CVS: cvs.openbsd.org: www

2024-07-01 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/07/01 02:46:45 Modified files: openssh: security.html Log message: link to Qualys advisory

CVS: cvs.openbsd.org: www

2024-07-01 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/07/01 02:25:35 Modified files: build/openssh : releases.pl openssh: releasenotes.html Log message: regen

CVS: cvs.openbsd.org: www

2024-07-01 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/07/01 02:23:26 Modified files: openssh/txt: release-9.8 Log message: clarify

CVS: cvs.openbsd.org: www

2024-07-01 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/07/01 01:57:17 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head build/openssh : releases.pl openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: src

2024-06-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/30 22:31:59 Modified files: usr.bin/ssh: version.h Log message: openssh-9.8

CVS: cvs.openbsd.org: src

2024-06-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/30 22:31:17 Modified files: usr.bin/ssh: clientloop.c Log message: when sending ObscureKeystrokeTiming chaff packets, we can't rely on channel_did_enqueue to tell that there is data to send.

CVS: cvs.openbsd.org: src

2024-06-27 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/27 17:01:15 Modified files: usr.bin/ssh: sshd.c Log message: delete obsolete comment

CVS: cvs.openbsd.org: src

2024-06-27 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/27 16:36:44 Modified files: usr.bin/ssh: log.c log.h Log message: retire unused API

CVS: cvs.openbsd.org: src

2024-06-23 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/23 22:05:11 Modified files: usr.bin/ssh: sshd_config.5 Log message: mention SshdSessionPath option

CVS: cvs.openbsd.org: src

2024-06-19 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/19 18:18:05 Modified files: usr.bin/ssh: srclimit.c Log message: stricter check for overfull tables in penalty record path

CVS: cvs.openbsd.org: src

2024-06-19 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/19 17:24:47 Modified files: usr.bin/ssh: monitor_wrap.c Log message: put back reaping of preauth child process when writes from the monitor fail. Not sure how this got lost in the avalanche of

CVS: cvs.openbsd.org: src

2024-06-17 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/17 02:30:29 Modified files: usr.bin/ssh: Makefile.inc ssh-add.1 ssh-keygen.1 ssh-keyscan.1 ssh-keysign.8 ssh.1 ssh_config.5 sshd.8 Log

CVS: cvs.openbsd.org: src

2024-06-17 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/17 02:28:31 Modified files: usr.bin/ssh: serverloop.c Log message: promote connection-closed messages from verbose to info log level; they could be the only record of the connection terminating

CVS: cvs.openbsd.org: src

2024-06-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/16 05:54:49 Modified files: regress/usr.bin/ssh: penalty-expire.sh Log message: same treatment for this test

CVS: cvs.openbsd.org: src

2024-06-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/16 02:18:06 Modified files: regress/usr.bin/ssh: penalty.sh Log message: penalty test is still a bit racy

CVS: cvs.openbsd.org: src

2024-06-14 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/14 21:59:10 Modified files: regress/usr.bin/ssh: penalty.sh Log message: crank up penalty timeouts so this should work on even the slowest of test builders

CVS: cvs.openbsd.org: src

2024-06-13 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/13 23:01:22 Modified files: usr.bin/ssh: ssh_config.5 sshd_config.5 Log message: clarify KEXAlgorithms supported vs available. Inspired by bz3701 from Colin Watson.

CVS: cvs.openbsd.org: src

2024-06-13 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/13 22:43:11 Modified files: regress/usr.bin/ssh: Makefile penalty.sh Added files: regress/usr.bin/ssh: penalty-expire.sh Log message: split the PerSourcePenalties test in two: one tests

CVS: cvs.openbsd.org: src

2024-06-13 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/13 18:26:12 Modified files: regress/usr.bin/ssh: penalty.sh Log message: don't redirect stderr for ssh-keyscan we expect to succeed

CVS: cvs.openbsd.org: src

2024-06-13 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/13 18:25:25 Modified files: usr.bin/ssh: ssh-keyscan.c Log message: make host/banner comments go to stderr instead of stdout, so they are useful as comments without extra shell redirection and

CVS: cvs.openbsd.org: src

2024-06-12 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/12 16:36:00 Modified files: usr.bin/ssh: servconf.c servconf.h srclimit.c sshd_config.5 Log message: split PerSourcePenalties address tracking. Previously it used one shared table and overflow

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 20:54:51 Modified files: usr.bin/ssh: monitor_wrap.c Log message: reap preauth net child if it hangs up during privsep message send, not just message receive

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 20:00:30 Modified files: usr.bin/ssh: monitor_wrap.c Log message: reap the pre-auth [net] child if it hangs up during privsep message sending, not just receiving

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 19:58:27 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: fix PIDFILE handling, broken for SUDO=doas in last commit here

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 19:23:25 Modified files: usr.bin/ssh: srclimit.c Log message: a little more RB_TREE paranoia

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 19:22:25 Modified files: usr.bin/ssh: srclimit.c Log message: fix off-by-one comparison for PerSourcePenalty overflow:deny-all mode

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 19:21:41 Modified files: usr.bin/ssh: srclimit.c Log message: move tree init before possible early return

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 19:07:35 Modified files: usr.bin/ssh: sshd_config.5 Log message: update to mention that PerSourcePenalties default to being enabled and document the default values for each parameter.

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 18:44:52 Modified files: usr.bin/ssh: monitor_wrap.c Log message: reap the [net] child if it hangs up while writing privsep message payloads, not just the message header

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 18:40:21 Modified files: usr.bin/ssh: monitor_wrap.c Log message: log waitpid() status for abnormal exits

CVS: cvs.openbsd.org: src

2024-06-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/10 18:36:20 Modified files: usr.bin/ssh: servconf.c Log message: correct error message

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 14:25:48 Modified files: usr.bin/ssh: servconf.c Log message: enable PerSourcePenalties by default. ok markus NB. if you run a sshd that accepts connections from behind large NAT blocks,

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 14:20:43 Modified files: usr.bin/ssh: sshd_config.5 Log message: mention that PerSourcePenalties don't affect concurrent in-progress connections.

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 13:50:02 Modified files: usr.bin/ssh: sshd.c Log message: disable stderr redirection before closing fds

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 13:49:25 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: penalty.sh Log message: regress test for PerSourcePenalties

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 13:48:40 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: make sure logs are saved from sshd run via start_sshd

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 13:47:48 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: simplify

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 12:48:13 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: prepare for PerSourcePenalties being enabled by default in future

CVS: cvs.openbsd.org: src

2024-06-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/06/06 11:15:26 Modified files: usr.bin/ssh: misc.c misc.h monitor.c monitor_wrap.c servconf.c servconf.h srclimit.c srclimit.h sshd-session.c

CVS: cvs.openbsd.org: src

2024-05-31 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/31 03:01:08 Modified files: usr.bin/ssh: sshd.c Log message: warn when -r (deprecated option to disable re-exec) is passed

CVS: cvs.openbsd.org: src

2024-05-31 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/31 02:49:35 Modified files: usr.bin/ssh: auth2-methods.c packet.c Log message: typos

CVS: cvs.openbsd.org: src

2024-05-26 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/26 19:52:26 Modified files: usr.bin/ssh: auth2-methods.c Log message: don't need sys/queue.h here

CVS: cvs.openbsd.org: src

2024-05-21 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/21 22:20:00 Modified files: regress/usr.bin/ssh: rekey.sh Log message: this test has been broken since 2014, and has been testing the same key exchange algorithm repeatedly instead of testing all of

CVS: cvs.openbsd.org: src

2024-05-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/16 22:42:13 Modified files: usr.bin/ssh: auth2-gss.c Log message: g/c unused variable

CVS: cvs.openbsd.org: src

2024-05-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/16 19:45:22 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: allow overriding the sshd-session binary path

CVS: cvs.openbsd.org: src

2024-05-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/16 19:17:40 Modified files: usr.bin/ssh: servconf.c Log message: fix incorrect debug option name introduce in previous commit

CVS: cvs.openbsd.org: src

2024-05-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/16 18:30:24 Modified files: usr.bin/ssh: Makefile Makefile.inc auth-rhosts.c auth.c auth.h auth2-gss.c auth2-hostbased.c auth2-kbdint.c

CVS: cvs.openbsd.org: src

2024-05-16 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/16 18:22:02 src/usr.bin/ssh/sshd-session Update of /cvs/src/usr.bin/ssh/sshd-session In directory cvs.openbsd.org:/tmp/cvs-serv70148/sshd-session Log Message: Directory /cvs/src/usr.bin/ssh/sshd-session

CVS: cvs.openbsd.org: src

2024-05-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/09 03:46:47 Modified files: usr.bin/ssh: clientloop.c Log message: simplify exit message handling, which was more complicated than it needed to be because of unexpunged ssh1 remnants. ok markus@

CVS: cvs.openbsd.org: src

2024-05-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/05/07 17:40:53 Modified files: lib/libc/asr : getrrsetbyname_async.c Log message: avoid memcpy(malloc(0), ..., 0), which is not portable. ok florian@

CVS: cvs.openbsd.org: src

2024-04-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/30 00:23:51 Modified files: usr.bin/ssh: sftp-server.c Log message: fix home-directory extension implementation, it always returned the current user's home directory contrary to the spec. Patch

CVS: cvs.openbsd.org: src

2024-04-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/30 00:16:55 Modified files: usr.bin/ssh: sftp.c Log message: flush stdout after writing "sftp>" prompt when not using editline. >From Alpine Linux via GHPR480

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 23:53:03 Modified files: usr.bin/ssh: ssh-keysign.c Log message: stricter validation of messaging socket fd number; disallow usage of stderr. Based on GHPR492 by RealHurrison

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 23:45:56 Modified files: usr.bin/ssh: PROTOCOL.agent Log message: add missing reserved fields to key constraint protocol documentation. from Wiktor Kwapisiewicz via GHPR487

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 20:14:10 Modified files: usr.bin/ssh: clientloop.c serverloop.c Log message: correctly restore sigprocmask around ppoll() reported by Tõivo Leedjärv; ok deraadt@

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 20:10:49 Modified files: usr.bin/ssh: clientloop.c sshconnect.c sshconnect.h Log message: add explict check for server hostkey type against HostkeyAlgorithms. Allows HostkeyAlgorithms to

CVS: cvs.openbsd.org: src

2024-03-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/29 23:56:22 Modified files: usr.bin/ssh: PROTOCOL.key Log message: in OpenSSH private key format, correct type for subsequent private keys in blob. From Jakub Jelen via GHPR430

CVS: cvs.openbsd.org: src

2024-03-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/29 22:27:44 Modified files: usr.bin/ssh: readpass.c Log message: allow WAYLAND_DISPLAY to enable SSH_ASKPASS >From dkg via GHPR479; ok dtucker@

CVS: cvs.openbsd.org: src

2024-03-25 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/25 13:28:09 Modified files: regress/usr.bin/ssh/unittests/kex: test_kex.c Log message: optional debugging

CVS: cvs.openbsd.org: www

2024-03-23 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/23 12:46:47 Modified files: . : 75.html Log message: add openssh bits

CVS: cvs.openbsd.org: www

2024-03-11 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/11 04:39:58 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: www

2024-03-11 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/11 04:36:58 Added files: openssh/txt: release-9.7 Log message: release notes for OpenSSH 9.7

CVS: cvs.openbsd.org: src

2024-03-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/10 22:59:47 Modified files: usr.bin/ssh: version.h Log message: openssh-9.7

CVS: cvs.openbsd.org: src

2024-03-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/08 22:12:13 Modified files: usr.bin/ssh: ssh-agent.c Log message: avoid logging in signal handler by converting mainloop to ppoll() bz3670, reported by Ben Hamilton; ok dtucker@

CVS: cvs.openbsd.org: src

2024-03-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/08 15:16:32 Modified files: usr.bin/ssh: sshsig.c Log message: skip more whitespace, fixes find-principals on allowed_signers files with blank lines; reported by Wiktor Kwapisiewicz

CVS: cvs.openbsd.org: src

2024-03-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/05 19:59:59 Modified files: usr.bin/ssh: channels.c Log message: fix memory leak in mux proxy mode when requesting forwarding. found by RASU JSC, reported by Maks Mishin in GHPR#467

CVS: cvs.openbsd.org: src

2024-03-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/05 17:31:04 Modified files: usr.bin/ssh: ssh-agent.c Log message: wrap a few PKCS#11-specific bits in ENABLE_PKCS11

CVS: cvs.openbsd.org: src

2024-03-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/03 21:13:18 Modified files: usr.bin/ssh: readconf.c Log message: fix leak of CanonicalizePermittedCNAMEs on error path; spotted by Coverity (CID 438039)

CVS: cvs.openbsd.org: src

2024-03-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/03 19:16:11 Modified files: usr.bin/ssh: misc.c misc.h readconf.c readconf.h servconf.c Log message: Separate parsing of string array options from applying them to the active configuration. This

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:17:29 Modified files: usr.bin/ssh: sshd_config.5 Log message: explain arguments of internal-sftp GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:06:43 Modified files: usr.bin/ssh: sshd_config.5 Log message: clarify permissions requirements for ChrootDirectory Part of GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:05:06 Modified files: usr.bin/ssh: sshd_config.5 Log message: .Cm for a keyword. Part of GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:01:13 Modified files: usr.bin/ssh: ssh_config.5 Log message: fix typo in match directive predicate (s/tagged/tag) GHPR#462 from Tobias Manske

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 22:57:34 Modified files: usr.bin/ssh: clientloop.c Log message: fix proxy multiplexing mode, broken when keystroke timing obfuscation was added. GHPR#463 from montag451

CVS: cvs.openbsd.org: src

2024-02-19 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/19 21:10:03 Modified files: usr.bin/ssh: servconf.c Log message: don't append a gratuitous space to the end of subsystem arguments; bz3667

CVS: cvs.openbsd.org: src

2024-02-01 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/01 17:13:34 Modified files: usr.bin/ssh: kex.h Log message: whitespace

CVS: cvs.openbsd.org: src

2024-01-31 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/31 19:37:34 Modified files: usr.bin/ssh: gss-genr.c nchan.c session.c sftp.c sshbuf-getput-crypto.c Log message: whitespace

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 21:50:28 Modified files: regress/usr.bin/ssh: Makefile Log message: don't disable RSA test when DSA is disabled; bug introduced in last commit

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:51:16 Modified files: usr.bin/ssh: ssh-keysign.c Log message: ensure key_fd is filled when DSA is disabled; spotted by tb@

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:45:59 Modified files: regress/usr.bin/ssh: Makefile regress/usr.bin/ssh/unittests: Makefile.inc regress/usr.bin/ssh/unittests/hostkeys: test_iterate.c

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:45:36 Modified files: usr.bin/ssh: Makefile.inc readconf.c readconf.h ssh-add.c ssh-dss.c ssh-keygen.c ssh-keyscan.c ssh-keysign.c ssh.c

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 15:19:36 Modified files: regress/usr.bin/ssh: channel-timeout.sh Log message: extend ChannelTimeout regression test to exercise multiplexed connections and the new "global" timeout type. ok

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 15:19:00 Modified files: usr.bin/ssh: channels.c ssh_config.5 sshd_config.5 Log message: add a "global" ChannelTimeout type to ssh(1) and sshd(8) that watches all open channels and will close

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 14:39:14 Modified files: usr.bin/ssh: ssh_api.c Log message: adapt ssh_api.c code for kex-strict from markus@ ok me

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 22:11:18 Modified files: usr.bin/ssh: PROTOCOL.mux Log message: Remove outdated note from PROTOCOL.mux Port forward close by control master is already implemented by

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 22:05:15 Modified files: usr.bin/ssh: PROTOCOL Log message: fix missing field in users-groups-by...@openssh.com reply documentation GHPR441 from TJ Saunders

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 21:10:03 Modified files: usr.bin/ssh: PROTOCOL Log message: make kex-strict section more explicit about its intent: banning all messages not strictly required in KEX

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 17:34:34 Modified files: usr.bin/ssh: kex.c sshconnect2.c sshd.c Log message: remove ext-info-* in the kex.c code, not in callers; with/ok markus@

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 17:30:39 Modified files: usr.bin/ssh: ssh-add.c Log message: fix typo; spotted by Albert Chin

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 23:41:14 Modified files: usr.bin/ssh: PROTOCOL Log message: correct section numbers; from Ed Maste

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 15:30:48 Modified files: openssh: index.html Log message: fix link target

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 08:58:56 Modified files: usr.bin/ssh: ssh-agent.c Log message: match flag type (s/int/u_int)

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:32:20 Modified files: openssh: releasenotes.html Log message: typo

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:32:02 Modified files: openssh/txt: release-9.6 Log message: typo

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:07:18 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:04:58 Added files: openssh/txt: release-9.6 Log message: openssh-9.6 release notes

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:50:08 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: agent-pkcs11-cert.sh Log message: regress test for agent PKCS#11-backed certificates

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:49:39 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: agent-pkcs11-restrict.sh Log message: regress test for constrained PKCS#11 keys

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:48:44 Modified files: usr.bin/ssh: version.h Log message: openssh-9.6

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:48:09 Modified files: usr.bin/ssh: ssh-agent.c Log message: ssh-agent: record failed session-bind attempts Record failed attempts to session-bind a connection and refuse signing

  1   2   3   4   5   6   7   8   9   10   >