2 - Merged changes from OpenBSD CVS
3 - [sshd.c] session_key_int may be zero
4 - [auth-rh-rsa.c servconf.c servconf.h ssh.h sshd.8 sshd.c sshd_config]
5 IgnoreUserKnownHosts(default=no), used for RhostRSAAuth, ok
7 - Brought default sshd_config more in line with OpenBSD's
8 - Grab server in gnome-ssh-askpass (Debian bug #49872)
11 - Added INSTALL documentation
12 - Merged yet more changes from OpenBSD CVS
13 - [auth-rh-rsa.c auth-rhosts.c auth-rsa.c channels.c clientloop.c]
14 [ssh.c ssh.h sshconnect.c sshd.c]
15 make all access to options via 'extern Options options'
16 and 'extern ServerOptions options' respectively;
17 options are no longer passed as arguments:
18 * make options handling more consistent
19 * remove #include "readconf.h" from ssh.h
20 * readconf.h is only included if necessary
21 - [mpaux.c] clear temp buffer
22 - [servconf.c] print _all_ bad options found in configfile
25 - Added (untested) Entropy Gathering Daemon (EGD) support
26 - Fixed /dev/urandom fd leak (Debian bug #49722)
27 - Merged OpenBSD CVS changes:
28 - [auth-rh-rsa.c] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
29 - [ssh.1] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
30 - [sshd.8] user/958: check ~/.ssh/known_hosts for rhosts-rsa, too
31 - Fix integer overflow which was messing up scp's progress bar for large
32 file transfers. Fix submitted to OpenBSD developers.
33 - Merged more OpenBSD CVS changes:
34 - [auth-krb4.c auth-passwd.c] remove x11- and krb-cleanup from fatal()
36 - [clientloop.c log-client.c log-server.c ]
37 [readconf.c readconf.h servconf.c servconf.h ]
38 [ssh.1 ssh.c ssh.h sshd.8]
39 add LogLevel {QUIET, FATAL, ERROR, INFO, CHAT, DEBUG} to ssh/sshd,
40 obsoletes QuietMode and FascistLogging in sshd.
41 - [sshd.c] fix fatal/assert() bug reported by damien@ibs.com.au:
42 allow session_key_int != sizeof(session_key)
43 [this should fix the pre-assert-removal-core-files]
44 - Updated default config file to use new LogLevel option and to improve
48 - Merged several minor fixes:
49 - ssh-agent commandline parsing
50 - RPM spec file now installs ssh setuid root
51 - Makefile creates libdir
52 - Merged beginnings of Solaris compability from Marc G. Fournier
53 <marc.fournier@acadiau.ca>
56 - Autodetection of SSL/Crypto library location via autoconf
57 - Fixed location of ssh-askpass to follow autoconf
58 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
59 - Autodetection of RSAref library for US users
61 - Merged OpenBSD CVS changes:
62 - [rsa.c] bugfix: use correct size for memset()
63 - [sshconnect.c] warn if announced size of modulus 'n' != real size
64 - Added GNOME passphrase requestor (use --with-gnome-askpass)
65 - RPM build now creates subpackages
69 - Removed debian/ directory. This is now being maintained separately.
70 - Added symlinks for slogin in RPM spec file
71 - Fixed permissions on manpages in RPM spec file
72 - Added references to required libraries in README file
73 - Removed config.h.in from CVS
74 - Removed pwdb support (better pluggable auth is provided by glibc)
75 - Made PAM and requisite libdl optional
76 - Removed lots of unnecessary checks from autoconf
77 - Added support and autoconf test for openpty() function (Unix98 pty support)
78 - Fix for scp not finding ssh if not installed as /usr/bin/ssh
80 - Merged parts of Debian patch From Phil Hands <phil@hands.com>:
81 - Added ssh-askpass program
82 - Added ssh-askpass support to ssh-add.c
83 - Create symlinks for slogin on install
84 - Fix "distclean" target in makefile
85 - Added example for ssh-agent to manpage
86 - Added support for PAM_TEXT_INFO messages
87 - Disable internal /etc/nologin support if PAM enabled
88 - Merged latest OpenBSD CVS changes:
89 - [all] replace assert() with error, fatal or packet_disconnect
90 - [sshd.c] don't send fail-msg but disconnect if too many authentication
92 - [sshd.c] remove unused argument. ok dugsong
94 - [rsa.c] clear buffers used for encryption. ok: niels
95 - [rsa.c] replace assert() with error, fatal or packet_disconnect
96 - [auth-krb4.c] remove unused argument. ok dugsong
97 - Fixed coredump after merge of OpenBSD rsa.c patch
101 - Merged change from OpenBSD CVS
102 - One-line cleanup in sshd.c
105 - Integrated debian package support from Dan Brosemer <odin@linuxfreak.com>
106 - Merged latest updates for OpenBSD CVS:
107 - channels.[ch] - remove broken x11 fix and document istate/ostate
108 - ssh-agent.c - call setsid() regardless of argv[]
109 - ssh.c - save a few lines when disabling rhosts-{rsa-}auth
110 - Documentation cleanups
111 - Renamed README -> README.Ylonen
112 - Renamed README.openssh ->README
115 - Renamed openssh* back to ssh* at request of Theo de Raadt
116 - Incorporated latest changes from OpenBSD's CVS
117 - Integrated Makefile patch from Niels Kristian Bech Jensen <nkbj@image.dk>
118 - Integrated PAM env patch from Nalin Dahyabhai <nalin.dahyabhai@pobox.com>
119 - Make distclean now removed configure script
120 - Improved PAM logging
121 - Added some debug() calls for PAM
122 - Removed redundant subdirectories
123 - Integrated part of a patch from Dan Brosemer <odin@linuxfreak.com> for
125 - Fixed off-by-one error in PAM env patch
129 - Further PAM enhancements.
131 - Now uses account and session modules for all logins.
132 - Integrated patch from Dan Brosemer <odin@linuxfreak.com>
135 - Change binary names to open*
136 - Fixed autoconf script to detect PAM on RH6.1
137 - Added tests for libpwdb, and OpenBSD functions to autoconf
140 - Imported latest OpenBSD CVS code
141 - Updated README.openssh
148 - Excised my buggy replacements for strlcpy and mkdtemp
149 - Imported correct OpenBSD strlcpy and mkdtemp routines.
150 - Reduced arc4random_stir entropy read to 32 bytes (256 bits)
151 - Picked up correct version number from OpenBSD
152 - Added sshd.pam PAM configuration file
153 - Added sshd.init Redhat init script
154 - Added openssh.spec RPM spec file
158 - Fixed include paths of OpenSSL functions
159 - Use OpenSSL MD5 routines
160 - Imported RC4 code from nanocrypt
161 - Wrote replacements for OpenBSD arc4random* functions
162 - Wrote replacements for strlcpy and mkdtemp