]> andersk Git - openssh.git/blame - ChangeLog
- (bal) Fixed auth-passwd.c to resolve PermitEmptyPassword issue
[openssh.git] / ChangeLog
CommitLineData
d9891c59 120020506
2 - (bal) Fixed auth-passwd.c to resolve PermitEmptyPassword issue
3
836d58d7 420020501
5 - (djm) Import OpenBSD regression tests. Requires BSD make to run
50903cc7 6 - (djm) Fix readpassphase compilation for systems which have it
836d58d7 7
f0c180c3 820020429
9 - (tim) [contrib/caldera/openssh.spec] update fixUP to reflect changes in
10 sshd_config.
11 - (tim) [contrib/cygwin/README] remove reference to regex.
12 patch from Corinna Vinschen <vinschen@redhat.com>
13
db8dbb6a 1420020426
15 - (djm) Bug #137, #209: fix make problems for scard/Ssh.bin, do uudecode
16 during distprep only
e108cd93 17 - (djm) Disable PAM password expiry until a complete fix for bug #188 exists
782e2103 18 - (djm) Bug #180: Set ToS bits on IPv4-in-IPv6 mapped addresses. Based on
19 patch from openssh@misc.tecq.org
db8dbb6a 20
369e787a 2120020425
22 - (stevesk) [defines.h] remove USE_TIMEVAL; unused
6e879cb4 23 - (stevesk) [acconfig.h auth-passwd.c configure.ac sshd.c] HP-UX 10.26
24 support. bug #184. most from dcole@keysoftsys.com.
369e787a 25
8c1f70d8 2620020424
27 - (djm) OpenBSD CVS Sync
28 - markus@cvs.openbsd.org 2002/04/23 12:54:10
29 [version.h]
30 3.2.1
cdc4fc39 31 - djm@cvs.openbsd.org 2002/04/23 22:16:29
32 [sshd.c]
33 Improve error message; ok markus@ stevesk@
8c1f70d8 34
520b41b2 3520020423
a2572aa7 36 - (stevesk) [acconfig.h configure.ac session.c] LOGIN_NO_ENDOPT for HP-UX
7615ed55 37 - (stevesk) [acconfig.h] NEED_IN_SYSTM_H unused
744d788b 38 - (markus) OpenBSD CVS Sync
39 - markus@cvs.openbsd.org 2002/04/23 12:58:26
40 [radix.c]
41 send complete ticket; semerad@ss1000.ms.mff.cuni.cz
3b307f85 42 - (djm) Trim ChangeLog to include only post-3.1 changes
48862e93 43 - (djm) Update RPM spec file versions
03dd62aa 44 - (djm) Redhat spec enables KrbV by default
1352689f 45 - (djm) Applied OpenSC smartcard updates from Markus &
46 Antti Tapaninen <aet@cc.hut.fi>
47 - (djm) Define BROKEN_REALPATH for AIX, patch from
48 Antti Tapaninen <aet@cc.hut.fi>
0e8f4eba 49 - (djm) Bug #214: Fix utmp for Irix (don't strip "tty"). Patch from
50 Kevin Taylor <no@nowhere.org> (??) via Philipp Grau
51 <phgrau@zedat.fu-berlin.de>
2805b943 52 - (djm) Bug #213: Simplify CMSG_ALIGN macros to avoid symbol clashes.
53 Reported by Doug Manton <dmanton@emea.att.com>
520b41b2 54 - (djm) Bug #222: Fix tests for getaddrinfo on OSF/1. Spotted by
55 Robert Urban <urban@spielwiese.de>
52f1ccb2 56 - (djm) Bug #206 - blibpath isn't always needed for AIX ld, avoid
57 sizeof(long long int) == 4 breakage. Patch from Matthew Clarke
58 <Matthew_Clarke@mindlink.bc.ca>
ad200abb 59 - (djm) Make privsep work with PAM (still experimental)
9b26c596 60 - (djm) OpenBSD CVS Sync
61 - deraadt@cvs.openbsd.org 2002/04/20 09:02:03
62 [servconf.c]
63 No, afs requires explicit enabling
64 - markus@cvs.openbsd.org 2002/04/20 09:14:58
65 [bufaux.c bufaux.h]
66 add buffer_{get,put}_short
3b358a0e 67 - markus@cvs.openbsd.org 2002/04/20 09:17:19
68 [radix.c]
69 rewrite using the buffer_* API, fixes overflow; ok deraadt@
22d0faff 70 - stevesk@cvs.openbsd.org 2002/04/21 16:19:27
71 [sshd.8 sshd_config]
72 document default AFSTokenPassing no; ok deraadt@
134c552b 73 - stevesk@cvs.openbsd.org 2002/04/21 16:25:06
74 [sshconnect1.c]
75 spelling in error message; ok markus@
afb8fdb4 76 - markus@cvs.openbsd.org 2002/04/22 06:15:47
77 [radix.c]
78 fix check for overflow
eadc806d 79 - markus@cvs.openbsd.org 2002/04/22 16:16:53
80 [servconf.c sshd.8 sshd_config]
81 do not auto-enable KerberosAuthentication; ok djm@, provos@, deraadt@
e0ae8728 82 - markus@cvs.openbsd.org 2002/04/22 21:04:52
83 [channels.c clientloop.c clientloop.h ssh.c]
84 request reply (success/failure) for -R style fwd in protocol v2,
85 depends on ordered replies.
86 fixes http://bugzilla.mindrot.org/show_bug.cgi?id=215; ok provos@
520b41b2 87
ac033f8c 8820020421
89 - (tim) [entropy.c.] Portability fix for SCO Unix 3.2v4.x (SCO OSR 3.0).
90 entropy.c needs seteuid(getuid()) for the setuid(original_uid) to succeed.
91 Patch by gert@greenie.muc.de. This fixes one part of Bug 208
92
6dc63b4f 9320020418
94 - (djm) Avoid SIGCHLD breakage when run from rsync. Fix from
95 Sturle Sunde <sturle.sunde@usit.uio.no>
96
230c7a8f 9720020417
98 - (djm) Tell users to configure /dev/random support into OpenSSL in INSTALL
1a7220c2 99 - (djm) Fix .Nm in mdoc2man.pl from pspencer@fields.utoronto.ca
8d184c09 100 - (tim) [configure.ac] Issue warning on --with-default-path=/some_path
101 if LOGIN_CAP is enabled. Report & testing by Tuc <tuc@ttsg.com>
230c7a8f 102
9ae68cce 10320020415
104 - (djm) Unbreak "make install". Fix from Darren Tucker <dtucker@zip.com.au>
4e51cc76 105 - (stevesk) bsd-cygwin_util.[ch] BSD license from Corinna Vinschen
1b06e75e 106 - (tim) [configure.ac] add tests for recvmsg and sendmsg.
107 [monitor_fdpass.c] add checks for HAVE_SENDMSG and HAVE_RECVMSG for
108 systems that HAVE_ACCRIGHTS_IN_MSGHDR but no recvmsg or sendmsg.
9ae68cce 109
f6e6303d 11020020414
111 - (djm) ssh-rand-helper improvements
112 - Add commandline debugging options
113 - Don't write binary data if stdout is a tty (use hex instead)
114 - Give it a manpage
cbe5b851 115 - (djm) Random number collection doc fixes from Ben
f6e6303d 116
12928e80 11720020413
118 - (djm) Add KrbV support patch from Simon Wilkinson <simon@sxw.org.uk>
119
40b74b3f 12020020412
121 - (stevesk) [auth-sia.[ch]] add BSD license from Chris Adams
f95c8ce8 122 - (tim) [configure.ac] add <sys/types.h> to msghdr tests. Change -L
123 to -h on testing for /bin being symbolic link
e2c9b9e3 124 - (bal) Mistaken in Cygwin scripts for ssh starting. Patch by
125 Corinna Vinschen <vinschen@redhat.com>
e75b61db 126 - (bal) disable privsep if no MAP_ANON. We can re-enable it
127 after the release when we can do more testing.
40b74b3f 128
65b91c76 12920020411
130 - (stevesk) [auth-sia.c] cleanup
7b0737a4 131 - (tim) [acconfig.h defines.h includes.h] put includes in includes.h and
132 defines in defines.h [rijndael.c openbsd-compat/fake-socket.h
133 openbsd-compat/inet_aton.c] include "includes.h" instead of "config.h"
134 ok stevesk@
65b91c76 135
ca8aba40 13620020410
f1af2dbf 137 - (stevesk) [configure.ac monitor.c] HAVE_SOCKETPAIR
ca8aba40 138 - (stevesk) [auth-sia.c] compile fix Chris Adams <cmadams@hiwaay.net>
d8ff54e6 139 - (bal) OpenBSD CVS Sync
140 - markus@cvs.openbsd.org 2002/04/10 08:21:47
141 [auth1.c compat.c compat.h]
142 strip '@' from username only for KerbV and known broken clients, bug #204
f14a5033 143 - markus@cvs.openbsd.org 2002/04/10 08:56:01
144 [version.h]
145 OpenSSH_3.2
146 - Added p1 to idenify Portable release version.
ca8aba40 147
46c8e0f6 14820020408
149 - (bal) Minor OpenSC updates. Fix up header locations and update
150 README.smartcard provided by Juha Yrjölä <jyrjola@cc.hut.fi>
151
7176df4f 15220020407
153 - (stevesk) HAVE_CONTROL_IN_MSGHDR; not used right now.
154 Future: we may want to test if fd passing works correctly.
84071420 155 - (stevesk) [monitor_fdpass.c] fatal() for UsePrivilegeSeparation=yes
156 and no fd passing support.
1e8f8c5b 157 - (stevesk) HAVE_MMAP and HAVE_SYS_MMAN_H and use them in
158 monitor_mm.c
a90419b8 159 - (stevesk) remove configure support for poll.h; it was removed
160 from sshd.c a long time ago.
9a0fbcb3 161 - (stevesk) --with-privsep-user; default sshd
1bf74eac 162 - (stevesk) wrap munmap() with HAVE_MMAP also.
7176df4f 163
b17d6a47 16420020406
165 - (djm) Typo in Suse SPEC file. Fix from Carsten Grohmann
166 <carsten.grohmann@dr-baldeweg.de>
23aa1237 167 - (bal) Added MAP_FAILED to allow AIX and Trusted HP to compile.
af2b3cd9 168 - (bal) OpenBSD CVS Sync
169 - djm@cvs.openbsd.org 2002/04/06 00:30:08
170 [sftp-client.c]
1d6d408a 171 Fix occasional corruption on upload due to bad reuse of request
172 id, spotted by chombier@mac.com; ok markus@
39f9599a 173 - mouring@cvs.openbsd.org 2002/04/06 18:24:09
174 [scp.c]
175 Fixes potental double // within path.
176 http://bugzilla.mindrot.org/show_bug.cgi?id=76
5866adb0 177 - (bal) Slight update to OpenSC support. Better version checking. patch
178 by Juha Yrjölä <jyrjola@cc.hut.fi>
b5171f93 179 - (bal) Revered out of runtime IRIX detection of joblimits. Code is
180 incomplete.
419e4769 181 - (bal) Quiet down configure.ac if /bin/test does not exist.
14f35963 182 - (bal) We no longer use atexit()/xatexit()/on_exit()
b17d6a47 183
295c8801 18420020405
185 - (bal) Patch for OpenSC SmartCard library; ok markus@; patch by
186 Juha Yrjölä <jyrjola@cc.hut.fi>
187 - (bal) Minor documentation update to reflect smartcard library
188 support changes.
ab33e02a 189 - (bal) Too many <sys/queue.h> issues. Remove all workarounds and
190 using internal version only.
d4c6ddff 191 - (bal) OpenBSD CVS Sync
192 - stevesk@cvs.openbsd.org 2002/04/05 20:56:21
193 [sshd.8]
194 clarify sshrc some and handle X11UseLocalhost=yes; ok markus@
295c8801 195
fde58bd4 19620020404
197 - (stevesk) [auth-pam.c auth-pam.h auth-passwd.c auth-sia.c auth-sia.h
198 auth1.c auth2.c] PAM, OSF_SIA password auth cleanup; from djm.
bf03f2da 199 - (bal) OpenBSD CVS Sync
200 - markus@cvs.openbsd.org 2002/04/03 09:26:11
201 [cipher.c myproposal.h]
202 re-add rijndael-cbc@lysator.liu.se for MacSSH; ash@lab.poc.net
fde58bd4 203
ca7e8e1e 20420020402
205 - (bal) Hand Sync of scp.c (reverted to upstream code)
206 - deraadt@cvs.openbsd.org 2002/03/30 17:45:46
207 [scp.c]
208 stretch banners
c572a874 209 - (bal) CVS ID sync of uidswap.c
783dbbdc 210 - (bal) OpenBSD CVS Sync (now for the real sync)
211 - markus@cvs.openbsd.org 2002/03/27 22:21:45
212 [ssh-keygen.c]
213 try to import keys with extra trailing === (seen with ssh.com < 2.0.12)
49a34e84 214 - markus@cvs.openbsd.org 2002/03/28 15:34:51
215 [session.c]
216 do not call record_login twice (for use_privsep)
ffbf7323 217 - markus@cvs.openbsd.org 2002/03/29 18:59:32
218 [session.c session.h]
219 retrieve last login time before the pty is allocated, store per session
3bc822df 220 - stevesk@cvs.openbsd.org 2002/03/29 19:16:22
221 [sshd.8]
222 RSA key modulus size minimum 768; ok markus@
82b00264 223 - stevesk@cvs.openbsd.org 2002/03/29 19:18:33
224 [auth-rsa.c ssh-rsa.c ssh.h]
225 make RSA modulus minimum #define; ok markus@
8c38e88b 226 - markus@cvs.openbsd.org 2002/03/30 18:51:15
227 [monitor.c serverloop.c sftp-int.c sftp.c sshd.c]
228 check waitpid for EINTR; based on patch from peter@ifm.liu.se
92053302 229 - markus@cvs.openbsd.org 2002/04/01 22:02:16
230 [sftp-client.c]
231 20480 is an upper limit for older server
9c74a24d 232 - markus@cvs.openbsd.org 2002/04/01 22:07:17
233 [sftp-client.c]
234 fallback to stat if server does not support lstat
b745a2f2 235 - markus@cvs.openbsd.org 2002/04/02 11:49:39
236 [ssh-agent.c]
237 check $SHELL for -k and -d, too;
238 http://bugzilla.mindrot.org/show_bug.cgi?id=199
b69145c2 239 - markus@cvs.openbsd.org 2002/04/02 17:37:48
240 [sftp.c]
241 always call log_init()
c9336aed 242 - markus@cvs.openbsd.org 2002/04/02 20:11:38
243 [ssh-rsa.c]
244 ignore SSH_BUG_SIGBLOB for ssh-rsa; #187
c895376b 245 - (bal) mispelling in uidswap.c (portable only)
ca7e8e1e 246
8b314ec9 24720020401
248 - (stevesk) [monitor.c] PAM should work again; will *not* work with
249 UsePrivilegeSeparation=yes.
3906af0f 250 - (stevesk) [auth1.c] fix password auth for protocol 1 when
251 !USE_PAM && !HAVE_OSF_SIA; merge issue.
8b314ec9 252
267e920e 25320020331
254 - (tim) [configure.ac] use /bin/test -L to work around broken builtin on
255 Solaris 8
ef077e37 256 - (tim) [sshconnect2.c] change uint32_t to u_int32_t
267e920e 257
0461c355 25820020330
259 - (stevesk) [configure.ac] remove header check for sys/ttcompat.h
260 bug 167
261
dd466ff8 26220020327
263 - (bal) 'pw' should be 'authctxt->pw' in auth1.c spotted by
264 kent@lysator.liu.se
17f5e68a 265 - (bal) OpenBSD CVS Sync
266 - markus@cvs.openbsd.org 2002/03/26 11:34:49
267 [ssh.1 sshd.8]
268 update to recent drafts
5fb274c1 269 - markus@cvs.openbsd.org 2002/03/26 11:37:05
270 [ssh.c]
271 update Copyright
19f40184 272 - markus@cvs.openbsd.org 2002/03/26 15:23:40
273 [bufaux.c]
274 do not talk about packets in bufaux
7341fad9 275 - rees@cvs.openbsd.org 2002/03/26 18:46:59
276 [scard.c]
277 try_AUT0 in read_pubkey too, for those paranoid few who want to acl 'sh'
6c112aca 278 - markus@cvs.openbsd.org 2002/03/26 22:50:39
279 [channels.h]
280 CHANNEL_EFD_OUTPUT_ACTIVE is false for CHAN_CLOSE_RCVD, too
52103b10 281 - markus@cvs.openbsd.org 2002/03/26 23:13:03
282 [auth-rsa.c]
283 disallow RSA keys < 768 for protocol 1, too (rhosts-rsa and rsa auth)
76bf34f1 284 - markus@cvs.openbsd.org 2002/03/26 23:14:51
285 [kex.c]
286 generate a new cookie for each SSH2_MSG_KEXINIT message we send out
300e01c4 287 - mouring@cvs.openbsd.org 2002/03/27 11:45:42
288 [monitor.c]
289 monitor_allowed_key() returns int instead of pointer. ok markus@
290
eb4652f4 29120020325
292 - (stevesk) import OpenBSD <sys/tree.h> as "openbsd-compat/tree.h"
47c36e5b 293 - (bal) OpenBSD CVS Sync
294 - stevesk@cvs.openbsd.org 2002/03/23 20:57:26
295 [sshd.c]
296 setproctitle() after preauth child; ok markus@
d452ec1a 297 - markus@cvs.openbsd.org 2002/03/24 16:00:27
298 [serverloop.c]
299 remove unused debug
a49dfdec 300 - markus@cvs.openbsd.org 2002/03/24 16:01:13
301 [packet.c]
302 debug->debug3 for extra padding
5b0d7dc1 303 - stevesk@cvs.openbsd.org 2002/03/24 17:27:03
304 [kexgex.c]
305 typo; ok markus@
d4355079 306 - stevesk@cvs.openbsd.org 2002/03/24 17:53:16
307 [monitor_fdpass.c]
308 minor cleanup and more error checking; ok markus@
9fc0407d 309 - markus@cvs.openbsd.org 2002/03/24 18:05:29
310 [scard.c]
311 we need to figure out AUT0 for sc_private_encrypt, too
38c1c52a 312 - stevesk@cvs.openbsd.org 2002/03/24 23:20:00
313 [monitor.c]
314 remove "\n" from fatal()
159897f3 315 - markus@cvs.openbsd.org 2002/03/25 09:21:13
316 [auth-rsa.c]
317 return 0 (not NULL); tomh@po.crl.go.jp
6f33c8cd 318 - markus@cvs.openbsd.org 2002/03/25 09:25:06
319 [auth-rh-rsa.c]
320 rm bogus comment
0659cace 321 - markus@cvs.openbsd.org 2002/03/25 17:34:27
322 [scard.c scard.h ssh-agent.c ssh-keygen.c ssh.c]
323 change sc_get_key to sc_get_keys and hide smartcard details in scard.c
3074b20c 324 - stevesk@cvs.openbsd.org 2002/03/25 20:12:10
325 [monitor_mm.c monitor_wrap.c]
326 ssize_t args use "%ld" and cast to (long)
327 size_t args use "%lu" and cast to (u_long)
328 ok markus@ and thanks millert@
1c2deed1 329 - markus@cvs.openbsd.org 2002/03/25 21:04:02
330 [ssh.c]
331 simplify num_identity_files handling
d2296ed7 332 - markus@cvs.openbsd.org 2002/03/25 21:13:51
333 [channels.c channels.h compat.c compat.h nchan.c]
334 don't send stderr data after EOF, accept this from older known (broken)
335 sshd servers only, fixes http://bugzilla.mindrot.org/show_bug.cgi?id=179
8e4fd4a1 336 - stevesk@cvs.openbsd.org 2002/03/26 03:24:01
337 [monitor.h monitor_fdpass.h monitor_mm.h monitor_wrap.h]
338 $OpenBSD$
eb4652f4 339
1178e8db 34020020324
341 - (stevesk) [session.c] disable LOGIN_NEEDS_TERM until we are sure
342 it can be removed. only used on solaris. will no longer compile with
343 privsep shuffling.
344
6f34652e 34520020322
346 - (stevesk) HAVE_ACCRIGHTS_IN_MSGHDR configure support
7b18c353 347 - (stevesk) [monitor.c monitor_wrap.c] #ifdef HAVE_PW_CLASS_IN_PASSWD
c921ee00 348 - (stevesk) configure and cpp __FUNCTION__ gymnastics to handle nielsisms
dc90b259 349 - (stevesk) [monitor_fdpass.c] support for access rights style file
350 descriptor passing
f7ed12f1 351 - (stevesk) [auth2.c] merge cleanup/sync
cfadc43b 352 - (stevesk) [defines.h] hp-ux 11 has ancillary data style fd passing, but
353 is missing CMSG_LEN() and CMSG_SPACE() macros.
cc58061e 354 - (stevesk) [defines.h] #define MAP_ANON MAP_ANONYMOUS for HP-UX; other
355 platforms may need this--I'm not sure. mmap() issues will need to be
356 addressed further.
05976246 357 - (tim) [cipher.c] fix problem with OpenBSD sync
9242fa1b 358 - (stevesk) [LICENCE] OpenBSD sync
6f34652e 359
8627f3e0 36020020321
361 - (bal) OpenBSD CVS Sync
362 - itojun@cvs.openbsd.org 2002/03/08 06:10:16
363 [sftp-client.c]
364 printf type mismatch
bfa7f960 365 - itojun@cvs.openbsd.org 2002/03/11 03:18:49
366 [sftp-client.c]
367 correct type mismatches (u_int64_t != unsigned long long)
5fc7dbc9 368 - itojun@cvs.openbsd.org 2002/03/11 03:19:53
369 [sftp-client.c]
370 indent
150a5466 371 - markus@cvs.openbsd.org 2002/03/14 15:24:27
372 [sshconnect1.c]
373 don't trust size sent by (rogue) server; noted by s.esser@e-matters.de
4f08e98d 374 - markus@cvs.openbsd.org 2002/03/14 16:38:26
375 [sshd.c]
376 split out ssh1 session key decryption; ok provos@
46f1eece 377 - markus@cvs.openbsd.org 2002/03/14 16:56:33
378 [auth-rh-rsa.c auth-rsa.c auth.h]
379 split auth_rsa() for better readability and privsep; ok provos@
c390a3c8 380 - itojun@cvs.openbsd.org 2002/03/15 11:00:38
381 [auth.c]
382 fix file type checking (use S_ISREG). ok by markus
bcb68a8f 383 - markus@cvs.openbsd.org 2002/03/16 11:24:53
384 [compress.c]
385 skip inflateEnd if inflate fails; ok provos@
3e65880e 386 - markus@cvs.openbsd.org 2002/03/16 17:22:09
387 [auth-rh-rsa.c auth.h]
388 split auth_rhosts_rsa(), ok provos@
bb15f28b 389 - stevesk@cvs.openbsd.org 2002/03/16 17:41:25
390 [auth-krb5.c]
391 BSD license. from Daniel Kouril via Dug Song. ok markus@
443fa1cd 392 - provos@cvs.openbsd.org 2002/03/17 20:25:56
393 [auth.c auth.h auth1.c auth2.c]
394 getpwnamallow returns struct passwd * only if user valid; okay markus@
1b34c1b3 395 - provos@cvs.openbsd.org 2002/03/18 01:12:14
396 [auth.h auth1.c auth2.c sshd.c]
397 have the authentication functions return the authentication context
398 and then do_authenticated; okay millert@
9d0844e3 399 - dugsong@cvs.openbsd.org 2002/03/18 01:30:10
400 [auth-krb4.c]
401 set client to NULL after xfree(), from Rolf Braun
402 <rbraun+ssh@andrew.cmu.edu>
1836f69f 403 - provos@cvs.openbsd.org 2002/03/18 03:41:08
404 [auth.c session.c]
405 move auth_approval into getpwnamallow with help from millert@
bf8269a9 406 - markus@cvs.openbsd.org 2002/03/18 17:13:15
407 [cipher.c cipher.h]
408 export/import cipher states; needed by ssh-privsep
e050d348 409 - markus@cvs.openbsd.org 2002/03/18 17:16:38
410 [packet.c packet.h]
411 export/import cipher state, iv and ssh2 seqnr; needed by ssh-privsep
d0074658 412 - markus@cvs.openbsd.org 2002/03/18 17:23:31
413 [key.c key.h]
414 add key_demote() for ssh-privsep
b625ad75 415 - provos@cvs.openbsd.org 2002/03/18 17:25:29
416 [bufaux.c bufaux.h]
417 buffer_skip_string and extra sanity checking; needed by ssh-privsep
3d6fc2f8 418 - provos@cvs.openbsd.org 2002/03/18 17:31:54
419 [compress.c]
420 export compression streams for ssh-privsep
1853d1ef 421 - provos@cvs.openbsd.org 2002/03/18 17:50:31
422 [auth-bsdauth.c auth-options.c auth-rh-rsa.c auth-rsa.c auth-skey.c auth.h
423 auth1.c auth2-chall.c auth2.c kex.c kex.h kexdh.c kexgex.c servconf.c
424 session.h servconf.h serverloop.c session.c sshd.c]
425 integrate privilege separated openssh; its turned off by default for now.
426 work done by me and markus@
ce19ff48 427 - provos@cvs.openbsd.org 2002/03/18 17:53:08
428 [sshd.8]
429 credits for privsep
70aa9ff4 430 - provos@cvs.openbsd.org 2002/03/18 17:59:09
431 [sshd.8]
432 document UsePrivilegeSeparation
73fbf637 433 - stevesk@cvs.openbsd.org 2002/03/18 23:52:51
434 [servconf.c]
435 UnprivUser/UnprivGroup usable now--specify numeric user/group; ok
436 provos@
1c352e97 437 - stevesk@cvs.openbsd.org 2002/03/19 03:03:43
438 [pathnames.h servconf.c servconf.h sshd.c]
439 _PATH_PRIVSEP_CHROOT_DIR; ok provos@
fffbaee2 440 - stevesk@cvs.openbsd.org 2002/03/19 05:23:08
441 [sshd.8]
442 Banner has no default.
702b7dd8 443 - mpech@cvs.openbsd.org 2002/03/19 06:32:56
444 [sftp-int.c]
445 use xfree() after xstrdup().
446
447 markus@ ok
51aeb639 448 - markus@cvs.openbsd.org 2002/03/19 10:35:39
449 [auth-options.c auth.h session.c session.h sshd.c]
450 clean up prototypes
762715ce 451 - markus@cvs.openbsd.org 2002/03/19 10:49:35
452 [auth-krb5.c auth-rh-rsa.c auth.c cipher.c key.c misc.h packet.c session.c
453 sftp-client.c sftp-glob.h sftp.c ssh-add.c ssh.c sshconnect2.c sshd.c
454 ttymodes.c]
455 KNF whitespace
5f1f36b5 456 - markus@cvs.openbsd.org 2002/03/19 14:27:39
457 [auth.c auth1.c auth2.c]
458 make getpwnamallow() allways call pwcopy()
06bea668 459 - markus@cvs.openbsd.org 2002/03/19 15:31:47
460 [auth.c]
461 check for NULL; from provos@
2ea6de2b 462 - stevesk@cvs.openbsd.org 2002/03/20 19:12:25
463 [servconf.c servconf.h ssh.h sshd.c]
464 for unprivileged user, group do:
465 pw=getpwnam(SSH_PRIVSEP_USER); do_setusercontext(pw). ok provos@
256debd0 466 - stevesk@cvs.openbsd.org 2002/03/20 21:08:08
467 [sshd.c]
468 strerror() on chdir() fail; ok provos@
edfb66cb 469 - markus@cvs.openbsd.org 2002/03/21 10:21:20
470 [ssh-add.c]
471 ignore errors for nonexisting default keys in ssh-add,
472 fixes http://bugzilla.mindrot.org/show_bug.cgi?id=158
c53c54c2 473 - jakob@cvs.openbsd.org 2002/03/21 15:17:26
474 [clientloop.c ssh.1]
475 add built-in command line for adding new port forwardings on the fly.
476 based on a patch from brian wellington. ok markus@.
7649bbfe 477 - markus@cvs.openbsd.org 2002/03/21 16:38:06
478 [scard.c]
479 make compile w/ openssl 0.9.7
b9f62352 480 - markus@cvs.openbsd.org 2002/03/21 16:54:53
481 [scard.c scard.h ssh-keygen.c]
482 move key upload to scard.[ch]
483 - markus@cvs.openbsd.org 2002/03/21 16:57:15
484 [scard.c]
485 remove const
39ac8430 486 - markus@cvs.openbsd.org 2002/03/21 16:58:13
487 [clientloop.c]
488 remove unused
514b94dc 489 - rees@cvs.openbsd.org 2002/03/21 18:08:15
490 [scard.c]
491 In sc_put_key(), sc_reader_id should be id.
ce1ba33a 492 - markus@cvs.openbsd.org 2002/03/21 20:51:12
493 [sshd_config]
494 add privsep (off)
324bf712 495 - markus@cvs.openbsd.org 2002/03/21 21:23:34
496 [sshd.c]
497 add privsep_preauth() and remove 1 goto; ok provos@
86c4f63d 498 - rees@cvs.openbsd.org 2002/03/21 21:54:34
499 [scard.c scard.h ssh-keygen.c]
500 Add PIN-protection for secret key.
76139bd8 501 - rees@cvs.openbsd.org 2002/03/21 22:44:05
502 [authfd.c authfd.h ssh-add.c ssh-agent.c ssh.c]
503 Add PIN-protection for secret key.
ec9b7086 504 - markus@cvs.openbsd.org 2002/03/21 23:07:37
505 [clientloop.c]
506 remove unused, sync w/ cmdline patch in my tree.
ce1ba33a 507
81dadca3 50820020317
509 - (tim) [configure.ac] Assume path given with --with-pid-dir=PATH is wanted,
510 warn if directory does not exist. Put system directories in front of
511 PATH for finding entorpy commands.
43e41c2c 512 - (tim) [contrib/aix/buildbff.sh contrib/aix/inventory.sh] AIX package
513 build fixes. Patch by Darren Tucker <dtucker@zip.com.au>
514 [contrib/solaris/buildpkg.sh] add missing dirs to SYSTEM_DIR. Have
515 postinstall check for $piddir and add if necessary.
81dadca3 516
e4abf75b 51720020311
518 - (tim) [contrib/solaris/buildpkg.sh, contrib/solaris/README] Updated to
519 build on all platforms that support SVR4 style package tools. Now runs
520 from build dir. Parts are based on patches from Antonio Navarro, and
521 Darren Tucker.
522
fb8f3dc9 52320020308
a068d86f 524 - (djm) Revert bits of Markus' OpenSSL compat patch which was
525 accidentally committed.
526 - (djm) Add Markus' patch for compat wih OpenSSL < 0.9.6.
527 Known issue: Blowfish for SSH1 does not work
dc254471 528 - (stevesk) entropy.c: typo in debug message
633151a3 529 - (djm) ssh-keygen -i needs seeded RNG; report from markus@
fb8f3dc9 530
0b202697 531$Id$
This page took 1.8335 seconds and 5 git commands to generate.