Click on a directory to enter that directory. Click on a file to display its revision history and to get a chance to display diffs between revisions.
Current directory: [local] / src / usr.bin / ssh
| File | Rev. | Age | Author | Last log entry |
|---|---|---|---|---|
| 1.97 | 9 days | djm | openssh-9.3 | |
| 1.55 | 11 days | dtucker | Free KRL itself in addition to its contents. From Coverity CID 291841, ok djm@ | |
| 1.144 | 11 days | dtucker | Check pointer for NULL before attempting to deref. None of the existing callers... | |
| 1.178 | 13 days | dtucker | Put upper bound on number of entries in SSH2_MSG_EXT_INFO request. This is alrea... | |
| 1.229 | 13 days | dtucker | calloc can return NULL but xcalloc cannot. From Coverity CID 291881, ok djm@ | |
| 1.363 | 2 weeks | dtucker | Explicitly ignore return from fcntl(... FD_CLOEXEC) here too. Coverity CID 29185... | |
| 1.44 | 2 weeks | dtucker | Plug mem leak on error path. Coverity CID 405026, ok djm@. | |
| 1.430 | 2 weeks | dtucker | Expliticly ignore return code from fcntl(.. FD_CLOEXEC) since there's not much w... | |
| 1.379 | 2 weeks | djm | Like sshd_config, some ssh_config options are not first-match-wins. sshd_config.... | |
| 1.375 | 2 weeks | dtucker | Remove no-op (int) > INT_MAX checks since they can never be true. From Coverity ... | |
| 1.133 | 2 weeks | jcs | modify parentheses in conditionals to make it clearer what is being assigned and... | |
| 1.297 | 2 weeks | jcs | modify parentheses in conditionals to make it clearer what is being assigned and... | |
| 1.366 | 2 weeks | dtucker | Re-split the merge of the reorder-hostkeys test. In the kex_proposal_populate_e... | |
| 1.56 | 2 weeks | tb | ssh-pkcs11: synchronize error messages with errors A handful of error messages ... | |
| 1.166 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.390 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.96 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.52 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.236 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.169 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.18 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.26 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.600 | 2 weeks | guenther | Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@ | |
| 1.167 | 2 weeks | djm | use RSA/SHA256 when testing usability of private key in agent; with/ok dtucker | |
| 1.466 | 2 weeks | djm | use RSA/SHA256 when testing usability of private key; based on fix in bz3546 by ... | |
| 1.335 | 2 weeks | dtucker | Fix mem leak in environment setup. From jjelen at redhat.com via bz#2687, ok dj... | |
| 1.146 | 2 weeks | djm | fix memory leak in process_read() path; Spotted by James Robinson in GHPR363; ok... | |
| 1.23 | 2 weeks | djm | correct size for array argument when changing UMAC_OUTPUT_LEN Coverity CID 29184... | |
| 1.126 | 2 weeks | dtucker | Refactor creation of KEX proposal. This adds kex_proposal_populate_entries (and... | |
| 1.62 | 2 weeks | dtucker | Refactor creation of KEX proposal. This adds kex_proposal_populate_entries (and... | |
| 1.118 | 2 weeks | dtucker | Refactor creation of KEX proposal. This adds kex_proposal_populate_entries (and... | |
| 1.160 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.52 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.25 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.4 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.33 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.45 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.392 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.49 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.79 | 2 weeks | dtucker | Remove unused compat.h includes. We've previously removed a lot of the really o... | |
| 1.149 | 3 weeks | dtucker | Use time_t instead of u_int for remaining x11 timeout checks for 64bit time_t sa... | |
| 1.309 | 3 weeks | dtucker | Ensure ms_remain is always initialized, similar to what we do in ssh_packet_writ... | |
| 1.76 | 3 weeks | djm | guard against getsockname(-1, ...) from Coverity CID 291832 | |
| 1.348 | 3 weeks | djm | some options are not first-match-wins. Mention that there are exceptions at the ... | |
| 1.253 | 3 weeks | dtucker | Check return values of dup2. Spotted by Coverity, ok djm@ | |
| 1.181 | 3 weeks | dtucker | Use time_t for x11_refuse_time timeout. We need SSH_TIME_T_MAX for this, so mov... | |
| 1.102 | 3 weeks | dtucker | Use time_t for x11_refuse_time timeout. We need SSH_TIME_T_MAX for this, so mov... | |
| 1.39 | 3 weeks | dtucker | Ensure we always call fclose when writing checkpoints. In the case of an fprin... | |
| 1.95 | 4 weeks | dtucker | fseek to end of known_hosts before writing to it. POSIX and ANSI C require that... | |
| 1.118 | 5 weeks | dtucker | Remove now-unused compat bit SSH_BUG_RSASIGMD5. The code to set this was remove... | |
| 1.235 | 5 weeks | dtucker | Remove now-unused compat bit SSH_BUG_RSASIGMD5. The code to set this was remove... | |
| 1.49 | 6 weeks | jmc | space between macro and punctuation; sort usage(); | |
| 1.151 | 6 weeks | jmc | space between macro and punctuation; sort usage(); | |
| 1.228 | 6 weeks | jmc | space between macro and punctuation; | |
| 1.324 | 6 weeks | jmc | sort SYNOPSIS; | |
| 1.20 | 6 weeks | djm | let ssh-keygen and ssh-keyscan accept -Ohashalg=sha1|sha256 when outputting SSHF... | |
| 1.585 | 6 weeks | djm | make `ssh -Q CASignatureAlgorithms` work as the manpage says it should bz3532 | |
| 1.159 | 2 months | djm | Add a sshd_config UnusedConnectionTimeout option to terminate client connections... | |
| 1.88 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.8 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.1 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.150 | 2 months | dtucker | Add a "Host" line to the output of ssh -G showing the original host arg. Inspire... | |
| 1.6 | 2 months | djm | remove whitespace at EOL from code extracted from SUPERCOP | |
| 1.7 | 2 months | djm | remove whitespace at EOL from code extracted from SUPERCOP | |
| 1.126 | 2 months | djm | Implement channel inactivity timeouts This adds a sshd_config ChannelTimeouts d... | |
| 1.37 | 2 months | djm | Add channel_force_close() This will forcibly close an open channel by simulatin... | |
| 1.112 | 3 months | djm | Mention that scp uses the SFTP protocol and remove reference to legacy flag. Spo... | |
| 1.143 | 3 months | djm | add a -X option to both scp(1) and sftp(1) to allow control over some SFTP proto... | |
| 1.57 | 3 months | dtucker | Add some server debugging for hostbased auth. auth_debug_add queues messages ab... | |
| 1.14 | 3 months | dtucker | Remove duplicate includes. Patch from AtariDreams via github PR#364. | |
| 1.19 | 3 months | djm | make struct sshbuf private and remove an unused field; ok dtucker | |
| 1.28 | 3 months | djm | make struct sshbuf private and remove an unused field; ok dtucker | |
| 1.433 | 3 months | djm | New EnableEscapeCommandline ssh_config(5) option This option (default "no") con... | |
| 1.48 | 4 months | dtucker | Fix typo. From pablomh via -portable github PR#344. | |
| 1.134 | 4 months | djm | put sshkey_check_rsa_length() back in sshkey.c to unbreak OPENSSL=no builds | |
| 1.6 | 4 months | djm | allow ssh-keyscan(1) to accept CIDR address ranges, e.g. ssh-keyscan 192.168.0.0... | |
| 1.2 | 4 months | djm | allow ssh-keyscan(1) to accept CIDR address ranges, e.g. ssh-keyscan 192.168.0.0... | |
| 1.15 | 4 months | djm | refactor sshkey_private_deserialize feedback/ok markus@ | |
| 1.19 | 4 months | djm | refactor sshkey_private_deserialize feedback/ok markus@ | |
| 1.14 | 4 months | djm | refactor sshkey_private_deserialize feedback/ok markus@ | |
| 1.61 | 4 months | djm | refactor sshkey_private_deserialize feedback/ok markus@ | |
| 1.12 | 4 months | djm | factor out key generation feedback/ok markus@ | |
| 1.4 | 4 months | djm | factor out key generation feedback/ok markus@ | |
| 1.31 | 4 months | djm | when scp(1) is using the SFTP protocol for transport (the default), better match... | |
| 1.75 | 5 months | jmc | ssh-agent.1: - use Nm not Xr for self-ref - while here, wrap a long line ssh-ag... | |
| 1.18 | 6 months | dtucker | Fix typo. From AlexanderStohr via github PR#343. | |
| 1.1 | 6 months | djm | use users-groups-by-id@openssh.com sftp-server extension (when available) to fil... | |
| 1.1 | 6 months | djm | use users-groups-by-id@openssh.com sftp-server extension (when available) to fil... | |
| 1.38 | 6 months | djm | sftp client library support for users-groups-by-id@openssh.com; ok markus@ | |
| 1.33 | 6 months | djm | extend sftp-common.c:extend ls_file() to support supplied user/group names; ok m... | |
| 1.13 | 6 months | djm | extend sftp-common.c:extend ls_file() to support supplied user/group names; ok m... | |
| 1.45 | 6 months | djm | sk_enroll: never drop SSH_SK_USER_VERIFICATION_REQD flag from response Now that... | |
| 1.30 | 7 months | djm | double free() in error path; from Eusgor via GHPR333 | |
| 1.71 | 7 months | djm | avoid double-free in error path introduced in r1.70; report and fix based on GHP... | |
| 1.15 | 8 months | djm | when enrolling a resident key on a security token, check if a credential with ma... | |
| 1.39 | 8 months | djm | when enrolling a resident key on a security token, check if a credential with ma... | |
| 1.3 | 8 months | djm | use consistent field names (s/char/byte) in format description | |
| 1.106 | 9 months | djm | make sure that UseDNS hostname lookup happens in the monitor and not in the pled... | |
| 1.49 | 9 months | djm | make sure that UseDNS hostname lookup happens in the monitor and not in the pled... | |
| 1.21 | 9 months | dtucker | f sshpkt functions fail, then password is not cleared with freezero. Uncondition... | |
| 1.70 | 9 months | dtucker | Avoid kill with -1 argument. The out_ctx label can be reached before fork has be... | |
| 1.13 | 10 months | djm | revert previous; it was broken (spotted by Theo) | |
| 1.10 | 10 months | djm | revert previous; it was broken (spotted by Theo) | |
| 1.7 | 10 months | djm | mention that the helpers are used by ssh(1), ssh-agent(1) and ssh-keygen(1). Pre... | |
| 1.4 | 10 months | djm | mention that the helpers are used by ssh(1), ssh-agent(1) and ssh-keygen(1). Pre... | |
| 1.3 | 11 months | millert | Remove unnecessary includes: openssl/hmac.h and openssl/evp.h. From Martin Vahle... | |
| 1.17 | 11 months | naddy | man pages: add missing commas between subordinate and main clauses jmc@ dislike... | |
| 1.71 | 11 months | djm | select post-quantum KEX sntrup761x25519-sha512@openssh.com as the default; ok ma... | |
| 1.37 | 12 months | cheloha | ssh: xstrdup(): use memcpy(3) Copying the given string into the buffer with str... | |
| 1.98 | 13 months | dtucker | Switch hpdelim interface to accept only ":" as delimiter. Historicallly, hpdeli... | |
| 1.84 | 13 months | dtucker | Since they are deprecated, move DSA to the end of the default list of public key... | |
| 1.74 | 13 months | djm | mark const string array contents const too, i.e. static const char *array => sta... | |
| 1.94 | 14 months | djm | add a ssh_packet_process_read() function that reads from a fd directly into the ... | |
| 1.18 | 14 months | djm | Add a sshbuf_read() that attempts to read(2) directly in to a sshbuf; ok markus@... | |
| 1.12 | 14 months | djm | sshsk_load_resident: don't preallocate resp resp is allocated by client_convers... | |
| 1.13 | 14 months | jsg | spelling ok dtucker@ | |
| 1.5 | 14 months | jsg | spelling ok dtucker@ | |
| 1.33 | 15 months | djm | prepare for multiple names for authmethods allow authentication methods to have... | |
| 1.14 | 15 months | djm | prepare for multiple names for authmethods allow authentication methods to have... | |
| 1.51 | 15 months | djm | ssh-add side of destination constraints Have ssh-add accept a list of "destinat... | |
| 1.8 | 15 months | djm | Record session ID, host key and sig at intital KEX These will be used later for... | |
| 1.38 | 15 months | djm | Record session ID, host key and sig at intital KEX These will be used later for... | |
| 1.2 | 15 months | jsg | fix unintended sizeof pointer in debug path ok markus@ | |
| 1.11 | 15 months | djm | Add ssh-keygen -Y match-principals operation to perform matching of principals n... | |
| 1.26 | 16 months | djm | check for POLLHUP wherever we check for POLLIN | |
| 1.11 | 16 months | djm | When downloading resident keys from a FIDO token, pass back the user ID that was... | |
| 1.15 | 17 months | dtucker | Make prototype for rijndaelEncrypt match function including the bounds. Fixes er... | |
| 1.60 | 18 months | djm | allow log_stderr==2 to prefix log messages with argv[0] use this to make scp's ... | |
| 1.2 | 18 months | deraadt | sys/param.h is not needed for any visible reason | |
| 1.31 | 19 months | jmc | standardise the grammar in the options list; issue reported by debian at helgefj... | |
| 1.31 | 20 months | djm | make authorized_keys environment="..." directives first-match-wins and more stri... | |
| 1.104 | 20 months | dtucker | Remove references to ChallengeResponseAuthentication in favour of KbdInteractive... | |
| 1.19 | 21 months | naddy | PROTOCOL.certkeys: update reference from IETF draft to RFC Also fix some typos.... | |
| 1.33 | 23 months | markus | do not pass file/func to monitor; noted by Ilja van Sprundel; ok djm@ | |
| 1.2 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.27 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.4 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.20 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.17 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.24 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.119 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.74 | 23 months | djm | highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ... | |
| 1.5 | 23 months | djm | whitespace (tab after space) | |
| 1.19 | 2 years | dtucker | Add ModuliFile keyword to sshd_config to specify the location of the "moduli" fi... | |
| 1.28 | 2 years | djm | make ssh->kex->session_id a sshbuf instead of u_char*/size_t and use that instea... | |
| 1.15 | 2 years | djm | make ssh->kex->session_id a sshbuf instead of u_char*/size_t and use that instea... | |
| 1.36 | 2 years | djm | remove global variable used to stash compat flags and use the purpose-built ssh-... | |
| 1.29 | 2 years | djm | make struct hostkeys public; I have no idea why I made it opaque originally. ok... | |
| 1.1 | 2 years | dtucker | Add PerSourceMaxStartups and PerSourceNetBlockSize options which provide more fi... | |
| 1.46 | 2 years | djm | add a ssh_config KnownHostsCommand that allows the client to obtain known_hosts ... | |
| 1.34 | 2 years | djm | memleak of DH public bignum; found with libfuzzer | |
| 1.19 | 2 years | dtucker | draft-ietf-secsh-architecture is now RFC4251. | |
| 1.43 | 2 years | djm | fold consecutive '*' wildcards to mitigate combinatorial explosion of recursive ... | |
| 1.9 | 2 years | djm | whitespace; no code change | |
| 1.11 | 2 years | djm | fix SEGV on fatal() errors spotted by dtucker@ | |
| 1.17 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.35 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.48 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.54 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.22 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.20 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.2 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.5 | 2 years | djm | use the new variant log macros instead of prepending __func__ and appending ssh_... | |
| 1.26 | 2 years | djm | when writing an attestation blob for a FIDO key, record all the data needed to v... | |
| 1.4 | 2 years | djm | Add RCS IDs to the few files that are missing them; from Pedro Martelletto | |
| 1.35 | 2 years | dtucker | Add a '%k' TOKEN that expands to the effective HostKey of the destination. This... | |
| 1.90 | 2 years | djm | allow some additional control over the use of ssh-askpass via $SSH_ASKPASS_REQUI... | |
| 1.20 | 2 years | djm | some language improvements; ok markus | |
| 1.11 | 2 years | djm | expose vasnmprintf(); ok (as part of other commit) markus deraadt | |
| 1.1 | 2 years | djm | chacha20-poly1305 AEAD using libcrypto EVP_chacha20 Based on patch from Yuriy M... | |
| 1.9 | 2 years | djm | make Chacha20-POLY1305 context struct opaque; ok tb@ as part of a larger diff at... | |
| 1.5 | 2 years | djm | make Chacha20-POLY1305 context struct opaque; ok tb@ as part of a larger diff at... | |
| 1.37 | 2 years | djm | make failures when establishing "Tunnel" forwarding terminate the connection whe... | |
| 1.8 | 2 years | djm | give ssh-keygen the ability to dump the contents of a binary key revocation list... | |
| 1.32 | 3 years | djm | spelling errors in comments; no code change from https://fossies.org/linux/misc/... | |
| 1.7 | 3 years | jsg | change explicit_bzero();free() to freezero() While freezero() returns early if ... | |
| 1.14 | 3 years | jsg | change explicit_bzero();free() to freezero() While freezero() returns early if ... | |
| 1.5 | 3 years | dtucker | Fix some typos and an incorrect word in docs. Patch from itoama at live.jp via g... | |
| 1.2 | 3 years | djm | tidy headers; some junk snuck into sshbuf-misc.c and sshbuf-io.c doesn't need SS... | |
| 1.10 | 3 years | djm | improve the error message for u2f enrollment errors by making ssh-keygen be sole... | |
| 1.8 | 3 years | djm | improve the error message for u2f enrollment errors by making ssh-keygen be sole... | |
| 1.25 | 3 years | djm | factor out reading/writing sshbufs to dedicated functions; feedback and ok marku... | |
| 1.6 | 3 years | djm | expose PKCS#11 key labels/X.509 subjects as comments Extract the key label or X... | |
| 1.55 | 3 years | dtucker | Make zlib optional. This adds a "ZLIB" build time option that allows building w... | |
| 1.6 | 3 years | djm | perform hashing directly in crypto_hash_sha512() using libcrypto or libc SHA512 ... | |
| 1.31 | 3 years | markus | enable ed25519 support; ok djm | |
| 1.17 | 3 years | djm | ssh-agent support for U2F/FIDO keys feedback & ok markus@ | |
| 1.35 | 3 years | djm | lots of things were relying on libcrypto headers to transitively include various... | |
| 1.34 | 3 years | deraadt | fatal() if getgrnam() cannot find "tty" | |
| 1.42 | 3 years | deraadt | When system calls indicate an error they return -1, not some arbitrary value < 0... | |
| 1.6 | 3 years | otto | Replace calls to ssh_malloc_init() by a static init of malloc_options. Prepares ... | |
| 1.17 | 4 years | dtucker | Move checks for lists of users or groups into their own function. This is a no-o... | |
| 1.5 | 4 years | dtucker | Have progressmeter force an update at the beginning and end of each transfer. F... | |
| 1.30 | 4 years | dtucker | Check for both EAGAIN and EWOULDBLOCK. This is a no-op in OpenBSD (they are the... | |
| 1.32 | 4 years | djm | pass most arguments to the KEX hash functions as sshbuf rather than pointer+leng... | |
| 1.17 | 4 years | djm | rename kex->kem_client_pub -> kex->client_pub now that KEM has been renamed to k... | |
| 1.10 | 4 years | djm | rename kex->kem_client_pub -> kex->client_pub now that KEM has been renamed to k... | |
| 1.15 | 4 years | djm | remove last traces of old packet API! with & ok markus@ | |
| 1.23 | 4 years | djm | remove last references to active_state with & ok markus@ | |
| 1.12 | 4 years | djm | move client/server SSH-* banners to buffers under ssh->kex and factor out the ba... | |
| 1.15 | 4 years | djm | refer to OpenSSL not SSLeay; we're old, but we don't have to act it | |
| 1.5 | 4 years | djm | allow key revocation by SHA256 hash and allow ssh-keygen to create KRLs using SH... | |
| 1.14 | 4 years | dtucker | Remove support for running ssh(1) setuid and fatal if attempted. Do not link uid... | |
| 1.9 | 4 years | markus | sshd: switch GSSAPI to sshbuf API; ok djm@ | |
| 1.15 | 4 years | markus | sshd: switch authentication to sshbuf API; ok djm@ | |
| 1.2 | 4 years | djm | lots of typos in comments/docs. Patch from Karsten Weiss after checking with cod... | |
| 1.3 | 4 years | djm | lots of typos in comments/docs. Patch from Karsten Weiss after checking with cod... | |
| 1.3 | 5 years | markus | ssh/xmss: fix build; ok djm@ | |
| 1.3 | 5 years | dtucker | Remove unneeded (local) include. ok markus@ | |
| 1.2 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.3 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.2 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.2 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.2 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.2 | 5 years | dtucker | Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@. | |
| 1.2 | 5 years | dtucker | Rename struct umac_ctx to umac128_ctx too. In portable some linkers complain ab... | |
| 1.9 | 5 years | djm | add RCSIDs to these; they make syncing portable a bit easier | |
| 1.2 | 5 years | djm | add RCSIDs to these; they make syncing portable a bit easier | |
| 1.8 | 5 years | djm | refactor channels.c Move static state to a "struct ssh_channels" that is alloca... | |
| 1.8 | 5 years | djm | remove hmac-ripemd160; ok dtucker | |
| 1.16 | 5 years | djm | purge the last traces of SSHv1 from the TTY modes handling code ok markus | |
| 1.20 | 5 years | djm | remove the (in)famous SSHv1 CRC compensation attack detector. Despite your came... | |
| 1.13 | 6 years | dtucker | Factor out code to disconnect from controlling terminal into its own function. ... | |
| 1.10 | 6 years | djm | Improve crypto ordering for Encrypt-then-MAC (EtM) mode MAC algorithms. Previou... | |
| 1.12 | 7 years | djm | refactor canohost.c: move functions that cache results closer to the places that... | |
| 1.20 | 8 years | djm | #if 0 some more arrays used only for decrypting (we don't use since we only need... | |
| 1.5 | 8 years | djm | sync ssh-keysign, ssh-keygen and some dependencies to the new buffer/key API; mo... | |
| 1.2 | 8 years | markus | remove unneeded includes, sync my copyright across files & whitespace; ok djm@ | |
| 1.9 | 8 years | djm | New key API: refactor key-related functions to be more library-like, existing AP... | |
| 1.4 | 8 years | djm | revert __bounded change; it causes way more problems for portable than it solves... | |
| 1.1 | 8 years | markus | re-add our own aesctr implementation; ok djm@ | |
| 1.3 | 9 years | djm | use full name for author, with his permission | |
| 1.3 | 9 years | deraadt | cleanup 1 << 31 idioms. Resurrection of this issue pointed out by Eitan Adler o... | |
| 1.1 | 9 years | djm | Add a new protocol 2 transport cipher "chacha20-poly1305@openssh.com" that combi... | |
| 1.2 | 9 years | markus | add missing $OpenBSD$ tags | |
| 1.1 | 11 years | djm | rename sandbox.h => ssh-sandbox.h to make things easier for portable | |
| 1.14 | 13 years | djm | quell tc[gs]etattr warnings when forcing a tty (ssh -tt), since we usually don't... | |
| 1.8 | 14 years | djm | support negation of groups in "Match group" block (bz#1315); ok dtucker@ | |
| 1.9 | 14 years | dtucker | replace __dead with __attribute__((noreturn)), makes things a little easier to p... | |
| 1.4 | 14 years | djm | document eow message in ssh protocol 2 channel state machine; feedback and ok ma... | |
| 1.4 | 15 years | djm | make file descriptor passing code return an error rather than call fatal() when ... | |
| 1.5 | 16 years | deraadt | almost entirely get rid of the culture of ".h files that include .h files" ok dj... | |
| 1.8 | 16 years | deraadt | almost entirely get rid of the culture of ".h files that include .h files" ok dj... | |
| 1.7 | 16 years | djm | $OpenBSD$ in here too | |
| 1.8 | 19 years | djm | unexpand and delete whitespace at EOL; ok markus@ | |
| 1.7 | 22 years | deraadt | cleanup copyright notices on all files. I have attempted to be accurate with th... | |
| 1.2 | 23 years | deraadt | noone needs this anymore | |
| 1.2 | 23 years | deraadt | correct for our ssh | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | noone is going to read this, anything i delete with this command belongs in a ma... | |
| 1.2 | 23 years | dugsong | include licensing info | |
| 1.3 | 16 years | deraadt | these files should not exist. the developers have been given ample time and war... | |
| 1.10 | 22 years | markus | bye bye | |
| 1.10 | 13 years | markus | obsolete | |
| 1.5 | 16 years | deraadt | these files should not exist. the developers have been given ample time and war... | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.3 | 19 years | markus | bad license; deraadt | |
| 1.2 | 23 years | deraadt | trash | |
| 1.15 | 6 years | markus | remove ssh1 server code; ok djm@ | |
| 1.31 | 19 years | markus | remove (already disabled) KRB4/AFS support, re-enable -k in ssh(1); test+ok henn... | |
| 1.46 | 6 years | markus | remove ssh1 server code; ok djm@ | |
| 1.91 | 6 years | markus | remove ssh1 server code; ok djm@ | |
| 1.28 | 15 years | djm | unifdef -DBSD_AUTH unifdef -USKEY These options have been in use for some years... | |
| 1.83 | 6 years | markus | remove ssh1 server code; ok djm@ | |
| 1.7 | 9 years | djm | remove experimental, never-enabled JPAKE code; ok markus@ | |
| 1.3 | 19 years | markus | nuke "kerberos-2@ssh.com" | |
| 1.4 | 22 years | markus | rename *-skey.c *-chall.c since the files are not skey specific | |
| 1.5 | 22 years | provos | rename aux.c to util.c to help with cygwin port | |
| 1.2 | 23 years | deraadt | remove local blowfish code | |
| 1.2 | 23 years | deraadt | remove local blowfish code | |
| 1.2 | 23 years | deraadt | remove local blowfish code | |
| 1.2 | 23 years | deraadt | remove local blowfish code | |
| 1.4 | 5 years | naddy | Replace ED25519's private SHA-512 implementation with a call to the regular dige... | |
| 1.2 | 23 years | deraadt | remove local blowfish code | |
| 1.61 | 4 years | markus | remove legacy buffer API emulation layer; ok djm@ | |
| 1.23 | 16 years | deraadt | almost entirely get rid of the culture of ".h files that include .h files" ok dj... | |
| 1.14 | 4 years | markus | remove legacy buffer API emulation layer; ok djm@ | |
| 1.5 | 4 years | markus | remove legacy buffer API emulation layer; ok djm@ | |
| 1.37 | 4 years | markus | remove legacy buffer API emulation layer; ok djm@ | |
| 1.27 | 4 years | markus | remove legacy buffer API emulation layer; ok djm@ | |
| 1.2 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.2 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.2 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.2 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.3 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.2 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.3 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.3 | 21 years | markus | undo the .c file split, just merge the header and keep the cvs history | |
| 1.2 | 23 years | deraadt | trash | |
| 1.13 | 5 years | djm | remove SSHv1 ciphers; ok markus@ | |
| 1.3 | 18 years | djm | remove fallback AES support for old OpenSSL, as OpenBSD has had it for many year... | |
| 1.8 | 5 years | djm | remove SSHv1 ciphers; ok markus@ | |
| 1.12 | 10 years | naddy | use OpenSSL's EVP_aes_{128,192,256}_ctr() API and remove our hand-rolled counter... | |
| 1.15 | 21 years | markus | switch to readpassphrase(3) 2.7/8-stable needs readpassphrase.[ch] from libc | |
| 1.6 | 21 years | markus | switch to readpassphrase(3) 2.7/8-stable needs readpassphrase.[ch] from libc | |
| 1.1 | 18 years | brad | branches: 1.1.2; file closefrom.c was initially added on branch OPENBSD_3_4. | |
| 1.27 | 8 years | markus | update packet.c & isolate, introduce struct ssh a) switch packet.c to buffer api... | |
| 1.13 | 8 years | markus | update packet.c & isolate, introduce struct ssh a) switch packet.c to buffer api... | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.12 | 23 years | deraadt | even smaller | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.12 | 3 years | dtucker | Remove crc32.{c,h} which were only used by the now-gone SSH1 protocol. Patch fro... | |
| 1.16 | 3 years | dtucker | Remove crc32.{c,h} which were only used by the now-gone SSH1 protocol. Patch fro... | |
| 1.34 | 5 years | djm | don't know why cvs didn't exterminate these the first time around, I use rm -f a... | |
| 1.13 | 5 years | djm | don't know why cvs didn't exterminate these the first time around, I use rm -f a... | |
| 1.5 | 9 years | markus | rename digest.c to digest-openssl.c and add libc variant; ok djm@ | |
| 1.12 | 22 years | markus | add support for RSA to SSH2. please test. there are now 3 types of keys: RSA1 ... | |
| 1.4 | 22 years | markus | add support for RSA to SSH2. please test. there are now 3 types of keys: RSA1 ... | |
| 1.3 | 23 years | markus | removed AUTH_FD residua. | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.8 | 22 years | markus | add SSH2/DSA support to the agent and some other DSA related cleanups. (note tha... | |
| 1.5 | 22 years | markus | add SSH2/DSA support to the agent and some other DSA related cleanups. (note tha... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.5 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.2 | 23 years | deraadt | more shrinking | |
| 1.10 | 16 years | djm | replace {GET,PUT}_XXBIT macros with functionally similar functions, silencing a ... | |
| 1.2 | 23 years | deraadt | distribution target | |
| 1.59 | 16 years | deraadt | almost entirely get rid of the culture of ".h files that include .h files" ok dj... | |
| 1.2 | 23 years | deraadt | build ssh components using our build model | |
| 1.2 | 2 years | dtucker | estructure sntrup761.sh to process all files in a single list, which will make i... | |
| 1.9 | 9 years | djm | remove experimental, never-enabled JPAKE code; ok markus@ | |
| 1.3 | 9 years | djm | remove experimental, never-enabled JPAKE code; ok markus@ | |
| 1.14 | 4 years | djm | use KEM API for vanilla c25519 KEX | |
| 1.17 | 4 years | djm | use KEM API for vanilla c25519 KEX | |
| 1.30 | 4 years | djm | use KEM API for vanilla DH KEX from markus@ ok djm@ | |
| 1.36 | 4 years | djm | use KEM API for vanilla DH KEX from markus@ ok djm@ | |
| 1.17 | 4 years | djm | nothing shall escape this purge | |
| 1.22 | 4 years | djm | use KEM API for vanilla ECDH from markus@ ok djm@ | |
| 1.6 | 4 years | djm | nothing shall escape this purge | |
| 1.6 | 4 years | djm | merge kexkem[cs] into kexgen from markus@ ok djm@ | |
| 1.5 | 2 years | djm | Update/replace the experimental post-quantim hybrid key exchange method based on... | |
| 1.133 | 4 years | markus | remove legacy key emulation layer; ok djm@ | |
| 1.53 | 4 years | markus | remove legacy key emulation layer; ok djm@ | |
| 1.16 | 22 years | markus | log*.c -> log.c | |
| 1.21 | 22 years | markus | log*.c -> log.c | |
| 1.18 | 22 years | djm | Rename pty.[ch] -> sshpty.[ch] and login.[ch] to sshlogin.[ch] to avoid header c... | |
| 1.3 | 22 years | djm | branches: 1.3.2; Rename pty.[ch] -> sshpty.[ch] and login.[ch] to sshlogin.[ch]... | |
| 1.7 | 14 years | djm | gc unused file (obseleted by libcrypto update) | |
| 1.3 | 23 years | markus | nuke minfd/AUTH_FD | |
| 1.2 | 18 years | djm | zap another tiny header; ok deraadt@ | |
| 1.22 | 6 years | djm | Remove support for pre-authentication compression. Doing compression early in th... | |
| 1.7 | 6 years | djm | Remove support for pre-authentication compression. Doing compression early in th... | |
| 1.17 | 18 years | djm | kill some more tiny files; ok deraadt@ | |
| 1.13 | 18 years | djm | kill some more tiny files; ok deraadt@ | |
| 1.13 | 21 years | markus | channel layer cleanup: merge header files and split .c files | |
| 1.10 | 4 years | djm | remove last traces of old packet API! with & ok markus@ | |
| 1.14 | 4 years | djm | remove last traces of old packet API! with & ok markus@ | |
| 1.23 | 22 years | djm | Rename pty.[ch] -> sshpty.[ch] and login.[ch] to sshlogin.[ch] to avoid header c... | |
| 1.9 | 22 years | djm | Rename pty.[ch] -> sshpty.[ch] and login.[ch] to sshlogin.[ch] to avoid header c... | |
| 1.23 | 19 years | markus | remove (already disabled) KRB4/AFS support, re-enable -k in ssh(1); test+ok henn... | |
| 1.5 | 19 years | markus | remove (already disabled) KRB4/AFS support, re-enable -k in ssh(1); test+ok henn... | |
| 1.2 | 23 years | provos | convert all uses of gmp to SSL bignum convert all used of rsa to SSL rsa functio... | |
| 1.2 | 23 years | provos | convert all uses of gmp to SSL bignum convert all used of rsa to SSL rsa functio... | |
| 1.2 | 23 years | provos | convert all uses of gmp to SSL bignum convert all used of rsa to SSL rsa functio... | |
| 1.2 | 23 years | deraadt | no longer using rc4 | |
| 1.2 | 23 years | deraadt | no longer using rc4 | |
| 1.8 | 18 years | djm | kill a tiny header; ok deraadt@ | |
| 1.1 | 21 years | miod | branches: 1.1.2; 1.1.4; file readpassphrase.c was initially added on branch OP... | |
| 1.1 | 21 years | miod | branches: 1.1.2; 1.1.4; file readpassphrase.h was initially added on branch OP... | |
| 1.2 | 23 years | deraadt | remove.c | |
| 1.2 | 23 years | deraadt | trash | |
| 1.2 | 22 years | markus | no longer used | |
| 1.7 | 7 years | markus | remove roaming support; ok djm@ | |
| 1.10 | 7 years | markus | remove roaming support; ok djm@ | |
| 1.14 | 7 years | markus | remove roaming support; ok djm@ | |
| 1.5 | 7 years | markus | remove roaming support; ok djm@ | |
| 1.2 | 7 years | markus | remove roaming support; ok djm@ | |
| 1.34 | 5 years | djm | actually remove these files | |
| 1.19 | 5 years | djm | actually remove these files | |
| 1.19 | 6 years | deraadt | systrace is dead. long live systrace. | |
| 1.3 | 7 years | deraadt | Change all tame callers to namechange to pledge(2). | |
| 1.3 | 11 years | djm | rename sandbox.h => ssh-sandbox.h to make things easier for portable | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... | |
| 1.37 | 13 years | markus | remove obsole scard code | |
| 1.15 | 13 years | markus | remove obsole scard code | |
| 1.11 | 9 years | djm | remove experimental, never-enabled JPAKE code; ok markus@ | |
| 1.3 | 9 years | djm | remove experimental, never-enabled JPAKE code; ok markus@ | |
| 1.2 | 21 years | mouring | branches: 1.2.2; Move colon() and cleanhost() to misc.c where I should I have p... | |
| 1.2 | 21 years | mouring | branches: 1.2.2; Move colon() and cleanhost() to misc.c where I should I have p... | |
| 1.2 | 23 years | deraadt | distribution target | |
| 1.10 | 19 years | djm | Remove useless headers; ok deraadt@ | |
| 1.70 | 19 years | djm | sftp.c and sftp-int.c, together at last; ok markus@ | |
| 1.8 | 19 years | djm | Remove useless headers; ok deraadt@ | |
| 1.4 | 2 years | djm | Update/replace the experimental post-quantim hybrid key exchange method based on... | |
| 1.4 | 2 years | djm | Update/replace the experimental post-quantim hybrid key exchange method based on... | |
| 1.2 | 23 years | provos | convert all uses of gmp to SSL bignum convert all used of rsa to SSL rsa functio... | |
| 1.7 | 20 years | markus | merge ssh-dss.h ssh-rsa.h into key.h; ok deraadt@ | |
| 1.7 | 20 years | markus | merge ssh-dss.h ssh-rsa.h into key.h; ok deraadt@ | |
| 1.2 | 23 years | deraadt | trash | |
| 1.9 | 5 years | djm | don't know why cvs didn't exterminate these the first time around, I use rm -f a... | |
| 1.3 | 23 years | deraadt | use libc md5 | |
| 1.4 | 23 years | deraadt | use libc md5 | |
| 1.81 | 5 years | djm | this one I did forget to "cvs rm" | |
| 1.2 | 23 years | deraadt | trash | |
| 1.4 | 18 years | deraadt | make two tiny header files go away; djm ok | |
| 1.16 | 17 years | djm | replace tilde_expand_filename with a simpler implementation, ahead of more whack... | |
| 1.5 | 18 years | deraadt | make two tiny header files go away; djm ok | |
| 1.1 | 20 years | miod | branches: 1.1.2; 1.1.4; file tree.h was initially added on branch OPENBSD_3_0.... | |
| 1.7 | 22 years | markus | split ssh.h and try to cleanup the #include mess. remove unnecessary #includes. ... | |
| 1.29 | 3 years | djm | remove mostly vestigal uuencode.[ch]; moving the only unique functionality there... | |
| 1.15 | 3 years | djm | remove mostly vestigal uuencode.[ch]; moving the only unique functionality there... | |
| 1.4 | 2 months | djm | update OpenSSH's Ed25519 code to the last version of SUPERCOP (20221122) and cha... |