summaryrefslogtreecommitdiffstats
path: root/auth.c (unfollow)
Commit message (Collapse)AuthorFilesLines
2006-07-10 - djm@cvs.openbsd.org 2006/07/06 10:47:05Damien Miller5-11/+28
[servconf.c servconf.h session.c sshd_config.5] support arguments to Subsystem commands; ok markus@
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/05 02:42:09Damien Miller13-11/+54
[canohost.c hostfile.c includes.h misc.c packet.c readconf.c] [serverloop.c sshconnect.c uuencode.c] move #include <netinet/in.h> out of includes.h; ok deraadt@ (also ssh-rand-helper.c logintest.c loginrec.c)
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/03 17:59:32Damien Miller4-4/+12
[channels.c includes.h] move #include <arpa/inet.h> out of includes.h; old ok djm@ (portable needed session.c too)
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/03 08:54:20Damien Miller5-6/+11
[includes.h ssh.c sshconnect.c sshd.c] move #include "version.h" out of includes.h; ok markus@
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/02 23:01:55Damien Miller3-5/+10
[clientloop.c ssh.1] use -KR[bind_address:]port here; ok djm@
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/02 22:45:59Damien Miller8-8/+22
[groupaccess.c groupaccess.h includes.h session.c sftp-common.c sshpty.c] move #include <grp.h> out of includes.h (portable needed uidswap.c too)
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/02 18:36:47Damien Miller3-4/+7
[gss-serv-krb5.c gss-serv.c] no "servconf.h" needed here (gss-serv-krb5.c change not applied, portable needs the server options)
2006-07-10 - stevesk@cvs.openbsd.org 2006/07/02 17:12:58Damien Miller5-29/+72
[ssh.1 ssh.c ssh_config.5 sshd_config.5] more details and clarity for tun(4) device forwarding; ok and help jmc@
2006-07-10 - djm@cvs.openbsd.org 2006/06/26 10:36:15Damien Miller2-6/+14
[clientloop.c] mention optional bind_address in runtime port forwarding setup command-line help. patch from santhi.amirta AT gmail.com
2006-07-10 - OpenBSD CVS SyncDamien Miller2-4/+10
- djm@cvs.openbsd.org 2006/06/14 10:50:42 [sshconnect.c] limit the number of pre-banner characters we will accept; ok markus@
2006-07-10 - (dtucker) [INSTALL] New autoconf version: 2.60.Darren Tucker2-3/+6
2006-07-06 - (dtucker) [INSTALL] A bit more info on autoconf.Darren Tucker2-3/+5
2006-07-06 - (dtucker) [configure.ac] Try AIX blibpath test in different order whenDarren Tucker2-4/+14
compiling with gcc. gcc 4.1.x will accept (but ignore) -b flags so configure would not select the correct libpath linker flags.
2006-07-05whitespaceDamien Miller1-2/+1
2006-07-05whitespaceDamien Miller1-1/+2
2006-07-05 - (dtucker) [ssh-rand-helper.c] Don't exit if mkdir fails because theDarren Tucker2-3/+7
target already exists.
2006-06-30 - (dtucker) [INSTALL] Bug #1202: Note when autoconf is required and whichDarren Tucker2-2/+14
version.
2006-06-30 - (dtucker) [openbsd-compat/getrrsetbyname.c] Undef _res before defining it,Darren Tucker2-1/+6
prevents warnings on platforms where _res is in the system headers.
2006-06-30 - (dtucker) [openbsd-compat/openbsd-compat.h] SNPRINTF_CONST for snprintfDarren Tucker2-3/+7
declaration too. Patch from russ at sludge.net.
2006-06-27 - (dtucker) [configure.ac] Bug #1203: Add missing '[', which causes problemsDarren Tucker2-3/+8
with autoconf 2.60. Patch from vapier at gentoo.org.
2006-06-25 - (dtucker) [channels.c serverloop.c] Apply the bug #1102 workaround to ptysDarren Tucker3-4/+11
only, otherwise sshd can hang exiting non-interactive sessions.
2006-06-24 - (dtucker) [serverloop.c] Get ifdef/ifndef the right way around for the bugDarren Tucker2-3/+5
#1102 workaround.
2006-06-24 - (dtucker) [configure.ac] Bug #1193: Define PASSWD_NEEDS_USERNAME on Solaris.Darren Tucker2-3/+10
Works around limitation in Solaris' passwd program for changing passwords where the username is longer than 8 characters. ok djm@
2006-06-23 - (dtucker) [channels.c configure.ac serverloop.c] Bug #1102: Around AIXDarren Tucker4-3/+26
4.3.3 ML3 or so, the AIX pty layer starting passing zero-length writes on the pty slave as zero-length reads on the pty master, which sshd interprets as the descriptor closing. Since most things don't do zero length writes this rarely matters, but occasionally it happens, and when it does the SSH pty session appears to hang, so we add a special case for this condition. ok djm@
2006-06-23 - (dtucker) [README.platform configure.ac openbsd-compat/port-tun.c] AddDarren Tucker5-9/+38
tunnel support for Mac OS X/Darwin via a third-party tun driver. Patch from reyk@, tested by anil@
2006-06-13 - (djm) [getput.h] This file has been replaced by functions in misc.cDamien Miller2-59/+2
2006-06-13 - djm@cvs.openbsd.org 2006/06/13 01:18:36Damien Miller2-2/+8
[ssh-agent.c] always use a format string, even when printing a constant - djm@cvs.openbsd.org 2006/06/13 02:17:07 [ssh-agent.c] revert; i am on drugs. spotted by alexander AT beard.se
2006-06-13 - markus@cvs.openbsd.org 2006/06/08 14:45:49Damien Miller6-9/+48
[readpass.c sshconnect.c sshconnect2.c uidswap.c uidswap.h] do not set the gid, noted by solar; ok djm
2006-06-13 - markus@cvs.openbsd.org 2006/06/06 10:20:20Damien Miller6-20/+29
[readpass.c sshconnect.c sshconnect.h sshconnect2.c uidswap.c] replace remaining setuid() calls with permanently_set_uid() and check seteuid() return values; report Marcus Meissner; ok dtucker djm
2006-06-13 - markus@cvs.openbsd.org 2006/06/01 09:21:48Damien Miller2-3/+13
[sshd.c] call get_remote_ipaddr() early; fixes logging after client disconnects; report mpf@; ok dtucker@
2006-06-13 - mk@cvs.openbsd.org 2006/05/30 11:46:38Damien Miller2-3/+7
[ssh-add.c] Sync usage() with man page and reality. ok deraadt dtucker
2006-06-13 - jmc@cvs.openbsd.org 2006/05/29 16:13:23Damien Miller2-2/+10
[ssh.1] add GSSAPI to the list of authentication methods supported;
2006-06-13 - jmc@cvs.openbsd.org 2006/05/29 16:10:03Damien Miller2-5/+13
[ssh_config.5] oops - previous was too long; split the list of auths up
2006-06-13 - dtucker@cvs.openbsd.org 2006/05/29 12:56:33Damien Miller2-2/+8
[ssh_config] Add GSSAPIAuthentication and GSSAPIDelegateCredentials to examples in sample ssh_config. ok markus@
2006-06-13 - dtucker@cvs.openbsd.org 2006/05/29 12:54:08Damien Miller2-3/+6
[ssh_config.5] Add gssapi-with-mic to PreferredAuthentications default list; ok jmc
2006-06-13 - miod@cvs.openbsd.org 2006/05/18 21:27:25Damien Miller3-5/+8
[kexdhc.c kexgexc.c] paramter -> parameter
2006-06-13 - markus@cvs.openbsd.org 2006/05/17 12:43:34Damien Miller6-11/+18
[scp.c sftp.c ssh-agent.c ssh-keygen.c sshconnect.c] fix leak; coverity via Kylene Jo Hall
2006-06-13 - markus@cvs.openbsd.org 2006/05/16 09:00:00Damien Miller2-2/+6
[clientloop.c] missing free; from Kylene Hall
2006-06-13 - djm@cvs.openbsd.org 2006/05/08 10:49:48Damien Miller2-2/+9
[sshconnect2.c] uint32_t -> u_int32_t (which we use everywhere else) (Id sync only - portable already had this)
2006-05-21 - (dtucker) [auth.c monitor.c] Now that we don't log from both the monitorDarren Tucker3-40/+13
and slave, we can remove the special-case handling in the audit hook in auth_log.
2006-05-17 - (dtucker) [ssh-rand-helper.c] Check return code of mkdir and fix fileDarren Tucker2-2/+8
pointer leak. From kjhall at us.ibm.com, found by coverity.
2006-05-15typoDarren Tucker1-2/+2
2006-05-15 - (dtucker) [auth-pam.c] Bug #1188: pass result of do_pam_account back andDarren Tucker2-6/+19
do not allow kbdint again after the PAM account check fails. ok djm@
2006-05-15 - (dtucker) [defines.h] Find a value for IOV_MAX or use a conservativeDarren Tucker2-2/+14
default. Patch originally from tim@, ok djm
2006-05-15 - (dtucker) [openbsd-compat/getrrsetbyname.c] Use _compat_res instead ofDarren Tucker2-1/+11
_res, prevents problems on some platforms that have _res as a global but don't have getrrsetbyname(), eg IRIX 5.3. Found and tested by georg.schwarz at freenet.de, ok djm@.
2006-05-06 - dtucker@cvs.openbsd.org 2006/05/06 08:35:40Darren Tucker2-1/+5
[auth-krb5.c] Add $OpenBSD$ in comment here too
2006-05-06 - djm@cvs.openbsd.org 2006/04/01 05:37:46Darren Tucker2-3/+6
[OVERVIEW] $OpenBSD$ in here too
2006-05-06 - djm@cvs.openbsd.org 2006/05/04 14:55:23Darren Tucker2-3/+23
[dh.c] tighter DH exponent checks here too; feedback and ok markus@
2006-05-06 - dtucker@cvs.openbsd.org 2006/04/25 08:02:27Darren Tucker6-20/+35
[authfile.c authfile.h sshconnect2.c ssh.c sshconnect1.c] Prevent ssh from trying to open private keys with bad permissions more than once or prompting for their passphrases (which it subsequently ignores anyway), similar to a previous change in ssh-add. bz #1186, ok djm@
2006-05-04 - (dtucker) [auth-pam.c groupaccess.c monitor.c monitor_wrap.c scard-opensc.cDarren Tucker11-20/+31
session.c ssh-rand-helper.c sshd.c openbsd-compat/bsd-cygwin_util.c openbsd-compat/setproctitle.c] Convert malloc(foo*bar) -> calloc(foo,bar) in Portable-only code; since calloc zeros, remove now-redundant memsets. Also add a couple of sanity checks. With & ok djm@