summaryrefslogtreecommitdiff
path: root/usr.bin
AgeCommit message (Collapse)Author
2002-05-27a night of cleanup, so i can read this easierTheo de Raadt
2002-05-26sort ChallengeResponseAuthentication; ok markus@Kevin Steves
2002-05-26pid_t cleanupTheo de Raadt
2002-05-25missed Per Allansson (auth2-chall.c)Kevin Steves
2002-05-25split auth2.c into one file per method; ok provos@/deraadt@Markus Friedl
2002-05-25execlp->execl; from steveskMarkus Friedl
2002-05-25first version of ssh-keysign manpage, ok deraadt@Markus Friedl
2002-05-24don't include unused code in the #ifdef BSD_AUTH case; ok markus@Kevin Steves
2002-05-24stat ssh-keysign first, print error if stat fails;Markus Friedl
some debug->error; fix comment
2002-05-24minor cleanupEric Jackson
get rid of statics deraadt@ OK
2002-05-23add comment about ssh-keysignMarkus Friedl
2002-05-23add /usr/libexec/ssh-keysign: a setuid helper program for hostbased ↵Markus Friedl
authentication in protocol v2 (needs to access the hostkeys).
2002-05-23if NOKVM is defined, do not do the KVM stuff at allTheo de Raadt
2002-05-22spelling; abishoff@arc.nasa.govTheo de Raadt
2002-05-20fix XrTheo de Raadt
2002-05-19misc cleanups, and grok systrace betterTheo de Raadt
2002-05-19extra commas in enum not 100% portableTheo de Raadt
2002-05-19document default cdio connectionMarc Espie
2002-05-19 o Fix some fallout from argv handling changes.Todd C. Miller
o Use ANSI function headers o When creating a new user record cope with the fact that there may be an existing zero-length userrecord. o Replace -z with -r in usage()
2002-05-18grok crypto/kqueue/systrace vnodesTheo de Raadt
2002-05-17quota(1) does not need to be setuid root; tested by mickey@Todd C. Miller
2002-05-17Replace -z option (zero) with -r option (remove).Todd C. Miller
2002-05-17The standard way to get info on symlinks is -L, not -h; Peter WernerTodd C. Miller
2002-05-17version.hMarkus Friedl
2002-05-17Fix typo/thinko. Pass in as to auth_approval(), not NULL.Todd C. Miller
Closes PR 2659.
2002-05-17oops, worked only because va_end is a noop on most of our arches.Marc Espie
2002-05-17Call enable_db() from convert_db() so the dir creation as well asTodd C. Miller
mode/user/group setting is done in one place.
2002-05-16don't limit xauth pathlen on client side and longer print length onKevin Steves
server when debug; ok markus@ patch from pin@math.chalmers.se
2002-05-16fix warnings (openssl 0.9.7 requires const)Markus Friedl
2002-05-16Update for new S/Key file formatTodd C. Miller
2002-05-16Add missing chown(2) call.Todd C. Miller
2002-05-16Xr skeyinfo(1)Todd C. Miller
2002-05-16Revert to using the S/Key database directly (instead of BSD auth)Todd C. Miller
so we can get real error messages. This means the -a option is history but it wasn't very useful anyway.
2002-05-16display the ECN related statistics.Kenjiro Cho
it is a bit verbose and will be cleaned up once we figure out which counters are more useful than others.
2002-05-16- mimic pw_error() behavior from libutil when name is NULL.Federico G. Schwindt
- while i'm here some style, as well as spaces/tabs removal. deraadt@ ok
2002-05-16Change S/Key stuff from using a flat file (/etc/skeykeys) to a directoryTodd C. Miller
where each user gets their own file, which is owned by that user. An old S/Key database may be converted by running "skeyinit -C" as root. Programs that need to access the S/Key database no longer need to be setuid root. They must now be setgid auth instead.
2002-05-15re-enable privsep and disable setuid for post-3.2.2Markus Friedl
2002-05-15enter OpenSSH_3.2.2Markus Friedl
2002-05-15disable privsep and enable setuid for the 3.2.2 releaseMarkus Friedl
2002-05-15'monitor' variable clashes with at least one lame platform (NeXT). Renamedmouring
to 'pmonitor'. provos@
2002-05-14know powerpc core filesTheo de Raadt
2002-05-14Major changes:Todd C. Miller
Job names are now "runtime.queue" where runtime is when the job will run in Unix time format. This is what SysV at does and allows us to nuke the .SEQ file. Historic BSD options for atq and atrm are now implemented; atq and atrm get their own man pages. At no longer does anything with the -v flag. We print the execution time when jobs are submitted so there is no need. Most *scanf() usage is gone (one remains in atrun). Better sanity checks in atrun. Random style/cleanup. With these changes we have the best of both worlds; POSIX compliance with the traditional BSD features.
2002-05-14some -Wall cleanup; closes pr/2649.Federico G. Schwindt
minor changes by me.
2002-05-13handle debug messages during rhosts-rsa and hostbased authentication; ok provos@Markus Friedl
2002-05-13move the packet_send_debug handling from auth-options.c to auth.c; ok provos@Markus Friedl
2002-05-13Execute job with user's shell, not /bin/sh as per POSIX and historicTodd C. Miller
BSD behavior. Add some bash-specific and ssh agent variables to the no_export list. Print the message after job submission the way POSIX wants. When cat'ing or removing non-existent jobs, exit with an error if the specified job does not exist.
2002-05-13Only print usage for the command that was run (at, atq, atrm, batch), notTodd C. Miller
all four. Also differentiate between the touch(1) style time as time_arg and the at(1) style time as timespec (which is what SUS3 does). Instead of referring to the touch time format as POSIX time, reference touch. This is what SUS3 does and it is what users will know.
2002-05-13Call setsid() in the child after sshd accepts the connection and forks.Todd C. Miller
This is needed for privsep which calls setlogin() when it changes uids. Without this, there is a race where the login name of an existing connection, as returned by getlogin(), may be changed to the privsep user (sshd). markus@ OK
2002-05-13less warnings. skey_{respond,query} are public (in auth.h)Jun-ichiro itojun Hagino
2002-05-12Fix sshd Banner option for privsep; ok markus@ provos@Damien Miller