Age | Commit message (Collapse) | Author | |
---|---|---|---|
2005-03-02 | - jmc@cvs.openbsd.org 2005/03/01 14:47:58 | Damien Miller | |
[ssh.1] remove some unneccesary macros; do not mark up punctuation; | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/03/01 10:42:49 | Damien Miller | |
[ssh-keygen.1 ssh-keygen.c ssh_config.5] add tools for managing known_hosts files with hashed hostnames, including hashing existing files and deleting hosts by name; ok markus@ deraadt@ | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/03/01 10:41:28 | Damien Miller | |
[ssh-keyscan.1 ssh-keyscan.c] option to hash hostnames output by ssh-keyscan; ok markus@ deraadt@ | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/03/01 10:40:27 | Damien Miller | |
[hostfile.c hostfile.h readconf.c readconf.h ssh.1 ssh_config.5] [sshconnect.c sshd.8] add support for hashing host names and addresses added to known_hosts files, to improve privacy of which hosts user have been visiting; ok markus@ deraadt@ | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/03/01 10:09:52 | Damien Miller | |
[auth-options.c channels.c channels.h clientloop.c compat.c compat.h] [misc.c misc.h readconf.c readconf.h servconf.c ssh.1 ssh.c ssh_config.5] [sshd_config.5] bz#413: allow optional specification of bind address for port forwardings. Patch originally by Dan Astorian, but worked on by several people Adds GatewayPorts=clientspecified option on server to allow remote forwards to bind to client-specified ports. | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/02/28 00:54:10 | Damien Miller | |
[ssh_config.5] bz#849: document timeout on untrusted x11 forwarding sessions. Reported by orion AT cora.nwra.com; ok markus@ | |||
2005-03-01 | - jmc@cvs.openbsd.org 2005/02/25 10:55:13 | Damien Miller | |
[sshd.8] add /etc/motd and $HOME/.hushlogin to FILES; from michael knudsen; | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/02/20 22:59:06 | Damien Miller | |
[sftp.c] turn on ssh batch mode when in sftp batch mode, patch from jdmossh AT nand.net; ok markus@ | |||
2005-03-01 | - djm@cvs.openbsd.org 2005/02/18 03:05:53 | Damien Miller | |
[canohost.c] better error messages for getnameinfo failures; ok dtucker@ | |||
2005-03-01 | - otto@cvs.openbsd.org 2005/02/16 09:56:44 | Damien Miller | |
[ssh.c] Better diagnostic if an identity file is not accesible. ok markus@ djm@ | |||
2005-02-26 | - (dtucker) [Makefile.in] Add a install-nosysconf target for installing the | Darren Tucker | |
binaries without the config files. Primarily useful for packaging. Patch from phil at usc.edu. ok djm@ | |||
2005-02-26 | - (dtucker) [acconfig.h configure.ac openbsd-compat/bsd-misc.{c,h}] | Darren Tucker | |
Remove SETGROUPS_NOOP, was only used by Cygwin, which doesn't need it any more. Patch from vinschen at redhat.com. | |||
2005-02-26 | - (dtucker) [openbsd-compat/bsd-openpty.c openbsd-compat/inet_ntop.c] | Darren Tucker | |
Remove two obsolete Cygwin #ifdefs. Patch from vinschen at redhat.com. | |||
2005-02-24 | - (djm) [configure.ac] in_addr_t test needs sys/types.h too | Damien Miller | |
2005-02-22 | - (dtucker) [uidswap.c] Skip uid restore test on Cygwin. Patch from | Darren Tucker | |
vinschen at redhat.com. | |||
2005-02-20 | - (dtucker) [configure.ac] Missing comma in AIX section, somehow causes | Darren Tucker | |
unrelated platforms to be configured incorrectly. | |||
2005-02-20 | - (dtucker) [LICENCE Makefile.in README.platform audit-bsm.c configure.ac | Darren Tucker | |
defines.h] Bug #125: Add *EXPERIMENTAL* BSM audit support. Configure --with-audit=bsm to enable. Patch originally from Sun Microsystems, parts by John R. Jackson. ok djm@ | |||
2005-02-20 | - (dtucker) [LICENCE Makefile.in README.platform audit-bsm.c configure.ac | Darren Tucker | |
defines.h] Bug #125: Add *EXPERIMENTAL* BSM audit support. Configure --with-audit=bsm to enable. Patch originally from Sun Microsystems, parts by John R. Jackson. ok djm@ | |||
2005-02-16 | - (dtucker) [configure.ac openbsd-compat/port-aix.{c,h}] Silence some more | Darren Tucker | |
compiler warnings on AIX. | |||
2005-02-16 | - (dtucker) [session.c] Bug #918: store credentials from gssapi-with-mic | Darren Tucker | |
authentication early enough to be available to PAM session modules when privsep=yes. Patch from deengert at anl.gov, ok'ed in principle by Sam Hartman and similar to Debian's ssh-krb5 package. | |||
2005-02-16 | - (dtucker) [configure.ac] Bug #893: check for libresolv early on Reliant | Darren Tucker | |
Unix; prevents problems relating to the location of -lresolv in the link order. | |||
2005-02-16 | - (dtucker) [auth-shadow.c] Prevent compiler warnings if "DAY" is defined | Darren Tucker | |
by the system headers. | |||
2005-02-16 | Document the path to seed_rng better | Darren Tucker | |
2005-02-16 | - (dtucker) [ssh-rand-helper.c] Provide seed_rng since it may be called | Darren Tucker | |
via mkstemp in some configurations. ok djm@ | |||
2005-02-16 | write seed to temporary file and atomically rename into place; ok dtucker@ | Damien Miller | |
2005-02-16 | knf: function names at start of line | Damien Miller | |
2005-02-15 | IPv6 works on AIX5.1ML7 too. | Darren Tucker | |
2005-02-15 | - (dtucker) [loginrec.c] Add missing #include. | Darren Tucker | |
2005-02-15 | - (dtucker) [README.platform auth.c configure.ac loginrec.c | Darren Tucker | |
openbsd-compat/port-aix.c openbsd-compat/port-aix.h] Bug #835: enable IPv6 on AIX where possible (see README.platform for details) and work around a misfeature of AIX's getnameinfo. ok djm@ | |||
2005-02-15 | - (dtucker) [config.sh.in] Collect oslevel -r too. | Darren Tucker | |
2005-02-11 | - (dtucker) [openbsd-compat/fake-rfc2553.h] We now need EAI_SYSTEM too. | Darren Tucker | |
2005-02-11 | - (dtucker) [configure.ac] Tidy up configure --help output. | Darren Tucker | |
2005-02-10 | - (dtucker) [configure.ac] Bug #919: Provide visible feedback for the | Darren Tucker | |
--disable-etc-default-login configure option. | |||
2005-02-09 | - (dtucker) [configure.ac session.c] Some platforms (eg some SCO) require | Darren Tucker | |
the username to be passed to the passwd command when changing expired passwords. ok djm@ | |||
2005-02-09 | - (dtucker) [configure.ac] Bug #854: prepend pwd to relative --with-ssl-dir | Darren Tucker | |
paths. ok djm@ | |||
2005-02-09 | - (dtucker) [auth-passwd.c openbsd-compat/port-aix.c] Don't call | Darren Tucker | |
disable_forwarding() from compat library. Prevent linker errrors trying to resolve it for binaries other than sshd. ok djm@ | |||
2005-02-09 | - dtucker@cvs.openbsd.org 2005/02/08 22:24:57 | Darren Tucker | |
[sshd.c] Provide reason in error message if getnameinfo fails; ok markus@ | |||
2005-02-09 | - dtucker@cvs.openbsd.org 2005/01/30 11:18:08 | Darren Tucker | |
[monitor.c] Make code match intent; ok djm@ | |||
2005-02-09 | - jmc@cvs.openbsd.org 2005/01/28 18:14:09 | Darren Tucker | |
[ssh_config.5] wording; ok markus@ | |||
2005-02-09 | - jmc@cvs.openbsd.org 2005/01/28 15:05:43 | Darren Tucker | |
[ssh_config.5] grammar; | |||
2005-02-09 | - dtucker@cvs.openbsd.org 2005/01/28 09:45:53 | Darren Tucker | |
[ssh_config] Make it clear that the example entries in ssh_config are only some of the commonly-used options and refer the user to ssh_config(5) for more details; ok djm@ | |||
2005-02-08 | - (dtucker) [audit.c audit.h auth.c auth1.c auth2.c loginrec.c monitor.c | Darren Tucker | |
monitor_wrap.c monitor_wrap.h session.c sshd.c]: Prepend all of the audit defines and enums with SSH_ to prevent namespace collisions on some platforms (eg AIX). | |||
2005-02-08 | - (dtucker) [openbsd-compat/port-aix.c] Silence compiler warnings. | Darren Tucker | |
2005-02-08 | - (dtucker) [regress/test-exec.sh] Bug #912: Set _POSIX2_VERSION for the | Darren Tucker | |
regress tests so newer versions of GNU head(1) behave themselves. Patch by djm, so ok me. | |||
2005-02-04 | - (dtucker) [auth.c] Fix parens in audit log check. | Darren Tucker | |
2005-02-04 | - (dtucker) [monitor.c] Permit INVALID_USER audit events from slave too. | Darren Tucker | |
2005-02-03 | typo | Darren Tucker | |
2005-02-03 | - (dtucker) [added audit.c audit.h] Bug #125: (first stage) Add audit | Darren Tucker | |
instrumentation to sshd, currently disabled by default. with suggestions from and djm@ | |||
2005-02-03 | - (dtucker) [Makefile.in auth.c auth.h auth1.c auth2.c loginrec.c monitor.c | Darren Tucker | |
monitor.h monitor_wrap.c monitor_wrap.h session.c sshd.c] Bug #125: (first stage) Add audit instrumentation to sshd, currently disabled by default. with suggestions from and djm@ | |||
2005-02-02 | - (dtucker) [auth.c canohost.c canohost.h configure.ac defines.h loginrec.c] | Darren Tucker | |
Bug #974: Teach sshd to write failed login records to btmp for failed auth attempts (currently only for password, kbdint and C/R, only on Linux and HP-UX), based on code from login.c from util-linux. With ashok_kovai at hotmail.com, ok djm@ |