Age | Commit message (Collapse) | Author | |
---|---|---|---|
2010-03-03 | - otto@cvs.openbsd.org 2010/03/01 11:07:06 | Damien Miller | |
[ssh-add.c] zap what seems to be a left-over debug message; ok markus@ | |||
2010-03-03 | - jmc@cvs.openbsd.org 2010/02/26 22:09:28 | Damien Miller | |
[ssh-keygen.1 ssh.1 sshd.8] tweak previous; | |||
2010-03-03 | - (djm) [PROTOCOL.certkeys] Add RCS Ident | Damien Miller | |
2010-03-01 | - (tim) [config.guess config.sub] Bug 1722: Update to latest versions from | Tim Rice | |
http://git.savannah.gnu.org/gitweb/ (2009-12-30 and 2010-01-22 respectively). | |||
2010-03-01 | mark quilt-setup target as phony | Colin Watson | |
2010-03-01 | commentary from Jonathan (original patch author) on syslog-level-silent.patch | Colin Watson | |
2010-03-01 | existing upstream bug reference for quieter-signals.patch | Colin Watson | |
2010-03-01 | forwarded lintian-symlink-pickiness.patch | Colin Watson | |
2010-03-01 | Include debian/ssh-askpass-gnome.png in the Debian tarball now that | Colin Watson | |
we're using a source format that permits this, rather than messing around with uudecode. | |||
2010-03-01 | forwarded old-gssapi.patch | Colin Watson | |
2010-03-01 | forwarded gssapi-compat.patch | Colin Watson | |
2010-03-01 | forwarded doc-hash-tab-completion.patch | Colin Watson | |
2010-03-01 | forwarded selinux-fix-chroot-directory.patch | Colin Watson | |
2010-03-01 | update Last-Update fields | Colin Watson | |
2010-03-01 | forwarded gnome-ssh-askpass2-link.patch | Colin Watson | |
2010-03-01 | forwarded doc-connection-sharing.patch | Colin Watson | |
2010-03-01 | forwarded ssh-copy-id-status-check.patch | Colin Watson | |
2010-03-01 | forwarded config-guess-sub.patch | Colin Watson | |
2010-03-01 | forwarded hurd-epfnosupport.patch | Colin Watson | |
2010-03-01 | forwarded authorized-keys-man-symlink.patch | Colin Watson | |
2010-03-01 | ssh-vulnkey.patch: fix offsets | Colin Watson | |
2010-03-01 | Fix 'debian/rules quilt-setup' to avoid writing .orig files if some | Colin Watson | |
patches apply with offsets. | |||
2010-03-01 | - (dtucker) [openbsd-compat/port-linux.c] Make failure to write to the OOM | Darren Tucker | |
adjust log at verbose only, since according to cjwatson in bug #1470 some virtualization platforms don't allow writes. | |||
2010-03-01 | - (dtucker) [regress/{cert-hostkey,cfgmatch,cipher-speed}.sh} Replace | Darren Tucker | |
"echo -n" with "echon" for portability. | |||
2010-02-28 | - (tim) [ssh-pkcs11-helper.c] Move declarations before calling functions | Tim Rice | |
to make older compilers (gcc 2.95) happy. | |||
2010-03-01 | - (djm) [auth.c] On Cygwin, refuse usernames that have differences in | Damien Miller | |
case from that matched in the system password database. On this platform, passwords are stored case-insensitively, but sshd requires exact case matching for Match blocks in sshd_config(5). Based on a patch from vinschen AT redhat.com. | |||
2010-02-28 | releasing version 1:5.3p1-3 | Colin Watson | |
2010-02-28 | Update copyright years for GSSAPI patch. | Colin Watson | |
2010-02-28 | remove trailing whitespace | Colin Watson | |
2010-02-28 | Remove obsolete header from README.Debian dating from when people | Colin Watson | |
expected non-free SSH. | |||
2010-02-28 | more conventional signature style | Colin Watson | |
2010-02-28 | Remove documentation of building for Debian 3.0 in README.Debian. | Colin Watson | |
Support for this was removed in 1:4.7p1-2. | |||
2010-02-28 | forwarded gssapi-dump.patch | Colin Watson | |
2010-02-28 | Add GSSAPIStoreCredentialsOnRekey to 'sshd -T' configuration dump. | Colin Watson | |
2010-02-28 | * Update README.source to match, and add a 'quilt-setup' target to | Colin Watson | |
debian/rules for the benefit of those checking out the package from revision control. * All patches are now maintained separately and tagged according to DEP-3. | |||
2010-02-28 | DEP-3 tagging of all remaining patches | Colin Watson | |
2010-02-28 | DEP-3 tagging of versioning and file system layout | Colin Watson | |
2010-02-28 | better patch name | Colin Watson | |
2010-02-28 | DEP-3 tagging of remaining miscellaneous bug fixes | Colin Watson | |
2010-02-27 | DEP-3 tagging for message adjustments, and start on miscellaneous bug fixes | Colin Watson | |
2010-02-27 | DEP-3 tagging of autotools, SELinux, key blacklisting, and keepalive patches | Colin Watson | |
2010-02-27 | DEP-3 tagging of GSSAPI patches; split old-gssapi.patch more appropriately | Colin Watson | |
2010-02-28 | - (djm) [openbsd-compat/bsd-cygwin_util.c] Reduce the set of environment | Damien Miller | |
variables copied into sshd child processes. From vinschen AT redhat.com | |||
2010-02-28 | - (djm) [ssh-pkcs11-helper.c ] Ensure RNG is initialised and seeded | Damien Miller | |
2010-02-27 | Convert to source format 3.0 (quilt). | Colin Watson | |
2010-02-27 | - djm@cvs.openbsd.org 2010/02/26 20:33:21 | Damien Miller | |
[Makefile regress/cert-hostkey.sh regress/cert-userkey.sh] regression tests for certified keys | |||
2010-02-27 | - OpenBSD CVS Sync | Damien Miller | |
- djm@cvs.openbsd.org 2010/02/26 20:29:54 [PROTOCOL PROTOCOL.agent PROTOCOL.certkeys addrmatch.c auth-options.c] [auth-options.h auth.h auth2-pubkey.c authfd.c dns.c dns.h hostfile.c] [hostfile.h kex.h kexdhs.c kexgexs.c key.c key.h match.h monitor.c] [myproposal.h servconf.c servconf.h ssh-add.c ssh-agent.c ssh-dss.c] [ssh-keygen.1 ssh-keygen.c ssh-rsa.c ssh.1 ssh.c ssh2.h sshconnect.c] [sshconnect2.c sshd.8 sshd.c sshd_config.5] Add support for certificate key types for users and hosts. OpenSSH certificate key types are not X.509 certificates, but a much simpler format that encodes a public key, identity information and some validity constraints and signs it with a CA key. CA keys are regular SSH keys. This certificate style avoids the attack surface of X.509 certificates and is very easy to deploy. Certified host keys allow automatic acceptance of new host keys when a CA certificate is marked as sh/known_hosts. see VERIFYING HOST KEYS in ssh(1) for details. Certified user keys allow authentication of users when the signing CA key is marked as trusted in authorized_keys. See "AUTHORIZED_KEYS FILE FORMAT" in sshd(8) for details. Certificates are minted using ssh-keygen(1), documentation is in the "CERTIFICATES" section of that manpage. Documentation on the format of certificates is in the file PROTOCOL.certkeys feedback and ok markus@ | |||
2010-02-24 | contrib/caldera/openssh.spec | Damien Miller | |
contrib/redhat/openssh.spec contrib/suse/openssh.spec | |||
2010-02-24 | - (djm) [Makefile.in ssh-pkcs11-helper.8] Add manpage for PKCS#11 helper | Damien Miller | |
2010-02-24 | - dtucker@cvs.openbsd.org 2009/11/09 04:20:04 | Damien Miller | |
[regress/Makefile keygen-convert.sh] add regression test for ssh-keygen pubkey conversions |