summaryrefslogtreecommitdiff
path: root/usr.bin/ssh
AgeCommit message (Expand)Author
2015-10-21fix memory leak in error pathGleydson Soares
2015-10-21Remove Diffie-Hellman moduli entries below 2048.Doug Hogan
2015-10-20Compare pointers to NULL rather than 0.mmcc
2015-10-20Replace a function-local allocation with stack memory.mmcc
2015-10-16increase the minimum modulus that we will send or accept inDamien Miller
2015-10-16better handle anchored FQDNs (e.g. 'cvs.openbsd.org.') in hostnameDamien Miller
2015-10-160 -> NULL when comparing with a char*.mmcc
2015-10-15fix some signed/unsigned integer type mismatches in formatDamien Miller
2015-10-15argument to sshkey_from_private() and sshkey_demote() can't be NULLDamien Miller
2015-10-13apply PubkeyAcceptedKeyTypes filtering earlier, so all skippedDamien Miller
2015-10-13free the correct IV length, don't assume it's always the cipherDamien Miller
2015-10-09Change all tame callers to namechange to pledge(2).Theo de Raadt
2015-10-07include PubkeyAcceptedKeyTypes in ssh -G config dumpDamien Miller
2015-10-07UsePrivilegeSeparation defaults to sandbox now.Igor Sobrado
2015-10-07don't try to change tun device flags if they are already whatDamien Miller
2015-10-05some more bzero->explicit_bzero, from Michael McConvilleDamien Miller
2015-10-03switch from using the systrace-based sandbox to the tame-based sandbox.Theo de Raadt
2015-10-02fix emailTheo de Raadt
2015-10-02a sandbox using tameTheo de Raadt
2015-10-02re-order system calls in order of risk, ok i'll be honest, ordered thisTheo de Raadt
2015-09-25some certificatefile tweaks; ok djmJason McIntyre
2015-09-24add ssh_config CertificateFile option to explicitly listDamien Miller
2015-09-22fix two typos.Igor Sobrado
2015-09-21fix possible hang on closed output; bz#2469 reported by Tomas KuthanDamien Miller
2015-09-13- Fix error message: passphrase needs to be at least 5 characters, not 4.tim
2015-09-13When adding keys to the agent, don't ignore the comment of keys for which thetim
2015-09-11Use explicit_bzero() when zeroing before free()Philip Guenther
2015-09-11sync -Q in usage() to SYNOPSIS; since it's drastically shorter,Jason McIntyre
2015-09-11tweak previous;Jason McIntyre
2015-09-11Update usage to match man page.Darren Tucker
2015-09-11expand %i in ControlPath to UID; bz#2449Damien Miller
2015-09-11mention -Q key-plain and -Q key-cert;Damien Miller
2015-09-11more clarity on what AuthorizedKeysFile=none does;Damien Miller
2015-09-09openssh_RSA_verify return type is int, so don't make it size_t withinDamien Miller
2015-09-04Plug minor memory leaks when options are used more than once. bz#2182,Darren Tucker
2015-09-04full stop belongs outside the brackets, not inside;Jason McIntyre
2015-09-04add a debug2() right before DNS resolution; it's a place whereDamien Miller
2015-09-04correct function name in error messagesDamien Miller
2015-09-04better document ExitOnForwardFailure; bz#2444, ok dtucker@Damien Miller
2015-09-04don't record hostbased authentication hostkeys as user keysDamien Miller
2015-09-04remove extra newline in nethack-mode hostkey;Damien Miller
2015-09-02Fix occurrences of "r = func() != 0" which result in the wrong errorJonathan Gray
2015-08-21Improve printing of KEX offers and decisionsDamien Miller
2015-08-21Fix printing (ssh -G ...) of HostKeyAlgorithms=+...Damien Miller
2015-08-21Fix expansion of HostkeyAlgorithms=+...Damien Miller
2015-08-21Regen moduliDarren Tucker
2015-08-21Improve size == 0, count == 0 checking in mm_zalloc, which is "array" like.Theo de Raadt
2015-08-21openssh-7.1Damien Miller
2015-08-21fix inverted logic that broke PermitRootLogin;Damien Miller
2015-08-20Do not cast result of malloc/calloc/realloc* if stdlib.h is in scopeTheo de Raadt