summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* - (dtucker) [configure.ac defines.h includes.h sftp.c] Add support forDarren Tucker2005-08-235-4/+32
| | | | LynxOS, patch from Olli Savia (ops at iki.fi). ok djm@
* - (djm) [ttymodes.c] bugzilla #1054: Fix encoding of _POSIX_VDISABLE,Damien Miller2005-08-162-3/+33
| | | | from Jacob Nevins; ok dtucker@
* - (tim) [configure.ac] corrections to libedit tests. Report and patchesTim Rice2005-08-152-6/+10
| | | | by skeleten AT shillest.net
* - (tim) wrap el_end() in #ifdef USE_LIBEDITTim Rice2005-08-152-1/+6
|
* - jaredy@cvs.openbsd.org 2005/08/08 13:22:48Damien Miller2005-08-122-9/+29
| | | | | | | | | | [sftp.c] sftp prompt enhancements: - in non-interactive mode, do not print an empty prompt at the end before finishing - print newline after EOF in editline mode - call el_end() in editline mode ok dtucker djm
* oops, that last commit was:Damien Miller2005-08-121-1/+2
| | | | Report from Janusz Mucka; ok djm@
* - dtucker@cvs.openbsd.org 2005/08/06 10:03:12Damien Miller2005-08-122-2/+11
| | | | | [servconf.c] Unbreak sshd ListenAddress for bare IPv6 addresses.
* - djm@cvs.openbsd.org 2005/07/30 02:03:47Damien Miller2005-08-122-3/+6
| | | | | [readconf.c] listen_hosts initialisation here too; spotted greg AT y2005.nest.cx
* - djm@cvs.openbsd.org 2005/07/30 01:26:16Damien Miller2005-08-122-3/+7
| | | | | | [ssh.c] fix -D listen_host initialisation, so it picks up gateway_ports setting correctly
* - markus@cvs.openbsd.org 2005/07/28 17:36:22Damien Miller2005-08-122-2/+9
| | | | | [packet.c] missing packet_init_compression(); from solar
* - (dtucker) [LICENCE configure.ac defines.h openbsd-compat/realpath.c]Darren Tucker2005-08-105-141/+140
| | | | | Sync current (thread-safe) version of realpath.c from OpenBSD (which is in turn based on FreeBSD's). ok djm@
* - (dtucker) [configure.ac] Test libedit library and headers for compatibility.Darren Tucker2005-08-102-2/+20
| | | | Report from skeleten AT shillest.net, ok djm@
* - (tim) [configure.ac] Allow --with-audit=no. OK dtucker@Tim Rice2005-08-092-2/+8
| | | | Report by skeleten AT shillest.net
* - (dtucker) [openbsd-compat/fake-rfc2553.h] MAX_INT -> INT_MAX since theDarren Tucker2005-08-032-6/+8
| | | | latter is specified in the standard.
* - (dtucker) [openbsd-compat/fake-rfc2553.h] Check for EAI_* definesDarren Tucker2005-08-032-6/+17
| | | | | individually and use a value less likely to collide with real values from netdb.h. Fixes compile warnings on FreeBSD 5.3. ok djm@
* - (dtucker) [configure.ac] Add a --with-Werror option to configure forDarren Tucker2005-08-032-2/+19
| | | | adding -Werror to CFLAGS when all of the configure tests are done. ok djm@
* - (dtucker) [configure.ac] Enable -Wuninitialized by default when compilingDarren Tucker2005-08-022-3/+5
| | | | with gcc. ok djm@
* - dtucker@cvs.openbsd.org 2005/07/27 10:39:03Darren Tucker2005-08-024-7/+13
| | | | | [scp.c hostfile.c sftp-client.c] Silence bogus -Wuninitialized warnings; ok djm@
* - markus@cvs.openbsd.org 2005/07/25 11:59:40Damien Miller2005-07-2612-27/+126
| | | | | | | | | | | [kex.c kex.h myproposal.h packet.c packet.h servconf.c session.c] [sshconnect2.c sshd.c sshd_config sshd_config.5] add a new compression method that delays compression until the user has been authenticated successfully and set compression to 'delayed' for sshd. this breaks older openssh clients (< 3.5) if they insist on compression, so you have to re-enable compression in sshd_config. ok djm@
* - (djm) OpenBSD CVS SyncDamien Miller2005-07-262-2/+9
| | | | | | | - otto@cvs.openbsd.org 2005/07/19 15:32:26 [auth-passwd.c] auth_usercheck(3) can return NULL, so check for that. Report from mpech@. ok markus@
* - (dtucker) [configure.ac] Update zlib warning message too, pointed out byDarren Tucker2005-07-262-3/+7
| | | | tim@.
* - (dtucker) [configure.ac] Update zlib version check for CAN-2005-2096.Darren Tucker2005-07-252-4/+7
|
* - (djm) [monitor.c monitor_wrap.c] -Wsign-compare for PAM monitor callsDamien Miller2005-07-173-8/+11
|
* -(djm) [audit.c auth1.c auth2.c entropy.c loginrec.c serverloop.c]Damien Miller2005-07-178-16/+19
| | | | [ssh-rand-helper.c] fix portable 2nd level indents at 4 spaces too
* - djm@cvs.openbsd.org 2005/07/17 07:17:55Damien Miller2005-07-1720-59/+64
| | | | | | | | [auth-rh-rsa.c auth-rhosts.c auth2-chall.c auth2-gss.c channels.c] [cipher-ctr.c gss-genr.c gss-serv.c kex.c moduli.c readconf.c] [serverloop.c session.c sftp-client.c sftp.c ssh-add.c ssh-keygen.c] [sshconnect.c sshconnect2.c] knf says that a 2nd level indent is four (not three or five) spaces
* - (djm) [auth-pam.c sftp.c] spaces vs. tabs at start of lineDamien Miller2005-07-175-8/+125
| | | | | | | | | | | - djm@cvs.openbsd.org 2005/07/17 06:49:04 [channels.c channels.h session.c session.h] Fix a number of X11 forwarding channel leaks: 1. Refuse multiple X11 forwarding requests on the same session 2. Clean up all listeners after a single_connection X11 forward, not just the one that made the single connection 3. Destroy X11 listeners when the session owning them goes away testing and ok dtucker@
* - (djm) [auth-pam.c sftp.c] spaces vs. tabs at start of lineDamien Miller2005-07-173-10/+11
|
* - (djm) [acss.c auth-pam.c auth-shadow.c auth-skey.c auth1.c canohost.c]Damien Miller2005-07-1711-98/+101
| | | | | [cipher-acss.c loginrec.c ssh-rand-helper.c sshd.c] Fix whitespace at EOL in portable too ("perl -p -i -e 's/\s+$/\n/' *.[ch]")
* - djm@cvs.openbsd.org 2005/07/16 01:35:24Damien Miller2005-07-179-25/+32
| | | | | | [auth1.c channels.c cipher.c clientloop.c kex.c session.c ssh.c] [sshconnect.c] spacing
* - (dtucker) [auth-pam.c] Ensure that only one side of the authenticationDarren Tucker2005-07-162-2/+12
| | | | | socketpair stays open on in both the monitor and PAM process. Patch from Joerg Sonnenberger.
* - (dtucker) [configure.ac defines.h] Define __sentinel__ to nothing if theDarren Tucker2005-07-143-3/+14
| | | | | | compiler doesn't understand it to prevent warnings. If any mainstream compiler versions acquire it we can test for those versions. Based on discussion with djm@.
* - dtucker@cvs.openbsd.org 2005/07/14 04:00:43Darren Tucker2005-07-142-3/+6
| | | | | [misc.h] use __sentinel__ attribute; ok deraadt@ djm@ markus@
* - jmc@cvs.openbsd.org 2005/07/08 12:53:10Darren Tucker2005-07-142-3/+7
| | | | | [ssh_config.5] new sentence, new line;
* - dtucker@cvs.openbsd.org 2005/07/08 10:20:41Darren Tucker2005-07-142-4/+7
| | | | | [ssh_config.5] change BindAddress to match recent ssh -b change; prompted by markus@
* - markus@cvs.openbsd.org 2005/07/08 09:41:33Darren Tucker2005-07-142-3/+11
| | | | | | | | | | [channels.h] race when efd gets closed while there is still buffered data: change CHANNEL_EFD_OUTPUT_ACTIVE() 1) c->efd must always be valid AND 2a) no EOF has been seen OR 2b) there is buffered data report, initial fix and testing Chuck Cranor
* - dtucker@cvs.openbsd.org 2005/07/08 09:26:18Darren Tucker2005-07-142-3/+6
| | | | | [misc.c] Make comment match code; ok djm@
* - dtucker@cvs.openbsd.org 2005/07/06 09:33:05Darren Tucker2005-07-142-4/+13
| | | | | [ssh.1] clarify meaning of ssh -b ; with & ok jmc@
* - (dtucker) [acconfig.h auth-krb5.c configure.ac gss-serv-krb5.c] RemoveDarren Tucker2005-07-075-13/+7
| | | | | | calls to krb5_init_ets, which has not been required since krb-1.1.x and most Kerberos versions no longer export in their public API. From sxw at inf.ed.ac.uk, ok djm@
* - (dtucker) [auth-krb5.c] There's no guarantee that snprintf will set errnoDarren Tucker2005-07-072-5/+9
| | | | | in the case where the buffer is insufficient, so always return ENOMEM. Also pointed out by sxw at inf.ed.ac.uk.
* - [auth-krb5.c auth.h gss-serv-krb5.c] Move KRB5CCNAME generation for the MITDarren Tucker2005-07-074-52/+46
| | | | | Kerberos code path into a common function and expand mkstemp template to be consistent with the rest of OpenSSH. From sxw at inf.ed.ac.uk, ok djm@
* - markus@cvs.openbsd.org 2005/07/04 14:04:11Damien Miller2005-07-062-3/+8
| | | | | [channels.c] don't forget to set x11_saved_display
* - jmc@cvs.openbsd.org 2005/07/04 11:29:51Damien Miller2005-07-062-4/+7
| | | | | [ssh_config.5] fix Xr and a little grammar;
* - djm@cvs.openbsd.org 2005/07/04 00:58:43Damien Miller2005-07-068-59/+128
| | | | | | | | | [channels.c clientloop.c clientloop.h misc.c misc.h ssh.c ssh_config.5] implement support for X11 and agent forwarding over multiplex slave connections. Because of protocol limitations, the slave connections inherit the master's DISPLAY and SSH_AUTH_SOCK rather than distinctly forwarding their own. ok dtucker@ "put it in" deraadt@
* - markus@cvs.openbsd.org 2005/07/01 13:19:47Damien Miller2005-07-062-8/+12
| | | | | [channels.c] don't free() if getaddrinfo() fails; report mpech@
* wrapDamien Miller2005-06-261-2/+3
|
* - djm@cvs.openbsd.org 2005/06/25 22:47:49Damien Miller2005-06-262-8/+11
| | | | | | [ssh.c] do the default port filling code a few lines earlier, so it really does fix %p
* - djm@cvs.openbsd.org 2005/06/18 04:30:36Damien Miller2005-06-263-4/+12
| | | | | [ssh.c ssh_config.5] allow ControlPath=none, patch from dwmw2 AT infradead.org; ok dtucker@
* - (djm) OpenBSD CVS SyncDamien Miller2005-06-263-12/+17
| | | | | | | - djm@cvs.openbsd.org 2005/06/17 22:53:47 [ssh.c sshconnect.c] Fix ControlPath's %p expanding to "0" for a default port, spotted dwmw2 AT infradead.org; ok markus@
* - (djm) [loginrec.c ssh-rand-helper.c] Fix -Wsign-compare for portable,Damien Miller2005-06-195-11/+14
| | | | tested and fixes tim@
* +opensshd.initDamien Miller2005-06-191-0/+1
|