Commit Graph
1165 Commits
Author SHA1 Message Date
Ben Lindstrom 9dffa01368 A bit of this patch was in the last commit
- (bal) SSH_ASKPASS_DEFAULT to _PATH_SSH_ASKPASS_DEFAULT
2001-01-22 21:22:14 +00:00
Ben Lindstrom cb577331b4 20010123
- (bal) regexp.h typo in configure.in.  Should have been regex.h
 - (bal) SSH_USER_DIR to _PATH_SSH_USER_DIR patch by stevesk@
2001-01-22 21:06:19 +00:00
Ben Lindstrom 226cfa0378 Hopefully things did not get mixed around too much. It compiles under
Linux and works.  So that is at least a good sign. =)
20010122
 - (bal) OpenBSD Resync
   - [email protected] 2001/01/19 12:45:26 GMT 2001 by markus
     [servconf.c ssh.h sshd.c]
     only auth-chall.c needs #ifdef SKEY
   - [email protected] 2001/01/19 15:55:10 GMT 2001 by markus
     [auth-krb4.c auth-options.c auth-rh-rsa.c auth-rhosts.c auth-rsa.c
      auth1.c auth2.c channels.c clientloop.c dh.c dispatch.c nchan.c
      packet.c pathname.h readconf.c scp.c servconf.c serverloop.c
      session.c ssh-add.c ssh-keygen.c ssh-keyscan.c ssh.c ssh.h
      ssh1.h sshconnect1.c sshd.c ttymodes.c]
     move ssh1 definitions to ssh1.h, pathnames to pathnames.h
   - [email protected] 2001/01/19 16:48:14
     [sshd.8]
     fix typo; from stevesk@
   - [email protected] 2001/01/19 16:50:58
     [ssh-dss.c]
     clear and free digest, make consistent with other code (use dlen); from
     stevesk@
   - [email protected] 2001/01/20 15:55:20 GMT 2001 by markus
     [auth-options.c auth-options.h auth-rsa.c auth2.c]
     pass the filename to auth_parse_options()
   - [email protected] 2001/01/20 17:59:40 GMT 2001
     [readconf.c]
     fix SIGSEGV from -o ""; problem noted by [email protected]
   - [email protected] 2001/01/20 18:20:29
     [sshconnect2.c]
     dh_new_group() does not return NULL.  ok markus@
   - [email protected] 2001/01/20 21:33:42
     [ssh-add.c]
     do not loop forever if askpass does not exist; from
     [email protected]
   - [email protected] 2001/01/20 23:00:56
     [servconf.c]
     Check for NULL return from strdelim; ok markus
   - [email protected] 2001/01/20 23:02:07
     [readconf.c]
     KNF; ok markus
   - [email protected] 2001/01/21 9:00:33
     [ssh-keygen.1]
     remove -R flag; ok markus@
   - [email protected] 2001/01/21 19:05:40
     [atomicio.c automicio.h auth-chall.c auth-krb4.c auth-options.c
      auth-options.h auth-passwd.c auth-rh-rsa.c auth-rhosts.c auth-rsa.c
      auth.c auth.h auth1.c auth2-chall.c auth2.c authfd.c authfile.c
      bufaux.c  bufaux.h buffer.c canahost.c canahost.h channels.c
      cipher.c cli.c clientloop.c clientloop.h compat.c compress.c
      deattack.c dh.c dispatch.c groupaccess.c hmac.c hostfile.c kex.c
      key.c key.h log-client.c log-server.c log.c log.h login.c login.h
      match.c misc.c misc.h nchan.c packet.c pty.c radix.h readconf.c
      readpass.c readpass.h rsa.c scp.c servconf.c serverloop.c serverloop.h
      session.c sftp-server.c ssh-add.c ssh-agent.c ssh-dss.c ssh-keygen.c
      ssh-keyscan.c ssh-rsa.c ssh.c ssh.h sshconnect.c sshconnect.h
      sshconnect1.c sshconnect2.c sshd.c tildexpand.c tildexpand.h
      ttysmodes.c uidswap.c xmalloc.c]
     split ssh.h and try to cleanup the #include mess. remove unnecessary
     #includes.  rename util.[ch] -> misc.[ch]
 - (bal) renamed 'PIDDIR' to '_PATH_SSH_PIDDIR' to match OpenBSD tree
 - (bal) Moved #ifdef KRB4 in auth-krb4.c above the #include to resolve
   conflict when compiling for non-kerb install
 - (bal) removed the #ifdef SKEY in auth1.c to match Markus' changes
   on 1/19.
2001-01-22 05:34:40 +00:00
Ben Lindstrom 401d58f361 - (bal) Slight auth2-pam.c clean up.
- (bal) Includes a fake-regexp.h to be only used if regcomp() is found,
   but no 'regexp.h' found (SCO OpenServer 3 lacks the header).
2001-01-19 17:11:43 +00:00
Ben Lindstrom cf0809d644 Removed one more 'ISSUE' comment in auth1.c
20010120
 - (bal) OpenBSD Resync
   - [email protected] 2001/01/19 12:45:26
     [ssh-chall.c servconf.c servconf.h ssh.h sshd.c]
     only auth-chall.c needs #ifdef SKEY
2001-01-19 15:44:10 +00:00
Ben Lindstrom 5dc81502cb - (bal) Minor cygwin patch to auth1.c. Suggested by djm. 2001-01-19 06:10:29 +00:00
Ben Lindstrom b100ec9542 - (bal) Updated contrib/cygwin/ by Corinna Vinschen <[email protected]>
Also removed some of the 'ISSUES' comments that have been verified by djm.
2001-01-19 05:37:32 +00:00
Damien Miller 22e22bf9ba - (djm) Merge patch from Tim Waugh (via Nalin Dahyabhai <[email protected]>)
to fix NULL pointer deref and fake authloop breakage in PAM code.
2001-01-19 15:46:38 +11:00
Ben Lindstrom f569241db2 Oops.. missed theses in the merge. 2001-01-19 04:29:23 +00:00
Ben Lindstrom db65e8fded Please grep through the source and look for 'ISSUE' comments and verify
that I was able to get all the portable bits in the right location.  As for
the SKEY comment there is an email out to Markus as to how it should be
resolved.  Until then I just #ifdef SKEY/#endif out the whole block.

 - (bal) OpenBSD Resync
   - [email protected] 2001/01/18 16:20:21
     [log-client.c log-server.c log.c readconf.c servconf.c ssh.1 ssh.h
      sshd.8 sshd.c]
     log() is at pri=LOG_INFO, since LOG_NOTICE goes to /dev/console on many
     systems
   - [email protected] 2001/01/18 16:59:59
     [auth-passwd.c auth.c auth.h auth1.c auth2.c serverloop.c session.c
      session.h sshconnect1.c]
     1) removes fake skey from sshd, since this will be much
        harder with /usr/libexec/auth/login_XXX
     2) share/unify code used in ssh-1 and ssh-2 authentication (server side)
     3) make addition of BSD_AUTH and other challenge reponse methods
        easier.
   - [email protected] 2001/01/18 17:12:43
     [auth-chall.c auth2-chall.c]
     rename *-skey.c *-chall.c since the files are not skey specific
2001-01-19 04:26:52 +00:00
Damien Miller 5aa80596f7 - (djm) Update versions in RPM specfiles 2001-01-19 14:03:40 +11:00
Ben Lindstrom bf555ba621 NOTE: This update changes the RSA key generation. *NEW RSA KEYS
NEED TO BE GENERATED*  =)  Refer to to entry "2001/01/16 19:20:06"
      for more details.

20010118
 - (bal) Super Sized OpenBSD Resync
   - [email protected] 2001/01/11 22:14:20 GMT 2001 by markus
     [sshd.c]
     maxfd+1
   - [email protected] 2001/01/13 17:59:18
     [ssh-keygen.1]
     small ssh-keygen manpage cleanup; [email protected]
   - [email protected] 2001/01/13 18:03:07
     [scp.c ssh-keygen.c sshd.c]
     getopt() returns -1 not EOF; [email protected]
   - [email protected] 2001/01/13 18:06:54
     [ssh-keyscan.c]
     use SSH_DEFAULT_PORT; from [email protected]
   - [email protected] 2001/01/13 18:12:47
     [ssh-keyscan.c]
     free() -> xfree(); fix memory leak; from [email protected]
   - [email protected] 2001/01/13 18:14:13
     [ssh-add.c]
     typo, from [email protected]
   - [email protected] 2001/01/13 18:32:50
     [packet.c session.c ssh.c sshconnect.c sshd.c]
     split out keepalive from packet_interactive (from [email protected])
     set IPTOS_LOWDELAY TCP_NODELAY IPTOS_THROUGHPUT for ssh2, too.
   - [email protected] 2001/01/13 18:36:45
     [packet.c packet.h]
     reorder, typo
   - [email protected] 2001/01/13 18:38:00
     [auth-options.c]
     fix comment
   - [email protected] 2001/01/13 18:43:31
     [session.c]
     Wall
   - [email protected] 2001/01/13 19:14:08
     [clientloop.h clientloop.c ssh.c]
     move callback to headerfile
   - [email protected] 2001/01/15 21:40:10
     [ssh.c]
     use log() instead of stderr
   - [email protected] 2001/01/15 21:43:51
     [dh.c]
     use error() not stderr!
   - [email protected] 2001/01/15 21:45:29
     [sftp-server.c]
     rename must fail if newpath exists, debug off by default
   - [email protected] 2001/01/15 21:46:38
     [sftp-server.c]
     readable long listing for sftp-server, ok deraadt@
   - [email protected] 2001/01/16 19:20:06
     [key.c ssh-rsa.c]
     make "ssh-rsa" key format for ssh2 confirm to the ietf-drafts; from
     [email protected].  note that you have to delete older ssh2-rsa keys,
     since they are in the wrong format, too. they must be removed from
     .ssh/authorized_keys2 and .ssh/known_hosts2, etc.
     (cd; grep -v ssh-rsa .ssh/authorized_keys2 > TMP && mv TMP
     .ssh/authorized_keys2) additionally, we now check that
     BN_num_bits(rsa->n) >= 768.
   - [email protected] 2001/01/16 20:54:27
     [sftp-server.c]
     remove some statics. simpler handles; idea from [email protected]
   - [email protected] 2001/01/16 23:58:08
     [bufaux.c radix.c sshconnect.h sshconnect1.c]
     indent
 - (bal) Added bsd-strmode.[ch] since some non-OpenBSD platforms may
   be missing such feature.
2001-01-18 02:04:35 +00:00
Damien Miller 01fa6380e8 - (djm) Add --with-pam to RPM spec files 2001-01-17 11:23:39 +11:00
Damien Miller 92e78f8c64 - (djm) Avoid warning in PAM code by making read_passphrase arguments const 2001-01-17 11:10:48 +11:00
Damien Miller a64b57a157 - (djm) Make PAM support optional, enable with --with-pam
- (djm) Try to use libcrypt on Linux, but link it after OpenSSL (which
   provides a crypt() of its own)
 - (djm) Avoid a warning in bsd-bindresvport.c
 - (djm) Try to avoid adding -I/usr/include to CPPFLAGS during SSL tests. This
   can cause weird segfaults errors on Solaris
2001-01-17 10:44:13 +11:00
Damien Miller 21de450853 - (djm) Only write random seed file at exit 2001-01-17 09:37:15 +11:00
Ben Lindstrom 42202bc8cf - (bal) utimes() support via utime() interface on machine that lack utimes(). 2001-01-15 02:34:37 +00:00
Ben Lindstrom 200e3c9c9a 20010115
- (bal) sftp-server.c change to use chmod() if fchmod() does not exist.
2001-01-15 01:56:46 +00:00
Kevin Steves 7b61cfa1ec - (stevesk) complete:
- [email protected]  2001/01/13 11:56:48
     [auth.c sshd.8]
     support supplementary group in {Allow,Deny}Groups
     from [email protected]
2001-01-14 19:11:00 +00:00
Kevin Steves 886b06ce67 - (stevesk) initial work for OpenBSD "support supplementary group in
{Allow,Deny}Groups" patch:
   - import getgrouplist.c from OpenBSD (bsd-getgrouplist.c)
   - add bsd-getgrouplist.h
   - new files groupaccess.[ch]
   - build but don't use yet (need to merge auth.c changes)
2001-01-14 00:35:19 +00:00
Ben Lindstrom 2f959b4cd1 20010112
- (bal) OpenBSD Sync
   - [email protected] 2001/01/10 22:56:22
     [bufaux.h bufaux.c sftp-server.c sftp.h getput.h]
     cleanup sftp-server implementation:
	     add buffer_get_int64, buffer_put_int64, GET_64BIT, PUT_64BIT
	     parse SSH2_FILEXFER_ATTR_EXTENDED
	     send SSH2_FX_EOF if readdir returns no more entries
	     reply to SSH2_FXP_EXTENDED message
	     use #defines from the draft
	     move #definations to sftp.h
     more info:
     http://www.ietf.org/internet-drafts/draft-ietf-secsh-filexfer-00.txt
   - [email protected] 2001/01/10 19:43:20
     [sshd.c]
     XXX - generate_empheral_server_key() is not safe against races,
     because it calls log()
   - [email protected] 2001/01/09 21:19:50
     [packet.c]
     allow TCP_NDELAY for ipv6; from netbsd via itojun@
2001-01-11 06:20:23 +00:00
Damien Miller fd9885e326 20010110
- (djm) SNI/Reliant Unix needs USE_PIPES and $DISPLAY hack. Report from
   Bladt Norbert <[email protected]>
2001-01-10 08:16:53 +11:00
Kevin Steves 69f8fb3575 - (stevesk) defines.h: remove spurious ``;'' 2001-01-09 18:09:13 +00:00
Kevin Steves 8ee4f69560 - (stevesk) sshd_config: sync 2001-01-09 15:28:46 +00:00
Ben Lindstrom 50c9c207cf Real remove of the news4-posix.h .. Too bad I can't do the same
to next-posix.h yet.
2001-01-09 00:54:58 +00:00
Ben Lindstrom 0d5af6017e - (bal) Detect if clock_t structure exists, if not define it.
- (bal) Detect if O_NONBLOCK exists, if not define it.
  - (bal) removed news4-posix.h (now empty)
  - (bal) changed bsd-bindresvport.c and bsd-rresvport.c to use 'socklen_t'
    instead of 'int'
2001-01-09 00:50:29 +00:00
Ben Lindstrom 48bd7c118a - (bal) OpenBSD Sync
- [email protected] 2001/01/08 22:29:05
     [auth2.c compat.c compat.h servconf.c servconf.h sshd.8
      sshd_config version.h]
     implement option 'Banner /etc/issue.net' for ssh2, move version to
     2.3.1 (needed for bugcompat detection, 2.3.0 would fail if Banner
     is enabled).
   - [email protected] 2001/01/08 22:03:23
     [channels.c ssh-keyscan.c]
     O_NDELAY -> O_NONBLOCK; thanks [email protected]
   - [email protected] 2001/01/08 21:55:41
     [sshconnect1.c]
     more cleanups and fixes from [email protected]:
     1) try_agent_authentication() for loop will overwrite key just
        allocated with key_new(); don't alloc
     2) call ssh_close_authentication_connection() before exit
        try_agent_authentication()
     3) free mem on bad passphrase in try_rsa_authentication()
   - [email protected] 2001/01/08 21:48:17
     [kex.c]
     missing free; thanks [email protected]
2001-01-09 00:35:42 +00:00
Kevin Steves 99a0563fd5 - (stevesk) auth1.c: free should be after WITH_AIXAUTHENTICATE
code.
2001-01-08 20:54:36 +00:00
Ben Lindstrom 4b27a5377e 20010109
- (bal) Resync CVS ID of cli.c
2001-01-08 13:55:14 +00:00
Ben Lindstrom 48b2f73005 Updated TODO to reflect that sftp-server should be fixed to support
32bits int if 64bits don't exist.
2001-01-08 06:20:38 +00:00
Ben Lindstrom a383baac46 20010108
- (bal) Fixed another typo in cli.c
 - (bal) OpenBSD Sync
   - [email protected] 2001/01/07 21:26:55
     [cli.c]
     typo
   - [email protected] 2001/01/07 21:26:55
     [cli.c]
     missing free, [email protected]
   - [email protected] 2001/01/07 19:06:25
     [auth1.c]
     missing free, [email protected]
   - [email protected] 2001/01/07 11:28:04
     [log-client.c log-server.c log.c readconf.c servconf.c ssh.1
      ssh.h sshd.8 sshd.c]
     rename SYSLOG_LEVEL_INFO->SYSLOG_LEVEL_NOTICE
     syslog priority changes:
             fatal() LOG_ERR  -> LOG_CRIT
             log()   LOG_INFO -> LOG_NOTICE
2001-01-08 06:13:41 +00:00
Kevin Steves 9ce907c3d6 complete sshd -g manpage default merge 2001-01-07 11:53:40 +00:00
Kevin Steves fcd5d60a95 complete _PATH_BSHELL merge 2001-01-07 11:45:22 +00:00
Ben Lindstrom d26dcf3371 20010107
- (bal) OpenBSD Sync
   - [email protected] 2001/01/06 11:23:27
     [ssh-rsa.c]
     remove unused
   - [email protected] 2001/01/05 08:23:29
     [ssh-keyscan.1]
     missing .El
   - [email protected] 2001/01/04 22:41:03
     [session.c sshconnect.c]
     consistent use of _PATH_BSHELL; from [email protected]
   - [email protected] 2001/01/04 22:35:32
     [ssh.1 sshd.8]
     Mention AES as available SSH2 Cipher; ok markus
   - [email protected] 2001/01/04 22:25:58
     [sshd.c]
     sync usage()/man with defaults; from [email protected]
   - [email protected] 2001/01/04 22:21:26
     [sshconnect2.c]
     handle SSH2_MSG_USERAUTH_BANNER; fixes bug when connecting to a server
     that prints a banner (e.g. /etc/issue.net)
2001-01-06 15:18:16 +00:00
Ben Lindstrom 8835a89105 - (bal) bsd-getcwd.c and bsd-setenv.c changed from bcopy() to memmove() 2001-01-05 06:09:52 +00:00
Ben Lindstrom 91c2a985f9 20010105
- (bal) contrib/caldera/ provided by Tim Rice <[email protected]>
2001-01-04 22:54:50 +00:00
Damien Miller f1aa21f18f Jim Knoble has changed his email address 2001-01-05 09:30:32 +11:00
Damien Miller d54e55cf5c - (djm) Fix memory leak on systems with BROKEN_GETADDRINFO. Based on
work by Chris Vaughan <[email protected]>
2001-01-04 09:07:12 +11:00
Ben Lindstrom 3ad650a88d - (bal) UnixWare 2.0 fixes by Tim Rice <[email protected]>
- (bal) Disable sftp-server if no 64bit int support exists.  Based on
   patch by Tim Rice <[email protected]>
 - (bal) Makefile.in changes to uninstall: target to remove sftp-server
   and sftp-server.8 manpage.
2001-01-03 06:02:51 +00:00
Ben Lindstrom 70c4dce2fe - (bal) authfile.c: Synced CVS ID tag 2001-01-03 05:30:55 +00:00
Ben Lindstrom 5c1fbabc5d 20010103
- (bal) fixed up sshconnect.c so it was closer inline with the OpenBSD
   tree (mainly positioning)
 - (bal) OpenSSH CVS Update
   - [email protected] 2001/01/02 20:41:02
     [packet.c]
     log remote ip on disconnect; PR 1600 from [email protected]
   - [email protected] 2001/01/02 20:50:56
     [sshconnect.c]
     strict_host_key_checking for host_status != HOST_CHANGED &&
     ip_status == HOST_CHANGED
2001-01-03 03:51:15 +00:00
Ben Lindstrom 88c33974b2 20010102
- (bal) OpenBSD CVS Update
   - [email protected] 2001/01/01 14:52:49
     [scp.c]
     use shared fatal(); from [email protected]
2001-01-02 04:55:52 +00:00
Ben Lindstrom 321ae73a1f - (bal) Reverted out of a partial NeXT patch. 2000-12-31 15:00:23 +00:00
Ben Lindstrom fa2d2236f6 20001231
- (bal) Reverted out of MAXHOSTNAMELEN.  This should be set per OS.
   for multiple reasons.
2000-12-31 07:11:04 +00:00
Ben Lindstrom 59f68794f4 <Whistle> Umm.. Made a minor mistake put -o instead of -c in .c.o section.
Wonder why I did not catch it during the test compile on TWO different
platforms!
2000-12-30 03:50:04 +00:00
Ben Lindstrom 6c3ae2ba05 - (bal) OpenBSD CVS Update
- [email protected] 2000/12/29 22:19:13
     [channels.c]
     missing xfree; from [email protected]
2000-12-30 03:25:14 +00:00
Ben Lindstrom f5410351c3 - (bal) Add in '.c.o' section to Makefile.in to address make programs that
don't honor CPPFLAGS by default.  Suggested by Lutz Jaenicke
   <[email protected]>
2000-12-29 21:37:22 +00:00
Ben Lindstrom beac3b4341 - (bal) if no MAXHOSTNAMELEN is defined. Default to 64 character defination.
Suggested by Christian Kurz <[email protected]>
2000-12-29 21:21:26 +00:00
Kevin Steves 0a8397e00c whitespace sync with openbsd 2000-12-29 18:50:50 +00:00
Kevin Steves da6cd59b1d whitespace sync with openbsd 2000-12-29 18:41:21 +00:00