Age | Commit message (Collapse) | Author | |
---|---|---|---|
2002-06-06 | - markus@cvs.openbsd.org 2002/05/24 08:45:14 | Ben Lindstrom | |
[sshconnect2.c] stat ssh-keysign first, print error if stat fails; some debug->error; fix comment | |||
2002-06-06 | - markus@cvs.openbsd.org 2002/05/23 19:39:34 | Ben Lindstrom | |
[ssh.c] add comment about ssh-keysign | |||
2002-06-06 | - markus@cvs.openbsd.org 2002/05/23 19:24:30 | Ben Lindstrom | |
[authfile.c authfile.h pathnames.h ssh.c sshconnect.c sshconnect.h sshconnect1.c sshconnect2.c ssh-keysign.8 ssh-keysign.c Makefile.in] add /usr/libexec/ssh-keysign: a setuid helper program for hostbased authentication in protocol v2 (needs to access the hostkeys). Note: Makefile.in untested. Will test after merge is finished. | |||
2002-06-06 | - deraadt@cvs.openbsd.org 2002/05/22 23:18:25 | Ben Lindstrom | |
[ssh.c sshd.c] spelling; abishoff@arc.nasa.gov | |||
2002-06-06 | - deraadt@cvs.openbsd.org 2002/05/19 20:54:52 | Ben Lindstrom | |
[log.h] extra commas in enum not 100% portable | |||
2002-06-06 | - stevesk@cvs.openbsd.org 2002/05/16 22:09:59 | Ben Lindstrom | |
[session.c ssh.c] don't limit xauth pathlen on client side and longer print length on server when debug; ok markus@ | |||
2002-06-06 | - markus@cvs.openbsd.org 2002/05/16 22:02:50 | Ben Lindstrom | |
[cipher.c kex.h mac.c] fix warnings (openssl 0.9.7 requires const) | |||
2002-06-06 | - markus@cvs.openbsd.org 2002/05/15 21:56:38 | Ben Lindstrom | |
[servconf.c sshd.8 sshd_config] re-enable privsep and disable setuid for post-3.2.2 | |||
2002-06-04 | - (stevesk) [channels.c] bug #164 patch from YOSHIFUJI Hideaki (changed | Kevin Steves | |
setsockopt from debug to error for now). | |||
2002-05-27 | [configure.ac.orig monitor_fdpass.c] Enahnce msghdr tests to address | Tim Rice | |
build problem on Irix reported by Dave Love <d.love@dl.ac.uk>. Back out last monitor_fdpass.c changes that are no longer needed with new tests. Patch tested on Irix by Jan-Frode Myklebust <janfrode@parallab.uib.no> | |||
2002-05-22 | unbreak (aaarrrgggh - stupid vi) | Damien Miller | |
2002-05-22 | sync scard/ | Damien Miller | |
2002-05-22 | crank rpm spec versions | Damien Miller | |
2002-05-22 | Crank version | Damien Miller | |
(also missed changelog message) | |||
2002-05-22 | rcsid sync | Damien Miller | |
2002-05-22 | fix spelling mistakes spotted by Solar Designer <solar@openwall.com> | Damien Miller | |
2002-05-21 | - (stevesk) [sshd.c] #ifndef HAVE_CYGWIN for setgroups() | Kevin Steves | |
2002-05-21 | - (stevesk) [sshd.c] bug 245; disable setsid() for now | Kevin Steves | |
2002-05-17 | [configure.ac] remove extra MD5_MSG="no" line. | Tim Rice | |
2002-05-16 | p1 | Damien Miller | |
2002-05-15 | - (bal) OpenBSD CVS Sync | Ben Lindstrom | |
- markus@cvs.openbsd.org 2002/05/15 21:05:29 [version.h] enter OpenSSH_3.2.2 - (bal) Caldara, Suse, and Redhat openssh.specs updated. | |||
2002-05-15 | - markus@cvs.openbsd.org 2002/05/15 21:02:53 | Ben Lindstrom | |
[servconf.c sshd.8 sshd_config] disable privsep and enable setuid for the 3.2.2 release | |||
2002-05-15 | - millert@cvs.openbsd.org 2002/05/06 23:34:33 | Ben Lindstrom | |
[ssh.1 sshd.8] Kill/adjust r(login|exec)d? references now that those are no longer in the tree. | |||
2002-05-15 | - deraadt@cvs.openbsd.org 2002/05/04 02:39:35 | Ben Lindstrom | |
[servconf.c sshd.8 sshd_config] enable privsep by default; provos ok (historical) | |||
2002-05-15 | - (bal) Clarified openbsd-compat/*-cray.* Licence provided by Wendy. | Ben Lindstrom | |
2002-05-15 | - mouring@cvs.openbsd.org 2002/05/15 15:47:49 | Ben Lindstrom | |
[kex.c monitor.c monitor_wrap.c sshd.c] 'monitor' variable clashes with at least one lame platform (NeXT). i Renamed to 'pmonitor'. provos@ - (bal) Fixed up PAM case. I think. | |||
2002-05-15 | - markus@cvs.openbsd.org 2002/05/13 21:26:49 | Ben Lindstrom | |
[auth-rhosts.c] handle debug messages during rhosts-rsa and hostbased authentication; ok provos@ | |||
2002-05-15 | - millert@cvs.openbsd.org 2002/05/13 15:53:19 | Ben Lindstrom | |
[sshd.c] Call setsid() in the child after sshd accepts the connection and forks. This is needed for privsep which calls setlogin() when it changes uids. Without this, there is a race where the login name of an existing connection, as returned by getlogin(), may be changed to the privsep user (sshd). markus@ OK | |||
2002-05-15 | - markus@cvs.openbsd.org 2002/05/13 20:44:58 | Ben Lindstrom | |
[auth-options.c auth.c auth.h] move the packet_send_debug handling from auth-options.c to auth.c; ok provos@ | |||
2002-05-15 | - itojun@cvs.openbsd.org 2002/05/13 02:37:39 | Ben Lindstrom | |
[auth-skey.c auth2.c] less warnings. skey_{respond,query} are public (in auth.h) | |||
2002-05-15 | - stevesk@cvs.openbsd.org 2002/05/11 20:24:48 | Ben Lindstrom | |
[ssh.h] typo in comment | |||
2002-05-15 | - deraadt@cvs.openbsd.org 2002/05/08 21:06:34 | Ben Lindstrom | |
[ssh.h] move to sshd.sshd instead | |||
2002-05-15 | - deraadt@cvs.openbsd.org 2002/05/07 19:54:36 | Ben Lindstrom | |
[ssh.h] use ssh uid | |||
2002-05-15 | - (bal) CVS ID fix up on auth-passwd.c | Ben Lindstrom | |
2002-05-15 | wrap | Damien Miller | |
2002-05-15 | wrap | Damien Miller | |
2002-05-14 | update version. | Tim Rice | |
2002-05-13 | remove reference to UnixWare 7 and OpenUNIX 8 | Tim Rice | |
from PAM-enabled pragraph. UnixWare has no PAM. | |||
2002-05-13 | 20020514 | Tim Rice | |
[sshpty.c] set tty modes when allocating old style bsd ptys to match what newer style ptys have when allocated. Based on a patch by Roger Cornelius <rac@tenzing.org> [README.privsep] UnixWare 7 and OpenUNIX 8 work. | |||
2002-05-13 | - (stevesk) [README.privsep] PAM+privsep works with Solaris 8. | Kevin Steves | |
2002-05-13 | - (djm) Add INSTALL warning about SSH protocol 1 blowfish w/ OpenSSL < 0.9.6 | Damien Miller | |
2002-05-13 | - (djm) Bug #234: missing readpassphrase declaration and defines | Damien Miller | |
2002-05-13 | align summary | Damien Miller | |
2002-05-13 | unbreak | Damien Miller | |
2002-05-13 | - (stevesk) add initial README.privsep | Kevin Steves | |
2002-05-13 | - (stevesk) [configure.ac] nicer message: --with-privsep-user=user | Kevin Steves | |
2002-05-13 | unbreak | Damien Miller | |
2002-05-13 | - (djm) Update RPM spec file: different superuser path, use | Damien Miller | |
/var/empty/sshd for privsep | |||
2002-05-13 | - (djm) Add --with-privsep-path configure option | Damien Miller | |
2002-05-13 | - (djm) Bug #231: UsePrivilegeSeparation turns off Banner. | Damien Miller | |