summaryrefslogtreecommitdiff
path: root/ChangeLog
AgeCommit message (Collapse)Author
2002-03-22 - rees@cvs.openbsd.org 2002/03/21 21:54:34Ben Lindstrom
[scard.c scard.h ssh-keygen.c] Add PIN-protection for secret key.
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 21:23:34Ben Lindstrom
[sshd.c] add privsep_preauth() and remove 1 goto; ok provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 20:51:12Ben Lindstrom
[sshd_config] add privsep (off)
2002-03-22 - rees@cvs.openbsd.org 2002/03/21 18:08:15Ben Lindstrom
[scard.c] In sc_put_key(), sc_reader_id should be id.
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 16:58:13Ben Lindstrom
[clientloop.c] remove unused
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 16:57:15Ben Lindstrom
[scard.c] remove const
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 16:38:06Ben Lindstrom
[scard.c] make compile w/ openssl 0.9.7
2002-03-22 - jakob@cvs.openbsd.org 2002/03/21 15:17:26Ben Lindstrom
[clientloop.c ssh.1] add built-in command line for adding new port forwardings on the fly. based on a patch from brian wellington. ok markus@.
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 10:21:20Ben Lindstrom
[ssh-add.c] ignore errors for nonexisting default keys in ssh-add, fixes http://bugzilla.mindrot.org/show_bug.cgi?id=158 Last patch was SUPPOSE to be: - stevesk@cvs.openbsd.org 2002/03/20 21:08:08 [sshd.c] strerror() on chdir() fail; ok provos@ But it got co-mingled. <sigh> Flog me at will.
2002-03-22 - markus@cvs.openbsd.org 2002/03/21 10:21:20Ben Lindstrom
[ssh-add.c] ignore errors for nonexisting default keys in ssh-add, fixes http://bugzilla.mindrot.org/show_bug.cgi?id=158
2002-03-22 - stevesk@cvs.openbsd.org 2002/03/20 19:12:25Ben Lindstrom
[servconf.c servconf.h ssh.h sshd.c] for unprivileged user, group do: pw=getpwnam(SSH_PRIVSEP_USER); do_setusercontext(pw). ok provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/19 15:31:47Ben Lindstrom
[auth.c] check for NULL; from provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/19 14:27:39Ben Lindstrom
[auth.c auth1.c auth2.c] make getpwnamallow() allways call pwcopy()
2002-03-22 - markus@cvs.openbsd.org 2002/03/19 10:49:35Ben Lindstrom
[auth-krb5.c auth-rh-rsa.c auth.c cipher.c key.c misc.h packet.c session.c sftp-client.c sftp-glob.h sftp.c ssh-add.c ssh.c sshconnect2.c sshd.c ttymodes.c] KNF whitespace
2002-03-22 - markus@cvs.openbsd.org 2002/03/19 10:35:39Ben Lindstrom
[auth-options.c auth.h session.c session.h sshd.c] clean up prototypes
2002-03-22 - mpech@cvs.openbsd.org 2002/03/19 06:32:56Ben Lindstrom
[sftp-int.c] use xfree() after xstrdup(). markus@ ok
2002-03-22 - stevesk@cvs.openbsd.org 2002/03/19 05:23:08Ben Lindstrom
[sshd.8] Banner has no default.
2002-03-22 - stevesk@cvs.openbsd.org 2002/03/19 03:03:43Ben Lindstrom
[pathnames.h servconf.c servconf.h sshd.c] _PATH_PRIVSEP_CHROOT_DIR; ok provos@
2002-03-22 - stevesk@cvs.openbsd.org 2002/03/18 23:52:51Ben Lindstrom
[servconf.c] UnprivUser/UnprivGroup usable now--specify numeric user/group; ok provos@
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 17:59:09Ben Lindstrom
[sshd.8] document UsePrivilegeSeparation
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 17:53:08Ben Lindstrom
[sshd.8] credits for privsep
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 17:50:31Ben Lindstrom
[auth-bsdauth.c auth-options.c auth-rh-rsa.c auth-rsa.c auth-skey.c auth.h auth1.c auth2-chall.c auth2.c kex.c kex.h kexdh.c kexgex.c servconf.c session.h servconf.h serverloop.c session.c sshd.c] integrate privilege separated openssh; its turned off by default for now. work done by me and markus@ applied, but outside of ensure that smaller code bits migrated with their owners.. no work was tried to 'fix' it to work. =) Later project!
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 17:31:54Ben Lindstrom
[compress.c] export compression streams for ssh-privsep
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 17:25:29Ben Lindstrom
[bufaux.c bufaux.h] buffer_skip_string and extra sanity checking; needed by ssh-privsep
2002-03-22 - markus@cvs.openbsd.org 2002/03/18 17:23:31Ben Lindstrom
[key.c key.h] add key_demote() for ssh-privsep
2002-03-22 - markus@cvs.openbsd.org 2002/03/18 17:16:38Ben Lindstrom
[packet.c packet.h] export/import cipher state, iv and ssh2 seqnr; needed by ssh-privsep
2002-03-22 - markus@cvs.openbsd.org 2002/03/18 17:13:15Ben Lindstrom
[cipher.c cipher.h] export/import cipher states; needed by ssh-privsep
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 03:41:08Ben Lindstrom
[auth.c session.c] move auth_approval into getpwnamallow with help from millert@
2002-03-22 - dugsong@cvs.openbsd.org 2002/03/18 01:30:10Ben Lindstrom
[auth-krb4.c] set client to NULL after xfree(), from Rolf Braun <rbraun+ssh@andrew.cmu.edu>
2002-03-22 - provos@cvs.openbsd.org 2002/03/18 01:12:14Ben Lindstrom
[auth.h auth1.c auth2.c sshd.c] have the authentication functions return the authentication context and then do_authenticated; okay millert@
2002-03-22 - provos@cvs.openbsd.org 2002/03/17 20:25:56Ben Lindstrom
[auth.c auth.h auth1.c auth2.c] getpwnamallow returns struct passwd * only if user valid; okay markus@
2002-03-22 - stevesk@cvs.openbsd.org 2002/03/16 17:41:25Ben Lindstrom
[auth-krb5.c] BSD license. from Daniel Kouril via Dug Song. ok markus@
2002-03-22 - markus@cvs.openbsd.org 2002/03/16 17:22:09Ben Lindstrom
[auth-rh-rsa.c auth.h] split auth_rhosts_rsa(), ok provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/16 11:24:53Ben Lindstrom
[compress.c] skip inflateEnd if inflate fails; ok provos@
2002-03-22 - itojun@cvs.openbsd.org 2002/03/15 11:00:38Ben Lindstrom
[auth.c] fix file type checking (use S_ISREG). ok by markus
2002-03-22 - markus@cvs.openbsd.org 2002/03/14 16:56:33Ben Lindstrom
[auth-rh-rsa.c auth-rsa.c auth.h] split auth_rsa() for better readability and privsep; ok provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/14 16:38:26Ben Lindstrom
[sshd.c] split out ssh1 session key decryption; ok provos@
2002-03-22 - markus@cvs.openbsd.org 2002/03/14 15:24:27Ben Lindstrom
[sshconnect1.c] don't trust size sent by (rogue) server; noted by s.esser@e-matters.de
2002-03-22 - itojun@cvs.openbsd.org 2002/03/11 03:19:53Ben Lindstrom
[sftp-client.c] indent
2002-03-22 - itojun@cvs.openbsd.org 2002/03/11 03:18:49Ben Lindstrom
[sftp-client.c] correct type mismatches (u_int64_t != unsigned long long)
2002-03-22 - itojun@cvs.openbsd.org 2002/03/08 06:10:16Ben Lindstrom
[sftp-client.c] printf type mismatch
2002-03-17[contrib/aix/buildbff.sh contrib/aix/inventory.sh] AIX packageTim Rice
build fixes. Patch by Darren Tucker <dtucker@zip.com.au> [contrib/solaris/buildpkg.sh] add missing dirs to SYSTEM_DIR. Have postinstall check for $piddir and add if necessary.
2002-03-17[configure.ac] Assume path given with --with-pid-dir=PATH is wanted,Tim Rice
warn if directory doesn not exist. Put system directories in front of PATH for finding entorpy commands.
2002-03-11[contrib/solaris/buildpkg.sh, contrib/solaris/README] Updated toTim Rice
build on all platforms that support SVR4 style package tools. Now runs from build dir. Parts are based on patches from Antonio Navarro, and Darren Tucker.
2002-03-11 - (djm) ssh-keygen -i needs seeded RNG; report from markus@Damien Miller
2002-03-11 - (stevesk) entropy.c: typo in debug messageKevin Steves
2002-03-11 - (djm) Add Markus' patch for compat wih OpenSSL < 0.9.6.Damien Miller
Known issue: Blowfish for SSH1 does not work
2002-03-11 - (djm) Revert bits of Markus' OpenSSL compat patch which was accidentallyDamien Miller
committed.
2002-03-08 - (bal) Test for IRIX JOBS support at runtime. Patch providedBen Lindstrom
by David Kaelbling <drk@sgi.com>
2002-03-08 - (bal) Add in check for rpc/types.h since it is needed onBen Lindstrom
some platforms for INADDR_LOOPBACK. We should retest SCO 3 to see if this fixes their problem also.