summaryrefslogtreecommitdiff
path: root/usr.bin/ssh/sshd.c
AgeCommit message (Collapse)Author
2005-09-21change label at markus@'s requestDamien Miller
2005-09-19stop connection abort on rekey with delayed compression enabled whenDamien Miller
post-auth privsep is disabled (e.g. when root is logged in); ok dtucker@
2005-09-13ensure that stdio fds are attached; ok deraadt@Damien Miller
2005-07-25add a new compression method that delays compression until the userMarkus Friedl
has been authenticated successfully and set compression to 'delayed' for sshd. this breaks older openssh clients (< 3.5) if they insist on compression, so you have to re-enable compression in sshd_config. ok djm@
2005-06-17make this -Wsign-compare clean; ok avsm@ markus@Damien Miller
2005-06-16don't exit if getpeername fails for forwarded ports; bugzilla #1054; ok djmMarkus Friedl
2005-04-06avoid harmless logspam by not performing setsockopt() on non-socket; ok markus@Damien Miller
2005-02-08Provide reason in error message if getnameinfo fails; ok markus@Darren Tucker
2005-01-21Warn in advance for password and account expiry; initialize loginmsgOtto Moerbeek
buffer earlier and clear it after privsep fork. ok and help dtucker@ markus@
2005-01-17Make debugging output continue after reexec; ok djm@Darren Tucker
2004-12-23bz #898: support AddressFamily in sshd_config. from peak@argo.troja.mff.cuni.czDamien Miller
ok deraadt@
2004-09-25these printf args are no longer double; ok deraadt@ markus@Damien Miller
2004-09-15use less doubles in daemons; markus@ okMichael Shalayeff
2004-08-28don't erroneously close stdin for !reexec case, from Dave Johnson; ok markus@Damien Miller
2004-08-11Don't try to close startup_pipe if it's not open; ok djm@Darren Tucker
2004-07-28call setsid() _before_ re-execMarkus Friedl
2004-07-17Move "Last logged in at.." message generation to the monitor, rightDarren Tucker
before recording the new login. Fixes missing lastlog message when /var/log/lastlog is not world-readable and incorrect datestamp when multiple sessions are used (bz #463); much assistance & ok markus@
2004-07-11spacesTheo de Raadt
2004-06-26initialise some fd variables to -1, djm@ okAnil Madhavapeddy
2004-06-25fix broken fd handling in the re-exec fallback path, particularly whenDamien Miller
/dev/crypto is in use; ok deraadt@ markus@
2004-06-25only perform tcp wrappers checks when the incoming connection is on a socket.Damien Miller
silences useless warnings from regress tests that use proxycommand="sshd -i" prompted by david@ ok markus@
2004-06-24re-exec sshd on accept(); initial work, final debugging and ok markus@Damien Miller
2004-06-14set_nonblock() instead of fnctl(...,O_NONBLOCK); "looks sane" deraadt@Damien Miller
2004-06-13implement diffie-hellman-group14-sha1 kex method (trivial extension toDamien Miller
existing diffie-hellman-group1-sha1); ok markus@
2004-05-09kill some more tiny files; ok deraadt@Damien Miller
2004-03-11ssh, sshd: sync version output, ok djmMarkus Friedl
2004-03-11trim usage; ok deraadtMarkus Friedl
2004-03-03change proctiltle after accept(2); ok henning, deraadt, djmMarkus Friedl
2004-02-25typo in commentDamien Miller
2004-02-23backout revision 1.279; set listen socket to non-block; ok henning.Markus Friedl
2004-02-05Pass SIGALRM through to privsep child if LoginGraceTime expires. ok markus@Darren Tucker
2003-12-09rename keepalive to tcpkeepalive; the old name causes too muchMarkus Friedl
confusion; ok djm, dtucker; with help from jmc@
2003-12-09fix -o and HUP; ok henning@Markus Friedl
2003-12-02use SSH_LISTEN_BACKLOG (=128) in listen(2).Markus Friedl
2003-11-10constify. ok markus@ & djm@Jakob Schlyter
2003-10-02print openssl version, too, several requests; ok henning/djm.Markus Friedl
2003-09-26no need to set the listen sockets to non-block; ok deraadt@Markus Friedl
2003-09-23replace fatal_cleanup() and linked list of fatal callbacks with staticMarkus Friedl
cleanup_exit() function. re-refine cleanup_exit() where appropriate, allocate sshd's authctxt eary to allow simpler cleanup in sshd. tested by many, ok deraadt@
2003-09-19do not call packet_close on fatal; ok deraadtMarkus Friedl
2003-08-28remove kerberos support from ssh1, since it has been replaced with GSSAPI;Markus Friedl
but keep kerberos passwd auth for ssh1 and 2; ok djm, hin, henning, ...
2003-08-13remove RhostsAuthentication; suggested by djm@ before; ok djm@, deraadt@,Markus Friedl
fgsch@, miod@, henning@, jakob@ and others
2003-07-22remove (already disabled) KRB4/AFS support, re-enable -k in ssh(1);Markus Friedl
test+ok henning@
2003-07-16don't exit on multiple -v or -d; ok deraadt@Markus Friedl
2003-07-14remove undocumented -V option. would be only useful if openssh is usedMarkus Friedl
as ssh v1 server for ssh.com's ssh v2.
2003-06-28deal with typing of write vs read in atomicioTheo de Raadt
2003-06-28report pidfile creation errors, based on patch from Roumen Petrov; ok markus@Damien Miller
2003-06-24int -> u_int; ok djm@, deraadt@, mouring@Markus Friedl
2003-06-04remove duplicated group-dropping code; ok markus@Damien Miller
2003-05-29seteuid and setegid; markus okTheo de Raadt
2003-05-24cast some types for printing; ok markus@Damien Miller