Mercurial > dropbear
view TODO @ 186:4349ed1b3f38
Fix memory leak (reported by Boris Berezovsky)
author | Matt Johnston <matt@ucc.asn.au> |
---|---|
date | Wed, 04 May 2005 15:22:40 +0000 |
parents | 5162f4e4021c |
children | 5ccad7634388 |
line wrap: on
line source
Current: Things which might need doing: - Make options.h generated from configure perhaps? - some sort of warning when blocking on random? (could be difficult, investigate alarm() perhaps) - Improved queueing of unauthed connections - handle /etc/environment in AIX - check that there aren't timing issues with valid/invalid user authentication feedback. - Binding to different interfaces - possible RSA blinding? need to check whether this is vuln to timing attacks - check PRNG - CTR mode, SSH_MSG_IGNORE sending to improve CBC security - DH Group Exchange possibly, or just add group14 (whatever it's called today) - fix scp.c for IRIX - Be able to use OpenSSH keys for the client? or at least have some form of encrypted keys. - Client agent forwarding - Handle restrictions in ~/.ssh/authorized_keys ?