]> andersk Git - openssh.git/log
openssh.git
14 years ago - djm@cvs.openbsd.org 2009/11/10 02:58:56
dtucker [Fri, 8 Jan 2010 06:06:47 +0000 (06:06 +0000)] 
   - djm@cvs.openbsd.org 2009/11/10 02:58:56
     [sshd_config.5]
     clarify that StrictModes does not apply to ChrootDirectory. Permissions
     and ownership are always checked when chrooting. bz#1532

14 years ago - djm@cvs.openbsd.org 2009/11/10 02:56:22
dtucker [Fri, 8 Jan 2010 06:05:59 +0000 (06:05 +0000)] 
   - djm@cvs.openbsd.org 2009/11/10 02:56:22
     [ssh_config.5]
     explain the constraints on LocalCommand some more so people don't
     try to abuse it.

14 years ago - jmc@cvs.openbsd.org 2009/10/28 21:45:08
dtucker [Fri, 8 Jan 2010 06:05:26 +0000 (06:05 +0000)] 
   - jmc@cvs.openbsd.org 2009/10/28 21:45:08
     [sshd_config.5 sftp.1]
     tweak previous;

14 years ago - reyk@cvs.openbsd.org 2009/10/28 16:38:18
dtucker [Fri, 8 Jan 2010 06:03:46 +0000 (06:03 +0000)] 
   - reyk@cvs.openbsd.org 2009/10/28 16:38:18
     [ssh_config.5 sshd.c misc.h ssh-keyscan.1 readconf.h sshconnect.c
     channels.c channels.h servconf.h servconf.c ssh.1 ssh-keyscan.c scp.1
     sftp.1 sshd_config.5 readconf.c ssh.c misc.c]
     Allow to set the rdomain in ssh/sftp/scp/sshd and ssh-keyscan.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:23:42
dtucker [Fri, 8 Jan 2010 05:54:59 +0000 (05:54 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:23:42
     [ssh.c]
     Request roaming to be enabled if UseRoaming is true and the server
     supports it.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:22:37
dtucker [Fri, 8 Jan 2010 05:53:31 +0000 (05:53 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:22:37
     [roaming_common.c]
     Do the actual suspend/resume in the client. This won't be useful until
     the server side supports roaming.
     Most code from Martin Forssen, maf at appgate dot com. Some changes by
     me and markus@
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:19:17
dtucker [Fri, 8 Jan 2010 05:52:32 +0000 (05:52 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:19:17
     [ssh2.h]
     Define the KEX messages used when resuming a suspended connection.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:15:29
dtucker [Fri, 8 Jan 2010 05:51:40 +0000 (05:51 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:15:29
     [clientloop.c]
     client_loop() must detect if the session has been suspended and resumed,
     and take appropriate action in that case.
     From Martin Forssen, maf at appgate dot com
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:13:54
dtucker [Fri, 8 Jan 2010 05:50:41 +0000 (05:50 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:13:54
     [sshconnect2.c kex.h kex.c]
     Let the client detect if the server supports roaming by looking
     for the resume@appgate.com kex algorithm.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/10/24 11:11:58
dtucker [Fri, 8 Jan 2010 05:49:52 +0000 (05:49 +0000)] 
   - andreas@cvs.openbsd.org 2009/10/24 11:11:58
     [roaming.h]
     Declarations needed for upcoming changes.
     ok markus@

14 years ago - (tim) [contrib/cygwin/Makefile] Install ssh-copy-id and ssh-copy-id.1
tim [Sat, 26 Dec 2009 23:40:47 +0000 (23:40 +0000)] 
 - (tim) [contrib/cygwin/Makefile] Install ssh-copy-id and ssh-copy-id.1
   Gzip all man pages. Patch from Corinna Vinschen.

14 years ago - (dtucker) [auth-krb5.c platform.{c,h} openbsd-compat/port-aix.{c,h}]
dtucker [Sun, 20 Dec 2009 23:49:21 +0000 (23:49 +0000)] 
 - (dtucker) [auth-krb5.c platform.{c,h} openbsd-compat/port-aix.{c,h}]
   Bug #1583: Use system's kerberos principal name on AIX if it's available.
   Based on a patch from and tested by Miguel Sanders.

14 years ago - (dtucker) Bug #1470: Disable OOM-killing of the listening sshd on Linux,
dtucker [Tue, 8 Dec 2009 02:39:48 +0000 (02:39 +0000)] 
 - (dtucker) Bug #1470: Disable OOM-killing of the listening sshd on Linux,
   based on a patch from Vaclav Ovsik and Colin Watson.  ok djm.

14 years ago - (dtucker) Bug #1677: add conditionals around the source for ssh-askpass.
dtucker [Mon, 7 Dec 2009 00:32:36 +0000 (00:32 +0000)] 
 - (dtucker) Bug #1677: add conditionals around the source for ssh-askpass.

14 years ago - (dtucker) Bug #1160: use pkg-config for opensc config if it's available.
dtucker [Mon, 7 Dec 2009 00:15:43 +0000 (00:15 +0000)] 
 - (dtucker) Bug #1160: use pkg-config for opensc config if it's available.
   Tested by Martin Paljak.

14 years ago - (tim) [opensshd.init.in] If PidFile is set in sshd_config, use it.
tim [Sat, 21 Nov 2009 03:32:15 +0000 (03:32 +0000)] 
 - (tim) [opensshd.init.in] If PidFile is set in sshd_config, use it.
   Bug 1628. OK dtucker@

14 years ago - (djm) [ssh-rand-helper.c] Print error and usage() when passed command-
djm [Fri, 20 Nov 2009 04:16:35 +0000 (04:16 +0000)] 
 - (djm) [ssh-rand-helper.c] Print error and usage() when passed command-
   line arguments as none are supported. Exit when passed unrecognised
   commandline flags. bz#1568 from gson AT araneus.fi

14 years ago - (djm) [contrib/gnome-ssh-askpass2.c] Make askpass dialog desktop-modal.
djm [Wed, 18 Nov 2009 06:51:59 +0000 (06:51 +0000)] 
 - (djm) [contrib/gnome-ssh-askpass2.c] Make askpass dialog desktop-modal.
   bz#1645, patch from jchadima AT redhat.com

14 years ago - (djm) [channels.c misc.c misc.h sshd.c] add missing setsockopt() to
djm [Wed, 18 Nov 2009 06:48:30 +0000 (06:48 +0000)] 
 - (djm) [channels.c misc.c misc.h sshd.c] add missing setsockopt() to
   set IPV6_V6ONLY for local forwarding with GatwayPorts=yes. Unify
   setting IPV6_V6ONLY behind a new function misc.c:sock_set_v6only()
   report and fix from jan.kratochvil AT redhat.com

14 years ago - (dtucker) [authfile.c] Fall back to 3DES for the encryption of private
dtucker [Sat, 7 Nov 2009 05:03:14 +0000 (05:03 +0000)] 
 - (dtucker) [authfile.c] Fall back to 3DES for the encryption of private
    keys when built with OpenSSL versions that don't do AES.

14 years ago - (dtucker) [authfile.c] Add OpenSSL compat header so this still builds with
dtucker [Thu, 5 Nov 2009 09:43:16 +0000 (09:43 +0000)] 
 - (dtucker) [authfile.c] Add OpenSSL compat header so this still builds with
   older versions of OpenSSL.

14 years ago - (dtucker) [session.c openbsd-compat/port-linux.{c,h}] Bug #1637: if selinux
dtucker [Sat, 24 Oct 2009 04:04:12 +0000 (04:04 +0000)] 
 - (dtucker) [session.c openbsd-compat/port-linux.{c,h}] Bug #1637: if selinux
   is enabled set the security context to "sftpd_t" before running the
   internal sftp server   Based on a patch from jchadima at redhat.

14 years ago - (dtucker) [mdoc2man.awk] Teach it to understand the .Ux macro.
dtucker [Sat, 24 Oct 2009 00:52:42 +0000 (00:52 +0000)] 
 - (dtucker) [mdoc2man.awk] Teach it to understand the .Ux macro.

14 years ago - dtucker@cvs.openbsd.org 2009/10/24 00:48:34
dtucker [Sat, 24 Oct 2009 00:50:17 +0000 (00:50 +0000)] 
   - dtucker@cvs.openbsd.org 2009/10/24 00:48:34
     [ssh-keygen.1]
     ssh-keygen now uses AES-128 for private keys

14 years ago - djm@cvs.openbsd.org 2009/10/23 01:57:11
dtucker [Sat, 24 Oct 2009 00:47:58 +0000 (00:47 +0000)] 
   - djm@cvs.openbsd.org 2009/10/23 01:57:11
     [sshconnect2.c]
     disallow a hostile server from checking jpake auth by sending an
     out-of-sequence success message. (doesn't affect code enabled by default)

14 years ago - djm@cvs.openbsd.org 2009/10/22 22:26:13
dtucker [Sat, 24 Oct 2009 00:46:43 +0000 (00:46 +0000)] 
   - djm@cvs.openbsd.org 2009/10/22 22:26:13
     [authfile.c]
     switch from 3DES to AES-128 for encryption of passphrase-protected
     SSH protocol 2 private keys; ok several

14 years ago - sobrado@cvs.openbsd.org 2009/10/22 15:02:12
dtucker [Sat, 24 Oct 2009 00:42:44 +0000 (00:42 +0000)] 
   - sobrado@cvs.openbsd.org 2009/10/22 15:02:12
     [ssh-agent.1 ssh-add.1 ssh.1]
     write UNIX-domain in a more consistent way; while here, replace a
     few remaining ".Tn UNIX" macros with ".Ux" ones.
     pointed out by ratchov@, thanks!
     ok jmc@

14 years ago - sobrado@cvs.openbsd.org 2009/10/22 12:35:53
dtucker [Sat, 24 Oct 2009 00:41:34 +0000 (00:41 +0000)] 
   - sobrado@cvs.openbsd.org 2009/10/22 12:35:53
     [ssh.1 ssh-agent.1 ssh-add.1]
     use the UNIX-related macros (.At and .Ux) where appropriate.
     ok jmc@

14 years ago - sobrado@cvs.openbsd.org 2009/10/17 12:10:39
dtucker [Sat, 24 Oct 2009 00:41:05 +0000 (00:41 +0000)] 
   - sobrado@cvs.openbsd.org 2009/10/17 12:10:39
     [sftp-server.c]
     sort flags.

14 years ago - (dtucker) OpenBSD CVS Sync
dtucker [Sat, 24 Oct 2009 00:40:32 +0000 (00:40 +0000)] 
 - (dtucker) OpenBSD CVS Sync
   - djm@cvs.openbsd.org 2009/10/11 23:03:15
     [hostfile.c]
     mention the host name that we are looking for in check_host_in_hostfile()

14 years ago - markus@cvs.openbsd.org 2009/10/08 18:04:27
dtucker [Sun, 11 Oct 2009 22:37:22 +0000 (22:37 +0000)] 
   - markus@cvs.openbsd.org 2009/10/08 18:04:27
     [regress/test-exec.sh]
     re-enable protocol v1 for the tests.

14 years ago - dtucker@cvs.openbsd.org 2009/10/11 10:41:26
dtucker [Sun, 11 Oct 2009 10:52:10 +0000 (10:52 +0000)] 
   - dtucker@cvs.openbsd.org 2009/10/11 10:41:26
     [sftp-client.c]
     d_type isn't portable so use lstat to get dirent modes.  Suggested by and
     "looks sane" deraadt@

14 years ago - jmc@cvs.openbsd.org 2009/10/08 20:42:12
dtucker [Sun, 11 Oct 2009 10:51:40 +0000 (10:51 +0000)] 
   - jmc@cvs.openbsd.org 2009/10/08 20:42:12
     [sshd_config.5 ssh_config.5 sshd.8 ssh.1]
     some tweaks now that protocol 1 is not offered by default; ok markus

14 years ago - (dtucker) OpenBSD CVS Sync
dtucker [Sun, 11 Oct 2009 10:51:08 +0000 (10:51 +0000)] 
 - (dtucker) OpenBSD CVS Sync
   - markus@cvs.openbsd.org 2009/10/08 14:03:41
     [sshd_config readconf.c ssh_config.5 servconf.c sshd_config.5]
     disable protocol 1 by default (after a transition period of about 10 years)
     ok deraadt

14 years ago - (dtucker) [configure.ac sftp-client.c] Remove the gyrations required for
dtucker [Sun, 11 Oct 2009 10:50:20 +0000 (10:50 +0000)] 
 - (dtucker) [configure.ac sftp-client.c] Remove the gyrations required for
   dirent d_type and DTTOIF as we've switched OpenBSD to the more portable
   lstat.

14 years ago - (dtucker) d_type is not mandated by POSIX, so add fallback code using
dtucker [Wed, 7 Oct 2009 07:56:10 +0000 (07:56 +0000)] 
 - (dtucker) d_type is not mandated by POSIX, so add fallback code using
    stat(), needed on at least cygwin.

14 years ago - (dtucker) [configure.ac sftp-client.c] DOTTIF is in fs/ffs/dir.h on at
dtucker [Wed, 7 Oct 2009 04:49:48 +0000 (04:49 +0000)] 
 - (dtucker) [configure.ac sftp-client.c] DOTTIF is in fs/ffs/dir.h on at
   least dragonflybsd.

14 years ago - (dtucker) [regress/portnum.sh] Import new test.
dtucker [Wed, 7 Oct 2009 00:00:58 +0000 (00:00 +0000)] 
 - (dtucker) [regress/portnum.sh] Import new test.

14 years agofix id
dtucker [Tue, 6 Oct 2009 23:58:40 +0000 (23:58 +0000)] 
fix id

14 years ago - dtucker@cvs.openbsd.org 2009/10/06 23:51:49
dtucker [Tue, 6 Oct 2009 23:54:31 +0000 (23:54 +0000)] 
   - dtucker@cvs.openbsd.org 2009/10/06 23:51:49
     [regress/ssh2putty.sh]
     Add OpenBSD tag to make syncs easier

14 years ago - djm@cvs.openbsd.org 2009/08/20 18:43:07
dtucker [Tue, 6 Oct 2009 23:46:29 +0000 (23:46 +0000)] 
   - djm@cvs.openbsd.org 2009/08/20 18:43:07
     [ssh-com-sftp.sh]
     fix one sftp -D ... => sftp -P ... conversion that I missed; from Carlos
     Silva for Google Summer of Code

14 years ago - djm@cvs.openbsd.org 2009/08/13 01:11:55
dtucker [Tue, 6 Oct 2009 23:43:57 +0000 (23:43 +0000)] 
   - djm@cvs.openbsd.org 2009/08/13 01:11:55
     [sftp-batch.sh sftp-badcmds.sh sftp.sh sftp-cmds.sh sftp-glob.sh]
     date: 2009/08/13 01:11:19;  author: djm;  state: Exp;  lines: +10 -7
     Swizzle options: "-P sftp_server_path" moves to "-D sftp_server_path",
     add "-P port" to match scp(1). Fortunately, the -P option is only really
     used by our regression scripts.
     part of larger patch from carlosvsilvapt@gmail.com for his Google Summer
     of Code work; ok deraadt markus

14 years ago - djm@cvs.openbsd.org 2009/08/13 00:57:17
dtucker [Tue, 6 Oct 2009 23:31:56 +0000 (23:31 +0000)] 
   - djm@cvs.openbsd.org 2009/08/13 00:57:17
     [regress/Makefile]
     regression test for port number parsing. written as part of the a2port
     change that went into 5.2 but I forgot to commit it at the time...

14 years ago - dtucker@cvs.openbsd.org 2009/05/05 07:51:36
dtucker [Tue, 6 Oct 2009 23:30:57 +0000 (23:30 +0000)] 
   - dtucker@cvs.openbsd.org 2009/05/05 07:51:36
     [regress/multiplex.sh]
     Always specify ssh_config for multiplex tests: prevents breakage caused
     by options in ~/.ssh/config.  From Dan Peterson.

14 years ago - djm@cvs.openbsd.org 2008/12/07 22:17:48
dtucker [Tue, 6 Oct 2009 23:30:06 +0000 (23:30 +0000)] 
   - djm@cvs.openbsd.org 2008/12/07 22:17:48
     [regress/addrmatch.sh]
     match string "passwordauthentication" only at start of line, not anywhere
     in sshd -T output

14 years ago - djm@cvs.openbsd.org 2009/10/06 04:46:40
dtucker [Tue, 6 Oct 2009 22:02:18 +0000 (22:02 +0000)] 
   - djm@cvs.openbsd.org 2009/10/06 04:46:40
     [session.c]
     bz#1596: fflush(NULL) before exec() to ensure that everying (motd
     in particular) has made it out before the streams go away.

14 years ago - grunk@cvs.openbsd.org 2009/10/01 11:37:33
dtucker [Tue, 6 Oct 2009 22:01:50 +0000 (22:01 +0000)] 
   - grunk@cvs.openbsd.org 2009/10/01 11:37:33
     [dh.c]
     fix a cast
     ok djm@ markus@

14 years ago - djm@cvs.openbsd.org 2009/09/01 14:43:17
dtucker [Tue, 6 Oct 2009 22:01:03 +0000 (22:01 +0000)] 
   - djm@cvs.openbsd.org 2009/09/01 14:43:17
     [ssh-agent.c]
     fix a race condition in ssh-agent that could result in a wedged or
     spinning agent: don't read off the end of the allocated fd_sets, and
     don't issue blocking read/write on agent sockets - just fall back to
     select() on retriable read/write errors. bz#1633 reported and tested
     by "noodle10000 AT googlemail.com"; ok dtucker@ markus@

14 years ago - djm@cvs.openbsd.org 2009/08/31 21:01:29
dtucker [Tue, 6 Oct 2009 21:47:47 +0000 (21:47 +0000)] 
   - djm@cvs.openbsd.org 2009/08/31 21:01:29
     [sftp-server.8]
     document -e and -h; prodded by jmc@

14 years ago - djm@cvs.openbsd.org 2009/08/31 20:56:02
dtucker [Tue, 6 Oct 2009 21:47:24 +0000 (21:47 +0000)] 
   - djm@cvs.openbsd.org 2009/08/31 20:56:02
     [sftp-server.c]
     check correct variable for error message, spotted by martynas@

14 years ago - djm@cvs.openbsd.org 2009/08/27 17:44:52
dtucker [Tue, 6 Oct 2009 21:47:02 +0000 (21:47 +0000)] 
   - djm@cvs.openbsd.org 2009/08/27 17:44:52
     [authfd.c ssh-add.c authfd.h]
     Do not fall back to adding keys without contraints (ssh-add -c / -t ...)
     when the agent refuses the constrained add request. This was a useful
     migration measure back in 2002 when constraints were new, but just
     adds risk now.
     bz #1612, report and patch from dkg AT fifthhorseman.net; ok markus@

14 years ago - djm@cvs.openbsd.org 2009/08/27 17:43:00
dtucker [Tue, 6 Oct 2009 21:46:21 +0000 (21:46 +0000)] 
   - djm@cvs.openbsd.org 2009/08/27 17:43:00
     [sftp-server.8]
     allow setting an explicit umask on the commandline to override whatever
     default the user has. bz#1229; ok dtucker@ deraadt@ markus@

14 years ago - djm@cvs.openbsd.org 2009/08/27 17:33:49
dtucker [Tue, 6 Oct 2009 21:45:48 +0000 (21:45 +0000)] 
   - djm@cvs.openbsd.org 2009/08/27 17:33:49
     [ssh-keygen.c]
     force use of correct hash function for random-art signature display
     as it was inheriting the wrong one when bubblebabble signatures were
     activated; bz#1611 report and patch from fwojcik+openssh AT besh.com;
     ok markus@

14 years ago - djm@cvs.openbsd.org 2009/08/27 17:28:52
dtucker [Tue, 6 Oct 2009 21:44:42 +0000 (21:44 +0000)] 
   - djm@cvs.openbsd.org 2009/08/27 17:28:52
     [sftp-server.c]
     allow setting an explicit umask on the commandline to override whatever
     default the user has. bz#1229; ok dtucker@ deraadt@ markus@

14 years ago - dtucker@cvs.openbsd.org 2009/08/20 23:54:28
dtucker [Tue, 6 Oct 2009 21:39:57 +0000 (21:39 +0000)] 
   - dtucker@cvs.openbsd.org 2009/08/20 23:54:28
     [mux.c]
     subsystem_flag is defined in ssh.c so it's extern; ok djm

14 years ago - jmc@cvs.openbsd.org 2009/08/19 04:56:03
dtucker [Tue, 6 Oct 2009 21:39:09 +0000 (21:39 +0000)] 
   - jmc@cvs.openbsd.org 2009/08/19 04:56:03
     [sftp.1]
     ether -> either;

14 years ago - djm@cvs.openbsd.org 2009/08/18 21:15:59
dtucker [Tue, 6 Oct 2009 21:38:23 +0000 (21:38 +0000)] 
  - djm@cvs.openbsd.org 2009/08/18 21:15:59
     [sftp.1]
     fix "get" command usage, spotted by jmc@

14 years ago - djm@cvs.openbsd.org 2009/08/18 18:36:21
dtucker [Tue, 6 Oct 2009 21:37:48 +0000 (21:37 +0000)] 
   - djm@cvs.openbsd.org 2009/08/18 18:36:21
     [sftp-client.h sftp.1 sftp-client.c sftp.c]
     recursive transfer support for get/put and on the commandline
     work mostly by carlosvsilvapt@gmail.com for the Google Summer of Code
     with some tweaks by me; "go for it" deraadt@

14 years ago - dtucker@cvs.openbsd.org 2009/08/16 23:29:26
dtucker [Tue, 6 Oct 2009 21:36:05 +0000 (21:36 +0000)] 
   - dtucker@cvs.openbsd.org 2009/08/16 23:29:26
     [sshd_config.5]
     Add PubkeyAuthentication to the list allowed in a Match block (bz #1577)

14 years ago - fgsch@cvs.openbsd.org 2009/08/15 18:56:34
dtucker [Tue, 6 Oct 2009 21:35:32 +0000 (21:35 +0000)] 
   - fgsch@cvs.openbsd.org 2009/08/15 18:56:34
     [auth.h]
     remove unused define. markus@ ok.
     (Id sync only, Portable still uses this.)

14 years ago - djm@cvs.openbsd.org 2009/08/14 18:17:49
dtucker [Tue, 6 Oct 2009 21:24:19 +0000 (21:24 +0000)] 
   - djm@cvs.openbsd.org 2009/08/14 18:17:49
     [sftp-client.c]
     make the "get_handle: ..." error messages vaguely useful by allowing
     callers to specify their own error message strings.

14 years ago - jmc@cvs.openbsd.org 2009/08/13 13:39:54
dtucker [Tue, 6 Oct 2009 21:23:44 +0000 (21:23 +0000)] 
   - jmc@cvs.openbsd.org 2009/08/13 13:39:54
     [sftp.1 sftp.c]
     sync synopsis and usage();

14 years ago - djm@cvs.openbsd.org 2009/08/13 01:11:19
dtucker [Tue, 6 Oct 2009 21:23:06 +0000 (21:23 +0000)] 
   - djm@cvs.openbsd.org 2009/08/13 01:11:19
     [sftp.1 sftp.c]
     Swizzle options: "-P sftp_server_path" moves to "-D sftp_server_path",
     add "-P port" to match scp(1). Fortunately, the -P option is only really
     used by our regression scripts.
     part of larger patch from carlosvsilvapt@gmail.com for his Google Summer
     of Code work; ok deraadt markus

14 years ago - jmc@cvs.openbsd.org 2009/08/12 06:31:42
dtucker [Tue, 6 Oct 2009 21:22:20 +0000 (21:22 +0000)] 
  - jmc@cvs.openbsd.org 2009/08/12 06:31:42
     [sftp.1]
     sort options;

14 years ago - djm@cvs.openbsd.org 2009/08/12 00:13:00
dtucker [Tue, 6 Oct 2009 21:21:48 +0000 (21:21 +0000)] 
   - djm@cvs.openbsd.org 2009/08/12 00:13:00
     [sftp.c sftp.1]
     support most of scp(1)'s commandline arguments in sftp(1), as a first
     step towards making sftp(1) a drop-in replacement for scp(1).
     One conflicting option (-P) has not been changed, pending further
     discussion.
     Patch from carlosvsilvapt@gmail.com as part of his work in the
     Google Summer of Code

14 years ago - (djm) [Makefile.in] Mention readconf.o in ssh-keysign's make deps.
djm [Fri, 2 Oct 2009 01:50:55 +0000 (01:50 +0000)] 
 - (djm) [Makefile.in] Mention readconf.o in ssh-keysign's make deps.
   spotted by des AT des.no

14 years agopull in 5.3 release changes from branch:
djm [Fri, 2 Oct 2009 01:49:03 +0000 (01:49 +0000)] 
pull in 5.3 release changes from branch:

20090926
 - (djm) [contrib/caldera/openssh.spec contrib/redhat/openssh.spec]
         [contrib/suse/openssh.spec] Update for release
 - (djm) [README] update relnotes URL
 - (djm) [packet.c] Restore EWOULDBLOCK handling that got lost somewhere
 - (djm) Release 5.3p1

14 years ago - (dtucker) [configure.ac] Change the -lresolv check so it works on Mac OS X
dtucker [Fri, 11 Sep 2009 04:56:08 +0000 (04:56 +0000)] 
 - (dtucker) [configure.ac] Change the -lresolv check so it works on Mac OS X
   10.6 (which doesn't have BIND8_COMPAT and thus uses res_9_query).  Patch
   from jbasney at ncsa uiuc edu.

14 years ago - (djm) [serverloop.c] Fix test for server-assigned remote forwarding port
djm [Wed, 9 Sep 2009 01:07:28 +0000 (01:07 +0000)] 
 - (djm) [serverloop.c] Fix test for server-assigned remote forwarding port
   (-R 0:...); bz#1578, spotted and fix by gavin AT emf.net; ok dtucker@

14 years ago - (dtucker) [configure.ac] Bug #1639: use AC_PATH_PROG to search the path for
dtucker [Tue, 1 Sep 2009 08:26:00 +0000 (08:26 +0000)] 
 - (dtucker) [configure.ac] Bug #1639: use AC_PATH_PROG to search the path for
   krb5-config if it's not in the location specified by --with-kerberos5.
   Patch from jchadima at redhat.

14 years ago - (dtucker) [README.platform] Add text about development packages, based on
dtucker [Fri, 28 Aug 2009 23:14:48 +0000 (23:14 +0000)] 
 - (dtucker) [README.platform] Add text about development packages, based on
   text from Chris Pepper in bug #1631.

14 years ago - (dtucker) [configure.ac] Fix the syntax of the Solaris tcgetattr entry.
dtucker [Fri, 28 Aug 2009 05:01:20 +0000 (05:01 +0000)] 
 - (dtucker) [configure.ac] Fix the syntax of the Solaris tcgetattr entry.

14 years ago - (dtucker) [clientloop.c configure.ac defines.h] Make the client's IO buffer
dtucker [Fri, 28 Aug 2009 01:21:06 +0000 (01:21 +0000)] 
 - (dtucker) [clientloop.c configure.ac defines.h] Make the client's IO buffer
   size a compile-time option and set it to 64k on Cygwin, since Corinna
   reports that it makes a significant difference to performance.  ok djm@

14 years ago - (dtucker) [channels.c configure.ac] Bug #1528: skip the tcgetattr call on
dtucker [Fri, 28 Aug 2009 01:02:37 +0000 (01:02 +0000)] 
 - (dtucker) [channels.c configure.ac] Bug #1528: skip the tcgetattr call on
    the pty master on Solaris, since it never succeeds and can hang if large
    amounts of data is sent to the slave (eg a copy-paste).  Based on a patch
    originally from Doke Scott, ok djm@

14 years ago - (djm) [Makefile.in] bz#1505: Solaris make(1) doesn't accept make variables
djm [Fri, 28 Aug 2009 00:47:38 +0000 (00:47 +0000)] 
 - (djm) [Makefile.in] bz#1505: Solaris make(1) doesn't accept make variables
   in argv, so pass them in the environment; ok dtucker@

14 years ago- (djm) [sftp-server.c] bz#1535: accept ENOSYS as a fallback error when
djm [Fri, 28 Aug 2009 00:43:13 +0000 (00:43 +0000)] 
- (djm) [sftp-server.c] bz#1535: accept ENOSYS as a fallback error when
  attempting atomic rename(); ok dtucker@

14 years ago - (djm) [sshd_config.5] downgrade mention of login.conf to be an example
djm [Fri, 28 Aug 2009 00:40:30 +0000 (00:40 +0000)] 
 - (djm) [sshd_config.5] downgrade mention of login.conf to be an example
   and mention PAM as another provider for ChallengeResponseAuthentication;
   bz#1408; ok dtucker@

14 years agodowngrade mention of login.conf to be an example and mention PAM as
djm [Fri, 28 Aug 2009 00:27:08 +0000 (00:27 +0000)] 
downgrade mention of login.conf to be an example and mention PAM as
another provider for ChallengeResponseAuthentication; bz#1408; ok dtucker@

14 years ago - dtucker [auth-sia.c] Roll back the change for bug #1241 as it apparently
dtucker [Fri, 28 Aug 2009 00:16:44 +0000 (00:16 +0000)] 
 - dtucker [auth-sia.c] Roll back the change for bug #1241 as it apparently
   causes problems in some Tru64 configurations.

14 years ago - (dtucker) [session.c openbsd-compat/port-aix.h] Bugs #1249 and #1567: move
dtucker [Thu, 20 Aug 2009 06:20:50 +0000 (06:20 +0000)] 
 - (dtucker) [session.c openbsd-compat/port-aix.h] Bugs #1249 and #1567: move
   the setpcred call on AIX to immediately before the permanently_set_uid().
   Ensures that we still have privileges when we call chroot and
   pam_open_sesson.  Based on a patch from David Leonard.

14 years ago - (dtucker) [includes.h] Bug #1634: do not include system glob.h if we're not
dtucker [Thu, 20 Aug 2009 06:16:01 +0000 (06:16 +0000)] 
 - (dtucker) [includes.h] Bug #1634: do not include system glob.h if we're not
   using it since the type conflicts can cause problems on FreeBSD.  Patch
   from Jonathan Chen.

14 years ago - (dtucker) [sshlogin.c openbsd-compat/port-aix.{c,h}] Bug #1595: make
dtucker [Sun, 16 Aug 2009 23:40:00 +0000 (23:40 +0000)] 
 - (dtucker) [sshlogin.c openbsd-compat/port-aix.{c,h}] Bug #1595: make
   PrintLastLog work on AIX.  Based in part on a patch from Miguel Sanders.

14 years ago - (dtucker) [configure.ac] Check for headers before libraries for openssl an
dtucker [Sun, 16 Aug 2009 23:35:22 +0000 (23:35 +0000)] 
 - (dtucker) [configure.ac] Check for headers before libraries for openssl an
   zlib, which should make the errors slightly more meaningful on platforms
   where there's separate "-devel" packages for those.

14 years ago - (tim) [contrib/cygwin/ssh-user-config] Change script to call correct error
tim [Wed, 29 Jul 2009 14:21:13 +0000 (14:21 +0000)] 
 - (tim) [contrib/cygwin/ssh-user-config] Change script to call correct error
   function. Patch from Corinna Vinschen.

14 years ago - (dtucker) [openbsd-compat/getrrsetbyname.c] Reduce answer buffer size so it
dtucker [Mon, 13 Jul 2009 01:38:23 +0000 (01:38 +0000)] 
 - (dtucker) [openbsd-compat/getrrsetbyname.c] Reduce answer buffer size so it
   fits into 16 bits to work around a bug in glibc's resolver where it masks
   off the buffer size at 16 bits.  Patch from Hauke Lampe, ok djm jakob.

14 years agoadd credit for bug #1534 patch
dtucker [Sun, 12 Jul 2009 12:12:28 +0000 (12:12 +0000)] 
add credit for bug #1534 patch

14 years ago - (dtucker) [auth-pam.c] Bug #1534: move the deletion of PAM credentials on
dtucker [Sun, 12 Jul 2009 12:07:21 +0000 (12:07 +0000)] 
 - (dtucker) [auth-pam.c] Bug #1534: move the deletion of PAM credentials on
   logout to after the session close.  Patch from Anicka Bernathova, ok djm.

14 years ago - (dtucker [contrib/cygwin/ssh-{host,user}-config] Add license text. Patch
dtucker [Sun, 12 Jul 2009 11:58:42 +0000 (11:58 +0000)] 
 - (dtucker [contrib/cygwin/ssh-{host,user}-config] Add license text. Patch
   from Corinna Vinschen.

14 years ago - (dtucker) [configure.ac] Include sys/param.h for the sys/mount.h test,
dtucker [Sun, 12 Jul 2009 11:56:29 +0000 (11:56 +0000)] 
 - (dtucker) [configure.ac] Include sys/param.h for the sys/mount.h test,
   prevents configure complaining on older BSDs.

14 years ago - (dtucker) [contrib/cygwin/ssh-host-config] better support for automated
dtucker [Tue, 7 Jul 2009 11:19:11 +0000 (11:19 +0000)] 
 - (dtucker) [contrib/cygwin/ssh-host-config] better support for automated
   scripts and fix usage of eval.  Patch from Corinna Vinschen.

14 years ago - stevesk@cvs.openbsd.org 2009/07/05 19:28:33
dtucker [Sun, 5 Jul 2009 21:17:35 +0000 (21:17 +0000)] 
   - stevesk@cvs.openbsd.org 2009/07/05 19:28:33
     [clientloop.c]
     only send SSH2_MSG_DISCONNECT if we're in compat20; from dtucker@
     ok deraadt@ markus@

14 years ago - dtucker@cvs.openbsd.org 2009/07/02 02:11:47
dtucker [Sun, 5 Jul 2009 21:16:56 +0000 (21:16 +0000)] 
   - dtucker@cvs.openbsd.org 2009/07/02 02:11:47
     [ssh.c]
     allow for long home dir paths (bz #1615).  ok deraadt
     (based in part on a patch from jchadima at redhat)

14 years ago - markus@cvs.openbsd.org 2009/06/30 14:54:40
dtucker [Sun, 5 Jul 2009 21:13:04 +0000 (21:13 +0000)] 
   - markus@cvs.openbsd.org 2009/06/30 14:54:40
     [version.h]
     crank version; ok deraadt

14 years ago - andreas@cvs.openbsd.org 2009/06/27 09:35:06
dtucker [Sun, 5 Jul 2009 21:12:27 +0000 (21:12 +0000)] 
   - andreas@cvs.openbsd.org 2009/06/27 09:35:06
     [readconf.h readconf.c]
     Add client option UseRoaming. It doesn't do anything yet but will
     control whether the client tries to use roaming if enabled on the
     server. From Martin Forssen.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/06/27 09:32:43
dtucker [Sun, 5 Jul 2009 21:11:52 +0000 (21:11 +0000)] 
   - andreas@cvs.openbsd.org 2009/06/27 09:32:43
     [roaming_common.c roaming.h]
     It may be necessary to retransmit some data when resuming, so add it
     to a buffer when roaming is enabled.
     Most of this code was written by Martin Forssen, maf at appgate dot com.
     ok markus@

14 years ago - andreas@cvs.openbsd.org 2009/06/27 09:29:06
dtucker [Sun, 5 Jul 2009 21:11:13 +0000 (21:11 +0000)] 
   - andreas@cvs.openbsd.org 2009/06/27 09:29:06
     [packet.h packet.c]
     packet_bacup_state() and packet_restore_state() will be used to
     temporarily save the current state ren resuming a suspended connection.
     ok markus@

14 years ago - dtucker@cvs.openbsd.org 2009/06/22 05:39:28
dtucker [Mon, 22 Jun 2009 06:11:06 +0000 (06:11 +0000)] 
   - dtucker@cvs.openbsd.org 2009/06/22 05:39:28
     [monitor_wrap.c monitor_mm.c ssh-keygen.c auth2.c gss-genr.c sftp-client.c]
     alphabetize includes; reduces diff vs portable and style(9).
     ok stevesk djm
     (Id sync only; these were already in order in -portable)

14 years ago - (dtucker) [roaming_common.c roaming_dummy.c] Wrap #include <inttypes.h> in
dtucker [Sun, 21 Jun 2009 12:22:08 +0000 (12:22 +0000)] 
 - (dtucker) [roaming_common.c roaming_dummy.c] Wrap #include <inttypes.h> in
   ifdef.

14 years ago - (dtucker) [servconf.c sshd.c] More whitespace sync.
dtucker [Sun, 21 Jun 2009 10:26:17 +0000 (10:26 +0000)] 
 - (dtucker) [servconf.c sshd.c] More whitespace sync.

14 years ago - (dtucker) [auth2-jpake.c auth2.c canohost.h session.c] Whitespace and
dtucker [Sun, 21 Jun 2009 09:50:08 +0000 (09:50 +0000)] 
 - (dtucker) [auth2-jpake.c auth2.c canohost.h session.c] Whitespace and
   header-order changes to reduce diff vs OpenBSD.

This page took 0.09077 seconds and 4 git commands to generate.