CVS: cvs.openbsd.org: src

2024-04-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/30 00:23:51 Modified files: usr.bin/ssh: sftp-server.c Log message: fix home-directory extension implementation, it always returned the current user's home directory contrary to the spec. Patch

CVS: cvs.openbsd.org: src

2024-04-30 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/30 00:16:55 Modified files: usr.bin/ssh: sftp.c Log message: flush stdout after writing "sftp>" prompt when not using editline. >From Alpine Linux via GHPR480

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 23:53:03 Modified files: usr.bin/ssh: ssh-keysign.c Log message: stricter validation of messaging socket fd number; disallow usage of stderr. Based on GHPR492 by RealHurrison

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 23:45:56 Modified files: usr.bin/ssh: PROTOCOL.agent Log message: add missing reserved fields to key constraint protocol documentation. from Wiktor Kwapisiewicz via GHPR487

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 20:14:10 Modified files: usr.bin/ssh: clientloop.c serverloop.c Log message: correctly restore sigprocmask around ppoll() reported by Tõivo Leedjärv; ok deraadt@

CVS: cvs.openbsd.org: src

2024-04-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/04/29 20:10:49 Modified files: usr.bin/ssh: clientloop.c sshconnect.c sshconnect.h Log message: add explict check for server hostkey type against HostkeyAlgorithms. Allows HostkeyAlgorithms to

CVS: cvs.openbsd.org: src

2024-03-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/29 23:56:22 Modified files: usr.bin/ssh: PROTOCOL.key Log message: in OpenSSH private key format, correct type for subsequent private keys in blob. From Jakub Jelen via GHPR430

CVS: cvs.openbsd.org: src

2024-03-29 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/29 22:27:44 Modified files: usr.bin/ssh: readpass.c Log message: allow WAYLAND_DISPLAY to enable SSH_ASKPASS >From dkg via GHPR479; ok dtucker@

CVS: cvs.openbsd.org: src

2024-03-25 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/25 13:28:09 Modified files: regress/usr.bin/ssh/unittests/kex: test_kex.c Log message: optional debugging

CVS: cvs.openbsd.org: www

2024-03-23 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/23 12:46:47 Modified files: . : 75.html Log message: add openssh bits

CVS: cvs.openbsd.org: www

2024-03-11 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/11 04:39:58 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: www

2024-03-11 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2024/03/11 04:36:58 Added files: openssh/txt: release-9.7 Log message: release notes for OpenSSH 9.7

CVS: cvs.openbsd.org: src

2024-03-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/10 22:59:47 Modified files: usr.bin/ssh: version.h Log message: openssh-9.7

CVS: cvs.openbsd.org: src

2024-03-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/08 22:12:13 Modified files: usr.bin/ssh: ssh-agent.c Log message: avoid logging in signal handler by converting mainloop to ppoll() bz3670, reported by Ben Hamilton; ok dtucker@

CVS: cvs.openbsd.org: src

2024-03-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/08 15:16:32 Modified files: usr.bin/ssh: sshsig.c Log message: skip more whitespace, fixes find-principals on allowed_signers files with blank lines; reported by Wiktor Kwapisiewicz

CVS: cvs.openbsd.org: src

2024-03-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/05 19:59:59 Modified files: usr.bin/ssh: channels.c Log message: fix memory leak in mux proxy mode when requesting forwarding. found by RASU JSC, reported by Maks Mishin in GHPR#467

CVS: cvs.openbsd.org: src

2024-03-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/05 17:31:04 Modified files: usr.bin/ssh: ssh-agent.c Log message: wrap a few PKCS#11-specific bits in ENABLE_PKCS11

CVS: cvs.openbsd.org: src

2024-03-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/03 21:13:18 Modified files: usr.bin/ssh: readconf.c Log message: fix leak of CanonicalizePermittedCNAMEs on error path; spotted by Coverity (CID 438039)

CVS: cvs.openbsd.org: src

2024-03-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/03/03 19:16:11 Modified files: usr.bin/ssh: misc.c misc.h readconf.c readconf.h servconf.c Log message: Separate parsing of string array options from applying them to the active configuration. This

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:17:29 Modified files: usr.bin/ssh: sshd_config.5 Log message: explain arguments of internal-sftp GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:06:43 Modified files: usr.bin/ssh: sshd_config.5 Log message: clarify permissions requirements for ChrootDirectory Part of GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:05:06 Modified files: usr.bin/ssh: sshd_config.5 Log message: .Cm for a keyword. Part of GHPR#454 from Niklas Hambüchen

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 23:01:13 Modified files: usr.bin/ssh: ssh_config.5 Log message: fix typo in match directive predicate (s/tagged/tag) GHPR#462 from Tobias Manske

CVS: cvs.openbsd.org: src

2024-02-20 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/20 22:57:34 Modified files: usr.bin/ssh: clientloop.c Log message: fix proxy multiplexing mode, broken when keystroke timing obfuscation was added. GHPR#463 from montag451

CVS: cvs.openbsd.org: src

2024-02-19 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/19 21:10:03 Modified files: usr.bin/ssh: servconf.c Log message: don't append a gratuitous space to the end of subsystem arguments; bz3667

CVS: cvs.openbsd.org: src

2024-02-01 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/02/01 17:13:34 Modified files: usr.bin/ssh: kex.h Log message: whitespace

CVS: cvs.openbsd.org: src

2024-01-31 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/31 19:37:34 Modified files: usr.bin/ssh: gss-genr.c nchan.c session.c sftp.c sshbuf-getput-crypto.c Log message: whitespace

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 21:50:28 Modified files: regress/usr.bin/ssh: Makefile Log message: don't disable RSA test when DSA is disabled; bug introduced in last commit

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:51:16 Modified files: usr.bin/ssh: ssh-keysign.c Log message: ensure key_fd is filled when DSA is disabled; spotted by tb@

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:45:59 Modified files: regress/usr.bin/ssh: Makefile regress/usr.bin/ssh/unittests: Makefile.inc regress/usr.bin/ssh/unittests/hostkeys: test_iterate.c

CVS: cvs.openbsd.org: src

2024-01-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/10 18:45:36 Modified files: usr.bin/ssh: Makefile.inc readconf.c readconf.h ssh-add.c ssh-dss.c ssh-keygen.c ssh-keyscan.c ssh-keysign.c ssh.c

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 15:19:36 Modified files: regress/usr.bin/ssh: channel-timeout.sh Log message: extend ChannelTimeout regression test to exercise multiplexed connections and the new "global" timeout type. ok

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 15:19:00 Modified files: usr.bin/ssh: channels.c ssh_config.5 sshd_config.5 Log message: add a "global" ChannelTimeout type to ssh(1) and sshd(8) that watches all open channels and will close

CVS: cvs.openbsd.org: src

2024-01-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/09 14:39:14 Modified files: usr.bin/ssh: ssh_api.c Log message: adapt ssh_api.c code for kex-strict from markus@ ok me

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 22:11:18 Modified files: usr.bin/ssh: PROTOCOL.mux Log message: Remove outdated note from PROTOCOL.mux Port forward close by control master is already implemented by

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 22:05:15 Modified files: usr.bin/ssh: PROTOCOL Log message: fix missing field in users-groups-by...@openssh.com reply documentation GHPR441 from TJ Saunders

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 21:10:03 Modified files: usr.bin/ssh: PROTOCOL Log message: make kex-strict section more explicit about its intent: banning all messages not strictly required in KEX

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 17:34:34 Modified files: usr.bin/ssh: kex.c sshconnect2.c sshd.c Log message: remove ext-info-* in the kex.c code, not in callers; with/ok markus@

CVS: cvs.openbsd.org: src

2024-01-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2024/01/07 17:30:39 Modified files: usr.bin/ssh: ssh-add.c Log message: fix typo; spotted by Albert Chin

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 23:41:14 Modified files: usr.bin/ssh: PROTOCOL Log message: correct section numbers; from Ed Maste

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 15:30:48 Modified files: openssh: index.html Log message: fix link target

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 08:58:56 Modified files: usr.bin/ssh: ssh-agent.c Log message: match flag type (s/int/u_int)

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:32:20 Modified files: openssh: releasenotes.html Log message: typo

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:32:02 Modified files: openssh/txt: release-9.6 Log message: typo

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:07:18 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: www

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/12/18 08:04:58 Added files: openssh/txt: release-9.6 Log message: openssh-9.6 release notes

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:50:08 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: agent-pkcs11-cert.sh Log message: regress test for agent PKCS#11-backed certificates

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:49:39 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: agent-pkcs11-restrict.sh Log message: regress test for constrained PKCS#11 keys

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:48:44 Modified files: usr.bin/ssh: version.h Log message: openssh-9.6

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:48:09 Modified files: usr.bin/ssh: ssh-agent.c Log message: ssh-agent: record failed session-bind attempts Record failed attempts to session-bind a connection and refuse signing

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:47:44 Modified files: usr.bin/ssh: ssh.c Log message: ban user/hostnames with most shell metacharacters This makes ssh(1) refuse user or host names provided on the commandline that

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:47:20 Modified files: usr.bin/ssh: channels.c channels.h Log message: stricter handling of channel window limits This makes ssh/sshd more strict in handling non-compliant peers that send

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:46:56 Modified files: usr.bin/ssh: PROTOCOL.agent authfd.c authfd.h ssh-add.1 ssh-add.c ssh-agent.c ssh-pkcs11-client.c ssh-pkcs11.h Log

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:46:12 Modified files: usr.bin/ssh: ssh-agent.c Log message: apply destination constraints to all p11 keys Previously applied only to the first key returned from each token. ok markus@

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:45:49 Modified files: usr.bin/ssh: PROTOCOL auth2.c kex.c kex.h monitor_wrap.c sshconnect2.c sshd.c Log message: add "ext-info-in-a...@openssh.com" extension

CVS: cvs.openbsd.org: src

2023-12-18 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/18 07:45:17 Modified files: usr.bin/ssh: PROTOCOL kex.c kex.h packet.c packet.h sshconnect2.c Log message: implement "strict key exchange" in ssh and sshd This adds a

CVS: cvs.openbsd.org: src

2023-12-12 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/12 20:28:19 Modified files: usr.bin/ssh: sshconnect2.c Log message: when invoking KnownHostsCommand to determine the order of host key algorithms to request, ensure that the hostname passed to

CVS: cvs.openbsd.org: src

2023-12-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/12/06 14:06:48 Modified files: usr.bin/ssh: log.c Log message: short circuit debug log processing early if we're not going to log anything. From Kobe Housen

CVS: cvs.openbsd.org: src

2023-11-19 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/11/19 19:50:00 Modified files: usr.bin/ssh: sshconnect.c Log message: set errno=EAFNOSUPPORT when filtering addresses that don't match AddressFamily; yields slightly better error message if no

CVS: cvs.openbsd.org: src

2023-11-15 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/11/15 16:03:38 Modified files: usr.bin/ssh: sshconnect.c Log message: when connecting via socket (the default case), filter addresses by AddressFamily if one was specified. Fixes the case where, if

CVS: cvs.openbsd.org: src

2023-11-15 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/11/15 15:51:49 Modified files: usr.bin/ssh: channels.c channels.h clientloop.c Log message: when deciding whether to enable keystroke timing obfuscation, only consider enabling it when a channel

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 21:51:08 Modified files: regress/usr.bin/ssh: sshsig.sh Log message: typos and extra debug trace calls

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 21:48:54 Modified files: regress/usr.bin/ssh: test-exec.sh Log message: ensure logs are owned by correct user; feedback/ok dtucker@

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 21:36:32 Modified files: usr.bin/ssh: misc.c Log message: 64 %-expansion keys ought to be enough for anybody; ok dtucker (we just hit the previous limit in some cases)

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 20:48:44 Modified files: usr.bin/ssh: ssh.c Log message: don't dereference NULL pointer when hashing jumphost

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 20:18:18 Modified files: usr.bin/ssh: readconf.c readconf.h ssh.c ssh_config.5 sshconnect.h Log message: add %j token that expands to the configured ProxyJump

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 20:15:53 Modified files: usr.bin/ssh: sshconnect2.c Log message: release GSS OIDs only at end of authentication; bz2982, ok dtucker@

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 20:12:53 Modified files: usr.bin/ssh: clientloop.c Log message: mask SIGINT/TERM/QUIT/HUP before checking quit_pending and use ppoll() to unmask them in the mainloop. Avoids race condition

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 17:23:58 Modified files: usr.bin/ssh: ssh.c Log message: sync usage() with ssh.1; spotted by kn@

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 17:14:33 Modified files: usr.bin/ssh: ssh.1 Log message: ssh -Q does not make sense with other command-line options, so give it its own line in the manpage

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 16:42:26 Modified files: usr.bin/ssh: clientloop.c misc.c misc.h readconf.c readconf.h servconf.c ssh.c ssh_config.5 Log message: add ChannelTimeout support to the

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 16:41:05 Modified files: usr.bin/ssh: sshkey.c Log message: add support for reading ED25519 private keys in PEM PKCS8 format; ok markus@ tb@

CVS: cvs.openbsd.org: src

2023-10-11 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/11 00:40:54 Modified files: usr.bin/ssh: ssh_config.5 Log message: mention "none" is a valid argument to IdentityFile; bz3080

CVS: cvs.openbsd.org: src

2023-10-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/10 23:42:08 Modified files: usr.bin/ssh: scp.c Log message: in olde rcp/scp protocol mode, when rejecting a path from the server as not matching the glob that the client sent, log (at debug

CVS: cvs.openbsd.org: src

2023-10-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/10 22:46:30 Modified files: usr.bin/ssh: kex.c Log message: s/%.100s/%s/ in SSH- banner construction as there's no reason to limit its size: the version string bring included is a compile time

CVS: cvs.openbsd.org: src

2023-10-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/09 21:57:45 Modified files: usr.bin/ssh: ssh2.h Log message: Reserve a range of "local extension" message numbers that OpenSSH promises not to use (comment change only)

CVS: cvs.openbsd.org: src

2023-10-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/05 21:32:15 Modified files: regress/usr.bin/ssh: agent-pkcs11.sh Log message: typo in error message

CVS: cvs.openbsd.org: src

2023-10-05 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/05 21:25:14 Modified files: regress/usr.bin/ssh: agent-pkcs11.sh Log message: Perform the softhsm2 setup as discrete steps rather than as a long shell pipeline. Makes it easier to figure out what

CVS: cvs.openbsd.org: www

2023-10-05 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/10/05 16:18:32 Modified files: openssh/txt: release-9.5 openssh: releasenotes.html Log message: typo; from Alexander H

CVS: cvs.openbsd.org: www

2023-10-04 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/10/04 04:10:00 Modified files: build : Makefile build/mirrors : openssh-ftp.html.head openssh: ftp.html index.html openbsd.html

CVS: cvs.openbsd.org: www

2023-10-04 Thread Damien Miller
CVSROOT:/cvs Module name:www Changes by: d...@cvs.openbsd.org2023/10/04 03:58:23 Added files: openssh/txt: release-9.5 Log message: openssh-9.5

CVS: cvs.openbsd.org: src

2023-10-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/03 22:04:09 Modified files: usr.bin/ssh: version.h Log message: openssh-9.5

CVS: cvs.openbsd.org: src

2023-10-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/03 22:03:50 Modified files: usr.bin/ssh: ssh_config.5 Log message: add some cautionary text about % token expansion and shell metacharacters; based on report from vinci AT protonmail.ch

CVS: cvs.openbsd.org: src

2023-10-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/10/03 17:56:10 Modified files: usr.bin/ssh: PROTOCOL.agent Log message: fix link to agent draft; spotted by Jann Horn

CVS: cvs.openbsd.org: src

2023-09-10 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/10 17:12:33 Modified files: usr.bin/ssh: scp.c sftp-glob.c sftp.c Log message: rename remote_glob() -> sftp_glob() to match other API

CVS: cvs.openbsd.org: src

2023-09-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/09 21:51:55 Modified files: usr.bin/ssh: clientloop.c Log message: typo in comment

CVS: cvs.openbsd.org: src

2023-09-09 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/09 21:25:53 Modified files: usr.bin/ssh: clientloop.c Log message: randomise keystroke obfuscation intervals and average interval rate. ok dtucker@

CVS: cvs.openbsd.org: src

2023-09-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/08 00:34:24 Modified files: usr.bin/ssh: servconf.c Log message: fix sizeof(*ptr) instead sizeof(ptr) in realloc (pointer here is char**, so harmless); spotted in CID 416964

CVS: cvs.openbsd.org: src

2023-09-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/08 00:10:57 Modified files: regress/usr.bin/ssh: scp3.sh Log message: regress test recursive remote-remote directories copies where the directory contains a symlink to another directory. also

CVS: cvs.openbsd.org: src

2023-09-08 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/08 00:10:02 Modified files: usr.bin/ssh: sftp-client.c Log message: fix recursive remote-remote copies of directories that contain symlinks to other directories (similar to bz3611)

CVS: cvs.openbsd.org: src

2023-09-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/07 23:56:13 Modified files: usr.bin/ssh: scp.c sftp-client.c sftp-client.h sftp-glob.c sftp-usergroup.c sftp.c Log message: the sftp code was one of my first

CVS: cvs.openbsd.org: src

2023-09-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/07 23:50:57 Modified files: regress/usr.bin/ssh: scp.sh Log message: regress test for recursive copies of directories containing symlinks to other directories. bz3611, ok dtucker@

CVS: cvs.openbsd.org: src

2023-09-07 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/07 23:50:12 Modified files: usr.bin/ssh: sftp-client.c Log message: fix scp in SFTP mode recursive upload and download of directories that contain symlinks to other directories. In scp mode, the

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:36:09 Modified files: regress/usr.bin/ssh: Makefile Added files: regress/usr.bin/ssh: match-subsystem.sh Log message: regression test for override of subsystem in match blocks

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:35:36 Modified files: usr.bin/ssh: servconf.c servconf.h Log message: allow override of Sybsystem directives in sshd Match blocks

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:26:37 Modified files: usr.bin/ssh: servconf.c Log message: allocate the subsystems array as necessary and remove the fixed limit of subsystems. Saves a few kb of memory in the server and

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:23:53 Modified files: usr.bin/ssh: servconf.c Log message: preserve quoting of Subsystem commands and arguments. This may change behaviour of exotic configurations, but the most common

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:21:36 Modified files: usr.bin/ssh: servconf.c Log message: downgrade duplicate Subsystem directives from being a fatal error to being a debug message to match behaviour with just about all

CVS: cvs.openbsd.org: src

2023-09-06 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/06 17:18:15 Modified files: usr.bin/ssh: sshsig.c Log message: handle cr+lf (instead of just cr) in sshsig signature files

CVS: cvs.openbsd.org: src

2023-09-03 Thread Damien Miller
CVSROOT:/cvs Module name:src Changes by: d...@cvs.openbsd.org2023/09/03 18:08:14 Modified files: usr.bin/ssh: clientloop.c Log message: trigger keystroke timing obfucation only if the channels layer enqueud some data in the last poll() cycle; this avoids

  1   2   3   4   5   6   7   8   9   10   >