summaryrefslogtreecommitdiff
path: root/usr.bin/ssh
AgeCommit message (Expand)Author
2015-04-22unknown certificate extensions are non-fatal, so don't fatalDamien Miller
2015-04-21Add back a backslash removed in rev 1.42 so KEX_SERVER_ENCRYPT willJonathan Gray
2015-04-17s/recommended/required/ that private keys be og-rDamien Miller
2015-04-17don't try to cleanup NULL KEX proposals in kex_prop_free();Damien Miller
2015-04-17use error/logit/fatal instead of fprintf(stderr, ...) and exit(0),Damien Miller
2015-04-17debug log missing DISPLAY environment when X11 forwardingDamien Miller
2015-04-17don't call record_login() in monitor when UseLogin is enabled;Damien Miller
2015-04-17Add some missing options to sshd -T and fix the output of VersionAddendumDarren Tucker
2015-04-16Document "none" for PidFile XAuthLocation TrustedUserCAKeys and RevokedKeys.Darren Tucker
2015-04-15Plug leak of address passed to logging. bz#2373, patch from jjelen at redhat,Darren Tucker
2015-04-14Output remote username in debug output since with Host and Match it's notDarren Tucker
2015-04-13deprecate ancient, pre-RFC4419 and undocumentedDamien Miller
2015-04-10Don't send hostkey advertisments (hostkeys-00@openssh.com) to currentDarren Tucker
2015-04-10include port number if a non-default one has been specified;Damien Miller
2015-04-07treat Protocol=1,2|2,1 as Protocol=2 when compiled without SSH1Damien Miller
2015-04-05Do not use int for sig_atomic_t; spotted by christos@netbsd; ok markus@Miod Vallat
2015-04-03correct return value in pubkey parsing, spotted by Ben HawkesDamien Miller
2015-03-31downgrade error() for known_hosts parse errors to debug() to quietDamien Miller
2015-03-31fd leak for !ssh1 case; found by unittests; ok markus@Damien Miller
2015-03-31don't fatal when a !ssh1 sshd is reexeced from a w/ssh1 listener;Damien Miller
2015-03-31Comments are only supported for RSA1 keys. If a user tried to add one andTobias Stoeckmann
2015-03-30ssh-askpass(1) is the default, overridden by SSH_ASKPASS;Jason McIntyre
2015-03-30fix uninitialised memory read when parsing a config file consistingDamien Miller
2015-03-26sigp and lenp are not optional in ssh_agent_sign(); ok djm@Markus Friedl
2015-03-26don't try to load .ssh/identity by default if SSH1 is disabled; ok markus@Christian Weisgerber
2015-03-26ban all-zero curve25519 keys as recommended by latestDamien Miller
2015-03-26relax bits needed check to allow diffie-hellman-group1-sha1 keyDamien Miller
2015-03-25ignore v1 errors on ssh-add -D; only try v2 keys on -l/-L (unless WITH_SSH1)Markus Friedl
2015-03-25unbreak ssh_agent_sign (lenp vs *lenp)Markus Friedl
2015-03-24don't leak 'setp' on error; noted by Nicholas Lemonias; ok djm@Markus Friedl
2015-03-24consistent check for NULL as noted by Nicholas Lemonias; ok djm@Markus Friedl
2015-03-24correct fmt-string for size_t as noted by Nicholas Lemonias; ok djm@Markus Friedl
2015-03-24promote chacha20-poly1305@openssh.com to be the default cipher;Damien Miller
2015-03-24Compile-time disable SSH protocol 1. You can turn it back on usingDamien Miller
2015-03-24fix double-negative error message "ssh1 is not unsupported"Damien Miller
2015-03-23for ssh-keygen -A, don't try (and fail) to generateDamien Miller
2015-03-18KRL support doesn't need OpenSSL anymore, remove #ifdefsDamien Miller
2015-03-16#if 0 some more arrays used only for decrypting (we don't useDamien Miller
2015-03-11add back the changes from rev 1.206, djm reverted this by mistake inJonathan Gray
2015-03-06fix sshkey_certify() return value for unsupported key types;Damien Miller
2015-03-04make ssh-add -D work with !SSH1 agentDamien Miller
2015-03-04crank; ok markus, deraadtDamien Miller
2015-03-03add SSH1 Makefile knob to make it easier to build without SSH1 support;Damien Miller
2015-03-03Allow "ssh -Q protocol-version" to list supported SSH protocolDamien Miller
2015-03-01Make sure we only call getnameinfo() for AF_INET or AF_INET6 sockets.Todd C. Miller
2015-02-26don't printf NULL key comments; reported by Tom ChristensenDamien Miller
2015-02-25zero cmsgbuf before use; we initialise the bits we use butDamien Miller
2015-02-25fix small memory leak when UpdateHostkeys=noDamien Miller
2015-02-25don't leak validity of user in "too many authentication failures"Damien Miller
2015-02-24add -v (show ASCII art) to -l's synopsis; ok djm@Christian Weisgerber