summaryrefslogtreecommitdiff
path: root/usr.bin/ssh
AgeCommit message (Expand)Author
2022-08-12sftp-server: support home-directory requestDamien Miller
2022-08-11allow certificate validity intervals, sshsig verification times andDamien Miller
2022-08-05don't prompt for FIDO passphrase before attempting to enroll theDamien Miller
2022-08-01avoid double-free in error path introduced in r1.70;Damien Miller
2022-07-20ssh-keygen: fix touch prompt, pin retries;Damien Miller
2022-07-20sk-usbhid: preserve error code returned by key_lookup()Damien Miller
2022-07-20when enrolling a resident key on a security token, check if aDamien Miller
2022-07-20pull passphrase reading and confirmation into a separate functionDamien Miller
2022-07-01Remove extra line leftover from merge conflict. ok djm@Darren Tucker
2022-07-01use consistent field names (s/char/byte) in format descriptionDamien Miller
2022-07-01bump up loglevel from debug to info when unable to open authorizedDamien Miller
2022-07-01Don't leak the strings allocated by order_hostkeyalgs() andDarren Tucker
2022-07-01Always return allocated strings from the kex filtering so that weDarren Tucker
2022-07-01ignore SIGPIPE earlier in main(), specifically before muxclient()Damien Miller
2022-06-28reflect the update to -D arg name in usage();Jason McIntyre
2022-06-27allow arguments to sftp -D option, e.g.Damien Miller
2022-06-24Roll back previous KEX changes as they aren't safe untilDarren Tucker
2022-06-24Don't leak the strings allocated by order_hostkeyalgs() andDarren Tucker
2022-06-24make it clear that RekeyLimit applies to both transmitted andDamien Miller
2022-06-21Make sure not to fclose() the same fd twice in case of an error.Tobias Heider
2022-06-18Don't attempt to fprintf a null identity comment. From Martin VahlensieckDarren Tucker
2022-06-17Log an error if pipe() fails while accepting a connection. bz#3447, fromDarren Tucker
2022-06-15make sure that UseDNS hostname lookup happens in the monitor andDamien Miller
2022-06-03move auth_openprincipals() and auth_openkeyfile() over toDamien Miller
2022-06-03Make SetEnv directives first-match-wins in both sshd_config andDamien Miller
2022-06-03Add missing *-sk types to ssh-keyscan manpage.Darren Tucker
2022-06-03Add period at end of "not known by any other names" message. github PR#320Darren Tucker
2022-06-03ssh-keygen -A: do not generate DSA keys by default. Based on github PR#303Darren Tucker
2022-05-31ssh-keygen: implement "verify-required" certificate optionChristian Weisgerber
2022-05-28keywords ref ssh_config.5;Jason McIntyre
2022-05-27split the low-level file handling functions out from auth2-pubkey.cDamien Miller
2022-05-27refactor authorized_keys/principals handlingDamien Miller
2022-05-27f sshpkt functions fail, then password is not cleared with freezero.Darren Tucker
2022-05-27Avoid kill with -1 argument.Darren Tucker
2022-05-27Note that ProxyJump also accepts the same tokens as ProxyCommand.Darren Tucker
2022-05-25revert previous; it was broken (spotted by Theo)Damien Miller
2022-05-25make SSHBUF_DBG/SSHBUF_TELL (off by default and only enabled viaDamien Miller
2022-05-15fix in-place copies; r1.163 incorrectly skipped truncation in all cases,Damien Miller
2022-05-13arrange for scp, when in sftp mode, to not ftruncate(3) files earlyDamien Miller
2022-05-09Remove errant apostrophe. From haruyama at queen-ml org.Darren Tucker
2022-05-09Allow existing -U (use agent) flag to work with "-Y sign" operations,Damien Miller
2022-05-08improve error message when 'ssh-keygen -Y sign' is unable to load aDamien Miller
2022-05-08When performing operations that glob(3) a remote path, ensure that theDamien Miller
2022-05-05sshkey_unshield_private() contains a exact duplicate of the code inDamien Miller
2022-05-05channel_new no longer frees remote_name. So update the commentDamien Miller
2022-05-05mux.c: mark argument as const; from Martin VahlensieckDamien Miller
2022-05-04make sure stdout is non-blocking; ok djm@Markus Friedl
2022-05-03Add FIDO AUTHENTICATOR section and explain a bit how FIDO works. TheFlorian Obser
2022-05-02remove an obsolete rsa1 format example from an example;Jason McIntyre
2022-05-01fix some integer overflows in sieve_large() that show up when tryingDamien Miller