log

age author description
Mon, 01 Apr 2013 00:13:41 +0800 Matt Johnston merge from head roundtrip changes kexguess
Sun, 31 Mar 2013 00:41:15 +0800 Matt Johnston merge kexguess
Sat, 30 Mar 2013 23:55:05 +0800 Matt Johnston Get rid of client/server specific buf_match_algo, use single kexguess
Fri, 29 Mar 2013 23:29:48 +0800 Matt Johnston Add kexguess2 behaviour kexguess
Fri, 29 Mar 2013 20:44:13 +0800 Matt Johnston first_kex_packet_follows working, needs tidying kexguess
Tue, 02 Apr 2013 19:11:13 +0800 Matt Johnston add IUTF8
Tue, 02 Apr 2013 18:59:00 +0800 Matt Johnston fix tabs
Tue, 02 Apr 2013 18:54:04 +0800 Matt Johnston merge
Tue, 02 Apr 2013 18:53:18 +0800 Matt Johnston Fix segfault when /dev/urandom isn't writable
Tue, 02 Apr 2013 00:11:53 +0800 Matt Johnston Be a bit more careful about when we want to use CLI_AUTH_IMMEDIATE
Mon, 01 Apr 2013 22:26:55 +0800 Matt Johnston Run the cleanup handler also when we close due to TCP connection being closed
Mon, 01 Apr 2013 22:26:24 +0800 Matt Johnston Try password before interactive - bit of a hack
Mon, 01 Apr 2013 00:07:26 +0800 Matt Johnston Move the more verbose TRACE() statements into TRACE2()
Sun, 31 Mar 2013 23:48:25 +0800 Matt Johnston Send an auth packet straight away, save another roundtrip
Sun, 31 Mar 2013 23:29:03 +0800 Matt Johnston Fix incorrect logic for USE_VFORK and calling arg_setup()
Sun, 31 Mar 2013 23:15:35 +0800 Matt Johnston Try using writev() for writing packets out to tcp
Sun, 31 Mar 2013 21:38:17 +0800 Matt Johnston Don't bother waiting for a ssh-connection service reply - the server
Sun, 31 Mar 2013 00:40:00 +0800 Matt Johnston send out our kexinit packet before blocking to read the SSH version string
Sun, 24 Mar 2013 00:02:20 +0800 Matt Johnston Define _GNU_SOURCE for vasprintf
Sun, 24 Mar 2013 00:00:39 +0800 Mike Frysinger rename configure.in -> configure.ac
Sat, 23 Mar 2013 23:17:01 +0800 Matt Johnston Fix a few compile warnings
Sat, 23 Mar 2013 23:16:06 +0800 Matt Johnston Add ~. and ~^Z handling to exit/suspend dbclient
Thu, 21 Mar 2013 23:35:07 +0800 Matt Johnston Added signature for changeset 9b80981212fe
Thu, 21 Mar 2013 23:33:12 +0800 Matt Johnston Added tag DROPBEAR_2013.56 for changeset 1b8b2b9d6e94
Thu, 21 Mar 2013 23:29:04 +0800 Matt Johnston Forgot date in CHANGES DROPBEAR_2013.56
Thu, 21 Mar 2013 23:19:06 +0800 Matt Johnston 2013.56 changelog
Thu, 21 Mar 2013 23:11:16 +0800 Matt Johnston update text about authorized_keys options
Thu, 21 Mar 2013 23:10:47 +0800 Matt Johnston Add URL to usage text
Thu, 21 Mar 2013 22:55:12 +0800 Matt Johnston Make hmac-sha2-256 and hmac-sha2-512 work
Thu, 21 Mar 2013 21:23:34 +0800 Matt Johnston Make sure "struct timeval" is initialised on OS X to avoid valgrind warnings
Wed, 20 Mar 2013 23:52:49 +0800 Matt Johnston Fix "-c none" so that it allows aes during authentication
Wed, 20 Mar 2013 23:13:45 +0800 Matt Johnston Fix "-m none" case and ugly typo
Wed, 20 Mar 2013 23:13:19 +0800 Matt Johnston Fix "-m none" case where an entire packet fits in a block and can be
Wed, 20 Mar 2013 22:41:07 +0800 Matt Johnston Merge "none" cipher/MAC branch. Also adds sha256 and sha512
Wed, 20 Mar 2013 22:31:07 +0800 Matt Johnston use an empty writebuf rather than a NULL one
Wed, 20 Mar 2013 00:05:19 +0800 Matt Johnston document a few more changes
Tue, 19 Mar 2013 23:54:32 +0800 Matt Johnston Fix memory leak when direct TCP connections time out on connection.
Tue, 19 Mar 2013 20:55:11 +0800 Matt Johnston Allow specifying server "-p" options with ipv6 bracket notation,
Tue, 19 Mar 2013 20:15:44 +0800 Matt Johnston Android returns NULL for pw_crypt, set it to something else
Tue, 19 Mar 2013 20:12:19 +0800 Matt Johnston ignore I_PUSH if it isn't defined, for Android from Reimar Döffinger
Tue, 19 Mar 2013 20:04:55 +0800 Matt Johnston Fix compat basename() to handle paths with no slashes. Thanks to Frank Teo
Tue, 19 Mar 2013 19:47:29 +0800 Matt Johnston Include /proc/vmstat as another random source
Tue, 19 Mar 2013 19:43:47 +0800 Matt Johnston link to Dropbear webpage
Tue, 19 Mar 2013 19:26:54 +0800 Matt Johnston Removed tag t:ltc-0.95-db-merge1
Tue, 19 Mar 2013 19:26:46 +0800 Matt Johnston Removed tag t:ltc-0.95-orig
Mon, 11 Mar 2013 23:07:45 +0800 Matt Johnston fix signedness error in prototype
Sun, 03 Mar 2013 11:47:41 +0800 Matt Johnston improve subsystem/sftp documentation, and multi-hop manual formatting
Sun, 24 Feb 2013 00:16:02 +0800 Matt Johnston fix typo
Sat, 23 Feb 2013 17:55:46 +0800 Matt Johnston DSS_PROTOK is not necessary now that private keys are included
Sat, 23 Feb 2013 10:27:49 +0800 Matt Johnston add loadavg and entropy_avail as sources
Fri, 29 Jun 2012 23:24:39 +0800 Matt Johnston increase MAX_MAC_LEN for sha2 sha2
Tue, 12 Feb 2013 15:52:57 +0000 Paul Eggleton Allow configuring "allow blank password option" at runtime
Fri, 22 Feb 2013 23:54:47 +0800 Matt Johnston Some changes since 2012.55
Fri, 22 Feb 2013 23:53:49 +0800 Matt Johnston Document "-m" and "-c"
Thu, 19 Jul 2012 21:34:27 +0800 Matt Johnston /dev/random blocks on busy servers too.
Sat, 30 Jun 2012 22:12:28 +0800 Matt Johnston Add a few more files in /proc for Linux
Fri, 29 Jun 2012 23:19:43 +0800 Matt Johnston Improve RNG seeding.
Thu, 17 May 2012 20:52:57 +0800 Matt Johnston - Only request "none" cipher after auth has succeeded insecure-nocrypto
Thu, 17 May 2012 08:33:11 +0800 Matt Johnston Add ALLOW_NONE_PASSWORD_AUTH option insecure-nocrypto
Thu, 17 May 2012 08:09:19 +0800 Matt Johnston Merge in "-m"/"-c" code insecure-nocrypto
Thu, 17 May 2012 00:26:12 +0800 Matt Johnston ENABLE_USER_ALGO_LIST should work for the client
Thu, 17 May 2012 00:12:42 +0800 Matt Johnston Add rough support for choosing ciphers/hashes with "-c" or "-m"
Wed, 16 May 2012 22:54:51 +0800 Matt Johnston Update insecure-nocrypto to current head insecure-nocrypto
Wed, 16 May 2012 21:56:50 +0800 Matt Johnston Disable SHA256 and SHA512 by default in options.h sha2
Thu, 10 May 2012 08:38:37 +0800 Matt Johnston - Add hmac-sha2-256 and hmac-sha2-512. Needs debugging, seems to be sha2
Wed, 09 May 2012 22:52:58 +0800 Matt Johnston Don't TRACE() the pw_passwd
Wed, 09 May 2012 22:51:59 +0800 Matt Johnston Fix empty password immediate login
Wed, 09 May 2012 22:37:04 +0800 Matt Johnston Return immediate success for blank passwords if allowed
Wed, 09 May 2012 21:09:34 +0800 Matt Johnston Server shouldn't return "localhost" in response to -R forward connections
Wed, 09 May 2012 20:34:55 +0800 Matt Johnston Initialise agent_fd to -1 so we don't end up closing stdin (fd 0)
Wed, 09 May 2012 20:33:16 +0800 Matt Johnston - Don't sent SSH_MSG_UNIMPLEMENTED if we don't have ENABLE_SVR_REMOTETCPFWD
Tue, 24 Apr 2012 22:05:55 +0800 Matt Johnston Ignore -q if SCP_PROGRESS isn't set
Thu, 12 Apr 2012 22:04:16 +0800 Matt Johnston Split listening port argument at the rightmost colon, allows binding to
Thu, 12 Apr 2012 21:57:30 +0800 Matt Johnston Improve comment about sha1-96
Mon, 09 Apr 2012 21:29:41 +0800 Matt Johnston Slight formatting change for ENABLE_CLI_AGENTFWD if statement
Mon, 26 Mar 2012 16:17:16 +0400 Andrey Mazo Fixed compilation with unset ENABLE_{SVR,CLI}_AGENTFWD.
Mon, 09 Apr 2012 20:35:13 +0800 Matt Johnston Rename HAVE_FORK to USE_VFORK
Sun, 08 Apr 2012 01:50:52 -0400 Mike Frysinger check for fork() and not __uClinux__
Sun, 08 Apr 2012 02:06:54 -0400 Mike Frysinger fix out-of-tree cleaning
Thu, 23 Feb 2012 21:46:02 +0800 Matt Johnston Added signature for changeset 85f835f2fe0a
Thu, 23 Feb 2012 21:45:42 +0800 Matt Johnston Added tag DROPBEAR_2012.55 for changeset d354464b2aa6
Thu, 23 Feb 2012 21:45:36 +0800 Matt Johnston - Improve CHANGES description DROPBEAR_2012.55
Wed, 22 Feb 2012 22:12:15 +0800 Matt Johnston 2012.55
Wed, 22 Feb 2012 22:05:24 +0800 Matt Johnston - Fix minor leak
Wed, 22 Feb 2012 19:33:07 +0800 Matt Johnston Fix accidentally committed change
Sun, 04 Dec 2011 05:41:46 +0800 Matt Johnston - Initialise sa_mask properly
Tue, 21 Feb 2012 23:00:30 +0800 Matt Johnston - Merge
Tue, 21 Feb 2012 22:57:19 +0800 Matt Johnston - Make sure sa_mask is set
Tue, 21 Feb 2012 22:56:45 +0800 Matt Johnston - Burn buffers to 0x00 instead
Sun, 04 Dec 2011 05:31:25 +0800 Matt Johnston - Fix use-after-free if multiple command requests were sent. Move
Sun, 04 Dec 2011 05:27:57 +0800 Matt Johnston - Remove unused variable/code
Sun, 04 Dec 2011 05:27:29 +0800 Matt Johnston - Make sure we don't use channel-specific data after it has been freed
Sun, 04 Dec 2011 05:24:50 +0800 Matt Johnston - Fix some format strings in TRACE()s
Sun, 04 Dec 2011 05:23:43 +0800 Matt Johnston - We don't need to test for NULL before free()
Fri, 10 Feb 2012 19:09:52 +0800 Matt Johnston Merge
Fri, 10 Feb 2012 18:32:18 +0800 Matt Johnston Clear a few buffers when possible
Wed, 30 Nov 2011 23:15:21 +0800 Matt Johnston - Fix constraints so we don't get warned about uninitialised dropbear-tfm
Wed, 30 Nov 2011 23:03:47 +0800 Matt Johnston - More asm constraint fixes. Now seems to build OK on 32-bit OS X. dropbear-tfm
Wed, 30 Nov 2011 22:27:26 +0800 Matt Johnston - Work around broken asm constraint behaviour on 32bit x86 OS X dropbear-tfm
Wed, 23 Nov 2011 18:11:51 +0700 Matt Johnston Somehow Makefile.in went missing dropbear-tfm tomsfastmath
Wed, 23 Nov 2011 18:10:20 +0700 Matt Johnston Add tomsfastmath from git rev bfa4582842bc3bab42e4be4aed5703437049502a dropbear-tfm
Tue, 22 Nov 2011 19:28:58 +0700 Matt Johnston A few build fixes dropbear-tfm
Mon, 21 Nov 2011 19:52:28 +0800 Matt Johnston - Update tfm changes to current default tip dropbear-tfm
Mon, 21 Nov 2011 19:19:57 +0800 Matt Johnston - Bring in original tomsfastmath patch against 0.52 from Peter Turczak dropbear-tfm
Thu, 10 Nov 2011 18:17:00 +0800 Matt Johnston Put better #if guards around IPv6 socket options for IPV6_TCLASS and
Tue, 08 Nov 2011 21:06:29 +0800 Matt Johnston Added signature for changeset 3f12086c2ef2
Tue, 08 Nov 2011 21:06:01 +0800 Matt Johnston Added tag DROPBEAR_2011.54 for changeset 3f12086c2ef2
Tue, 08 Nov 2011 20:48:15 +0800 Matt Johnston Changelog and version bump for 2011.54 DROPBEAR_2011.54
Tue, 08 Nov 2011 20:33:19 +0800 Matt Johnston Fix symlink target created by installdropbearmulti
Tue, 08 Nov 2011 00:01:47 +0800 Matt Johnston Added signature for changeset aa2f51a6b81d
Mon, 07 Nov 2011 19:31:53 +0800 Matt Johnston Use "uint64_t" instead of "u_int64_t" since the Solaris doesn't have the
Sun, 06 Nov 2011 20:22:34 +0800 Matt Johnston Fix crash with -R forwarding
Sat, 05 Nov 2011 23:12:15 +0800 Matt Johnston Print the server allocated port when using dbclient -R 0:....
Thu, 03 Nov 2011 07:18:37 +0000 convert-repo update tags
Wed, 26 Oct 2011 16:02:06 +0000 Matt Johnston Set IPTOS_LOWDELAY for IPv6 too
Wed, 26 Oct 2011 15:49:47 +0000 Matt Johnston - Add ALLOW_BLANK_PASSWORD option
Thu, 20 Oct 2011 13:45:43 +0000 Matt Johnston Try bind IPV6_V6ONLY
Tue, 05 Jul 2011 12:52:06 +0000 Matt Johnston list.c also has no trailing newline
Tue, 05 Jul 2011 12:50:15 +0000 Matt Johnston Fix lost ending newline
Thu, 30 Jun 2011 14:34:32 +0000 Matt Johnston Hopefully fix -lcrypt problem
Tue, 07 Jun 2011 11:55:44 +0000 Matt Johnston Fix case where "-K 1" would cause a SSH_MSG_IGNORE packet to be sent
Tue, 07 Jun 2011 11:08:47 +0000 Matt Johnston Mention that the value is in seconds
Thu, 07 Apr 2011 13:52:43 +0000 Matt Johnston Clean up leaked FD if getnameinfo fails. From Klocwork
Thu, 07 Apr 2011 13:39:10 +0000 Matt Johnston Fix crash when remote forwarding was requested
Thu, 07 Apr 2011 13:38:27 +0000 Matt Johnston Fix leak found by Klocwork
Thu, 07 Apr 2011 13:33:26 +0000 Matt Johnston Properly fix the bug found years ago by Klocwork, refound again.
Thu, 07 Apr 2011 13:25:00 +0000 Matt Johnston Clean up fd on failure. Found by Klocwork
Thu, 07 Apr 2011 13:24:41 +0000 Matt Johnston Define LTC_NO_FILE to avoid hmac_file() etc
Thu, 07 Apr 2011 13:05:10 +0000 Matt Johnston Fix FD leak if connect() fails, found by Klocwork
Thu, 07 Apr 2011 12:59:18 +0000 Matt Johnston Add noreturn and format attribute hints for some functions.
Thu, 07 Apr 2011 12:34:44 +0000 Matt Johnston Fix memory leak found by Klocwork
Thu, 07 Apr 2011 12:30:20 +0000 Matt Johnston Tidy error handling and get rid of some commented out code
Thu, 07 Apr 2011 11:18:35 +0000 Matt Johnston Change comparison to be more paranoid (and perhaps avoid Klocwork false
Thu, 07 Apr 2011 11:14:22 +0000 Matt Johnston Fix check of wrong variable found by Klocwork
Thu, 31 Mar 2011 14:42:11 +0000 Matt Johnston Avoid segfault when handling childpid race
Fri, 18 Mar 2011 14:31:07 +0000 Matt Johnston Use mp_init_size() to avoid some mp_grow()s
Wed, 02 Mar 2011 13:23:27 +0000 Matt Johnston Update changelog for 0.53.1 DROPBEAR_0.53.1
Mon, 28 Feb 2011 13:51:34 +0000 Matt Johnston merge of '8a608f0ed5e4b491dba4bf330e560636ec7376fd'
Mon, 28 Feb 2011 13:51:27 +0000 Matt Johnston - Don't allow setting memLevel since that doesn't work properly
Mon, 28 Feb 2011 13:39:18 +0000 Matt Johnston Compile fix for when both client and server agent forwarding is disabled
Sun, 27 Feb 2011 13:57:32 +0000 Matt Johnston Refer to RFCs rather than drafts, update some section references
Sun, 27 Feb 2011 13:12:17 +0000 Matt Johnston - Fix DROPBEAR_PRNGD_SOCKET since it doesn't need to call connect()
Fri, 25 Feb 2011 12:16:14 +0000 Matt Johnston Updates changelog. Mention diffie-hellman-group14-sha1 in 0.53
Fri, 25 Feb 2011 12:14:33 +0000 Matt Johnston -lcrypt needs to be before object files when static linking
Thu, 24 Feb 2011 14:21:36 +0000 Matt Johnston - Set debian version to 0.53 DROPBEAR_0.53
Thu, 24 Feb 2011 14:19:36 +0000 Matt Johnston Changelog for 0.53, bump version
Thu, 24 Feb 2011 14:18:13 +0000 Matt Johnston Mention -L/-R listenaddress argument in manpage
Thu, 24 Feb 2011 12:45:17 +0000 Matt Johnston It happened to sony
Thu, 24 Feb 2011 12:42:42 +0000 Matt Johnston Add diffie-hellman-group14-sha1 KEX method
Wed, 23 Feb 2011 15:50:30 +0000 Matt Johnston Improve capitalisation for all logged strings
Wed, 23 Feb 2011 15:10:31 +0000 Matt Johnston merge of '8849ec659cb45b924158cc3322390a1d3d48daef'
Wed, 23 Feb 2011 15:10:28 +0000 Matt Johnston Don't reset last_packet_time when we're transmitting SSH_MSG_IGNORE packets
Wed, 21 Jul 2010 14:07:13 +0000 Matt Johnston remove unused variable
Wed, 21 Jul 2010 13:53:29 +0000 Matt Johnston merge of '4b90e96a8a8afcc9feafc59cb47592a4a6d1cc30'
Wed, 21 Jul 2010 13:53:23 +0000 Matt Johnston - Update fake-rfc2553.{c,h} from OpenSSH 5.5p1
Wed, 21 Jul 2010 13:33:07 +0000 Matt Johnston Fix bug in primality testing, see
Wed, 21 Jul 2010 13:27:44 +0000 Matt Johnston Work properly again with bundled libtom*. autoconf is a hassle.
Wed, 21 Jul 2010 12:55:25 +0000 Matt Johnston Rename rsa_key to dropbear_rsa_key (and same for dss too) so
Wed, 21 Jul 2010 12:38:46 +0000 Matt Johnston Use system libtomcrypt/libtommath if available. Doesn't currently
Tue, 20 Jul 2010 13:54:20 +0000 Matt Johnston Comment public/private parts
Sun, 21 Mar 2010 06:07:22 +0000 Matt Johnston merge of '0adbc6745a5ada0b6780b0683209f5b26b1a335d'
Sun, 21 Mar 2010 06:06:42 +0000 Matt Johnston - make structure static
Thu, 04 Mar 2010 14:50:19 +0000 Matt Johnston don't #include "utmp.h"
Sat, 27 Feb 2010 12:15:27 +0000 Matt Johnston - fixes for listenaddr
Sat, 27 Feb 2010 11:53:18 +0000 Matt Johnston merge of '48fdaa8706d1acda35e9d564adc9a1fbc96c18c8'
Sat, 27 Feb 2010 11:51:19 +0000 Matt Johnston - tcpfwd bindaddr support against trunk. needs merging.
Wed, 24 Feb 2010 16:13:15 +0000 Matt Johnston - Progress for allowing specifying a listenaddr for tcp forwards
Sun, 13 Sep 2009 15:31:29 +0000 Matt Johnston Mention -p's address argument in manpage synopsis
Fri, 11 Sep 2009 14:02:04 +0000 Matt Johnston - Disable compression for non-final multihops
Thu, 10 Sep 2009 11:12:31 +0000 Matt Johnston Remove extraneous semicolon
Tue, 08 Sep 2009 14:53:53 +0000 Matt Johnston - Test for pam_fail_delay() function in configure
Sat, 05 Sep 2009 11:40:00 +0000 Matt Johnston Move remotehost into svr_ses structure since we can't look it up
Wed, 02 Sep 2009 15:17:14 +0000 Matt Johnston - Remove options that dbclient won't know about
Wed, 02 Sep 2009 15:05:14 +0000 Matt Johnston - scp progressbar needs strlcat(), so add compat.o
Wed, 02 Sep 2009 14:47:12 +0000 Matt Johnston - Set $SSH_CONNECTION
Tue, 01 Sep 2009 16:38:26 +0000 Matt Johnston Rearrange getaddrstring() etc
Mon, 31 Aug 2009 15:25:39 +0000 Matt Johnston - set $SSH_TTY environment variable
Wed, 26 Aug 2009 14:09:22 +0000 Matt Johnston - set $SSH_ORIGINAL_COMMAND if a command is forced, and log it
Tue, 25 Aug 2009 11:11:35 +0000 Matt Johnston merge of '0d7a9127af37d6e74efc5ec031a7001ce63d334d'
Tue, 25 Aug 2009 05:24:18 +0000 Matt Johnston - Move netcat struct to where it stays in scope.
Thu, 13 Aug 2009 14:57:27 +0000 Matt Johnston - Don't print warning if SSH_AUTH_SOCK is unset
Fri, 31 Jul 2009 15:51:33 +0000 Matt Johnston - Handle failure to connect to forwarding socket
Thu, 30 Jul 2009 15:15:12 +0000 Matt Johnston propagate from branch 'au.asn.ucc.matt.dropbear.cli-agent' (head eb0dae4b62e243ba37a897beb7ba81a4f637d8b3)
Thu, 30 Jul 2009 15:14:33 +0000 Matt Johnston Agent forwarding works agent-client
Wed, 29 Jul 2009 02:58:33 +0000 Matt Johnston propagate from branch 'au.asn.ucc.matt.dropbear' (head bbe4e11695a7b22bd89a722600eb4a4020b6fdf3) agent-client
Tue, 28 Jul 2009 16:16:14 +0000 Matt Johnston Use /usr/bin/X11/xauth default path instead
Sun, 26 Jul 2009 16:14:50 +0000 Matt Johnston Turn off DEBUG_TRACE accidentally committed
Sun, 26 Jul 2009 16:11:27 +0000 Matt Johnston - Payload length doesn't include macsize.
Sun, 26 Jul 2009 15:39:47 +0000 Matt Johnston - Add option to change zlib windowBits/memLevel
Fri, 24 Jul 2009 13:49:07 +0000 Matt Johnston Disable Blowfish by default, it has inefficient key memory use
Thu, 09 Jul 2009 16:01:30 +0000 Matt Johnston - For uclinux, only cleanup on exit for the main process. This avoids
Mon, 06 Jul 2009 14:02:45 +0000 Matt Johnston - Client auth using an agent's key works. Still need to implement client agent-client