd0 861 - RPM spec file fixes from Jim Knoble <jmknoble@pobox.com>
0c372277 862 - Released 1.2pre12
863
864 - Another OpenBSD CVS update:
865 - [ssh-keygen.1] fix .Xr
dad9a31e 866
92da7197 86719991114
868 - Solaris compilation fixes (still imcomplete)
869
94f7bb9e 87019991113
dd092f97 871 - Build patch from Niels Kristian Bech Jensen <nkbj@image.dk>
872 - Don't install config files if they already exist
873 - Fix inclusion of additional preprocessor directives from acconfig.h
94f7bb9e 874 - Removed redundant inclusions of config.h
e9c75a39 875 - Added 'Obsoletes' lines to RPM spec file
94f7bb9e 876 - Merged OpenBSD CVS changes:
877 - [bufaux.c] save a view malloc/memcpy/memset/free's, ok niels
878 - [scp.c] fix overflow reported by damien@ibs.com.au: off_t
879 totalsize, ok niels,aaron
880 - Delay fork (-f option) in ssh until after port forwarded connections
881 have been initialised. Patch from Jani Hakala <jahakala@cc.jyu.fi>
b2344d54 882 - Added shadow password patch from Thomas Neumann <tom@smart.ruhr.de>
883 - Added ifdefs to auth-passwd.c to exclude it when PAM is enabled
dd092f97 884 - Tidied default config file some more
885 - Revised Redhat initscript to fix bug: sshd (re)start would fail
886 if executed from inside a ssh login.
94f7bb9e 887
e35c1dc2 88819991112
889 - Merged changes from OpenBSD CVS
890 - [sshd.c] session_key_int may be zero
b4748e2f 891 - [auth-rh-rsa.c servconf.c servconf.h ssh.h sshd.8 sshd.c sshd_config]
892 IgnoreUserKnownHosts(default=no), used for RhostRSAAuth, ok
893 deraadt,millert
894 - Brought default sshd_config more in line with OpenBSD's
547c9f30 895 - Grab server in gnome-ssh-askpass (Debian bug #49872)
896 - Released 1.2pre10
e35c1dc2 897
8bc7973f 898 - Added INSTALL documentation
6fa724bc 899 - Merged yet more changes from OpenBSD CVS
900 - [auth-rh-rsa.c auth-rhosts.c auth-rsa.c channels.c clientloop.c]
901 [ssh.c ssh.h sshconnect.c sshd.c]
902 make all access to options via 'extern Options options'
903 and 'extern ServerOptions options' respectively;
904 options are no longer passed as arguments:
905 * make options handling more consistent
906 * remove #include "readconf.h" from ssh.h
907 * readconf.h is only included if necessary
908 - [mpaux.c] clear temp buffer
909 - [servconf.c] print _all_ bad options found in configfile
045672f9 910 - Make ssh-askpass support optional through autoconf
59b0f0d4 911 - Fix nasty division-by-zero error in scp.c
912 - Released 1.2pre11
8bc7973f 913
4cca272e 91419991111
915 - Added (untested) Entropy Gathering Daemon (EGD) support
67d68e3a 916 - Fixed /dev/urandom fd leak (Debian bug #49722)
5bbb5681 917 - Merged OpenBSD CVS changes:
918 - [auth-rh-rsa.c] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
919 - [ssh.1] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
920 - [sshd.8] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
505fed0a 921 - Fix integer overflow which was messing up scp's progress bar for large
3f1d9bcd 922 file transfers. Fix submitted to OpenBSD developers. Report and fix
923 from Kees Cook <cook@cpoint.net>
6a17f9c2 924 - Merged more OpenBSD CVS changes:
925 - [auth-krb4.c auth-passwd.c] remove x11- and krb-cleanup from fatal()
926 + krb-cleanup cleanup
927 - [clientloop.c log-client.c log-server.c ]
928 [readconf.c readconf.h servconf.c servconf.h ]
929 [ssh.1 ssh.c ssh.h sshd.8]
930 add LogLevel {QUIET, FATAL, ERROR, INFO, CHAT, DEBUG} to ssh/sshd,
931 obsoletes QuietMode and FascistLogging in sshd.
e35c1dc2 932 - [sshd.c] fix fatal/assert() bug reported by damien@ibs.com.au:
933 allow session_key_int != sizeof(session_key)
934 [this should fix the pre-assert-removal-core-files]
935 - Updated default config file to use new LogLevel option and to improve
936 readability
937
f370266e 93819991110
67d68e3a 939 - Merged several minor fixes:
f370266e 940 - ssh-agent commandline parsing
941 - RPM spec file now installs ssh setuid root
942 - Makefile creates libdir
4cca272e 943 - Merged beginnings of Solaris compability from Marc G. Fournier
944 <marc.fournier@acadiau.ca>
f370266e 945
d4f11b59 94619991109
947 - Autodetection of SSL/Crypto library location via autoconf
948 - Fixed location of ssh-askpass to follow autoconf
949 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
950 - Autodetection of RSAref library for US users
951 - Minor doc updates
560557bb 952 - Merged OpenBSD CVS changes:
953 - [rsa.c] bugfix: use correct size for memset()
954 - [sshconnect.c] warn if announced size of modulus 'n' != real size
f025becb 955 - Added GNOME passphrase requestor (use --with-gnome-askpass)
d397b172 956 - RPM build now creates subpackages
aa51e7cc 957 - Released 1.2pre9
d4f11b59 958
e1a9c08d 95919991108
960 - Removed debian/ directory. This is now being maintained separately.
961 - Added symlinks for slogin in RPM spec file
962 - Fixed permissions on manpages in RPM spec file
963 - Added references to required libraries in README file
964 - Removed config.h.in from CVS
965 - Removed pwdb support (better pluggable auth is provided by glibc)
966 - Made PAM and requisite libdl optional
967 - Removed lots of unnecessary checks from autoconf
968 - Added support and autoconf test for openpty() function (Unix98 pty support)
969 - Fix for scp not finding ssh if not installed as /usr/bin/ssh
970 - Added TODO file
971 - Merged parts of Debian patch From Phil Hands <phil@hands.com>:
972 - Added ssh-askpass program
973 - Added ssh-askpass support to ssh-add.c
974 - Create symlinks for slogin on install
975 - Fix "distclean" target in makefile
976 - Added example for ssh-agent to manpage
977 - Added support for PAM_TEXT_INFO messages
978 - Disable internal /etc/nologin support if PAM enabled
979 - Merged latest OpenBSD CVS changes:
5bae4ab8 980 - [all] replace assert() with error, fatal or packet_disconnect
e1a9c08d 981 - [sshd.c] don't send fail-msg but disconnect if too many authentication
982 failures
e1a9c08d 983 - [sshd.c] remove unused argument. ok dugsong
984 - [sshd.c] typo
985 - [rsa.c] clear buffers used for encryption. ok: niels
986 - [rsa.c] replace assert() with error, fatal or packet_disconnect
ade6fccd 987 - [auth-krb4.c] remove unused argument. ok dugsong
e1a9c08d 988 - Fixed coredump after merge of OpenBSD rsa.c patch
9010d60a 989 - Released 1.2pre8
e1a9c08d 990
3028328e 99119991102
992 - Merged change from OpenBSD CVS
993 - One-line cleanup in sshd.c
994
474832c5 99519991030
996 - Integrated debian package support from Dan Brosemer <odin@linuxfreak.com>
69256d9d 997 - Merged latest updates for OpenBSD CVS:
998 - channels.[ch] - remove broken x11 fix and document istate/ostate
999 - ssh-agent.c - call setsid() regardless of argv[]
1000 - ssh.c - save a few lines when disabling rhosts-{rsa-}auth
1001 - Documentation cleanups
1002 - Renamed README -> README.Ylonen
1003 - Renamed README.openssh ->README
474832c5 1004
339660f6 100519991029
1006 - Renamed openssh* back to ssh* at request of Theo de Raadt
1007 - Incorporated latest changes from OpenBSD's CVS
1008 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
1009 - Integrated PAM env patch from Nalin Dahyabhai <nalin.dahyabhai@pobox.com>
549b3eed 1010 - Make distclean now removed configure script
1011 - Improved PAM logging
1012 - Added some debug() calls for PAM
4ecd19ea 1013 - Removed redundant subdirectories
1014 - Integrated part of a patch from Dan Brosemer <odin@linuxfreak.com> for
1015 building on Debian.
242588e6 1016 - Fixed off-by-one error in PAM env patch
1017 - Released 1.2pre6
339660f6 1018
5881cd60 101919991028
1020 - Further PAM enhancements.
1021 - Much cleaner
1022 - Now uses account and session modules for all logins.
1023 - Integrated patch from Dan Brosemer <odin@linuxfreak.com>
1024 - Build fixes
1025 - Autoconf
1026 - Change binary names to open*
1027 - Fixed autoconf script to detect PAM on RH6.1
1028 - Added tests for libpwdb, and OpenBSD functions to autoconf
221395b3 1029 - Released 1.2pre4
fca82d2e 1030
1031 - Imported latest OpenBSD CVS code
1032 - Updated README.openssh
93f04616 1033 - Released 1.2pre5
fca82d2e 1034
5881cd60 103519991027
1036 - Adapted PAM patch.
1037 - Released 1.0pre2
1038
1039 - Excised my buggy replacements for strlcpy and mkdtemp
1040 - Imported correct OpenBSD strlcpy and mkdtemp routines.
1041 - Reduced arc4random_stir entropy read to 32 bytes (256 bits)
1042 - Picked up correct version number from OpenBSD
1043 - Added sshd.pam PAM configuration file
1044 - Added sshd.init Redhat init script
1045 - Added openssh.spec RPM spec file
1046 - Released 1.2pre3
1047
104819991026
1049 - Fixed include paths of OpenSSL functions
1050 - Use OpenSSL MD5 routines
1051 - Imported RC4 code from nanocrypt
1052 - Wrote replacements for OpenBSD arc4random* functions
1053 - Wrote replacements for strlcpy and mkdtemp
1054 - Released 1.0pre1
This page took 0.238356 seconds and 5 git commands to generate.