2014-07-26 |
Matt Johnston |
Avoid use-after-free when channel inithandler fails. Thanks to Coverity
|
2014-07-25 |
Matt Johnston |
merge
coverity
|
2014-07-25 |
Matt Johnston |
changes for 2014.64
|
2014-07-16 |
Matt Johnston |
Set tcp priority as follows:
|
2014-07-09 |
Matt Johnston |
Fix auth timeout regression
|
2014-07-08 |
Matt Johnston |
Make -K keepalive behave like OpenSSH's ServerAliveInterval
|
2014-07-08 |
Matt Johnston |
Make sure client exit messages don't get lost
|
2014-07-08 |
Matt Johnston |
Send a failure response if a client receives a global request
|
2014-06-25 |
Matt Johnston |
Improve handling lots of concurrent forwarded connections. Increase
|
2014-06-25 |
Matt Johnston |
Fix compiling with ECDSA and DSS disabled
|
2014-05-20 |
Matt Johnston |
Be more careful in case a platform doesn't define UIO_MAXIOV nor IOV_MAX
|
2014-05-20 |
Ronny Meeus |
Limit size of the iovect passed to writev in packet.c
|
2014-05-20 |
Ronny Meeus |
Print errno information in write_packet
|
2014-04-23 |
Matt Johnston |
Fix pubkey auth if the first key presented fails (infinite loop of
|
2014-03-21 |
Matt Johnston |
Fix monotonic_now() on OS X
|
2014-03-15 |
Matt Johnston |
Experiment of always writing data if available. Might waste a writev() with
|
2014-03-13 |
Matt Johnston |
Add new monotonic_now() wrapper so that timeouts are unaffected by
|
2014-03-13 |
Matt Johnston |
Fix typo
|
2014-03-13 |
Yousong Zhou |
Use AUTH_TIMEOUT only before authdone != 1.
|
2014-03-12 |
Matt Johnston |
Better PAM through recursion
pam
|
2014-03-08 |
Matt Johnston |
merge
coverity
|
2014-03-08 |
Matt Johnston |
Don't need to mkdir
|
2014-03-08 |
Matt Johnston |
Don't 'make install' for coverity
coverity
|
2014-03-08 |
Matt Johnston |
Fix the right build line
coverity
|
2014-03-08 |
Matt Johnston |
Fix quoting for coverity
coverity
|
2014-03-08 |
Matt Johnston |
More for coverity
coverity
|
2014-03-08 |
Matt Johnston |
Add coverity bits
coverity
|
2014-03-07 |
Matt Johnston |
Fix env vars for travis again
|
2014-03-07 |
Matt Johnston |
Fix "make install" dependency so that it works without prior "make"
|
2014-03-07 |
Matt Johnston |
Add some tests for multi
|
2014-03-07 |
Matt Johnston |
Install system libtom libs, run dropbearkey when it's done
|
2014-03-07 |
Matt Johnston |
The arguments are for configure, not make!
|
2014-03-07 |
Matt Johnston |
Add Travis CI autobuilder config
|
2014-02-27 |
Matt Johnston |
Include license information for Cryptogams routines
asm
|
2014-02-27 |
Matt Johnston |
merge up to 2013.63, improve ASM makefile rules a bit
asm
|
2013-10-06 |
Matt Johnston |
- Call the asm with multiple blocks
asm
|
2013-10-06 |
Matt Johnston |
aes and sha1 for arm
asm
|
2014-02-24 |
Matt Johnston |
Make some debug info conditional
|
2014-02-22 |
Matt Johnston |
A few fixes for cases where compression increases payload sizes, and
|
2014-02-19 |
Matt Johnston |
Fix typo in Catalin's name
|
2014-02-19 |
Matt Johnston |
Added signature for changeset 277429102f13
|
2014-02-19 |
Matt Johnston |
Added tag DROPBEAR_2014.63 for changeset 2351b2da8e0d
|
2014-02-19 |
Matt Johnston |
2014.63
DROPBEAR_2014.63
|
2014-02-09 |
Catalin Patulea |
README: fix ecdsa key generation command
|
2014-02-19 |
Matt Johnston |
CHANGES for 2014.63
|
2014-02-18 |
Matt Johnston |
- Fix dbclient with port 0 for server-allocated
|
2014-02-18 |
Matt Johnston |
Fix building with system libtomcrypt/libtommath
|
2014-02-17 |
Steve Dover |
Add linux/types.h to includes to avoid missing ___u64 etc
|
2014-02-17 |
Matt Johnston |
Read (and enqueue) packets from interactive input even when
|
2014-02-15 |
Matt Johnston |
Change port separator to ^ since % is used in ipv6 addresses
|
2014-02-15 |
Matt Johnston |
Disable immediate auth for delayed-zlib mode
|
2014-02-15 |
Matt Johnston |
- Save errno in signal handlers
|
2014-02-14 |
Matt Johnston |
generate RSA keys of exact length
|
2014-02-12 |
Matt Johnston |
cleanup before clearing keys
|
2014-02-06 |
Nicolas Boos |
Fix linking -lcrypt for systems without libcrypt in /usr/lib
|
2014-02-06 |
Nicolas Boos |
Avoid linking dropbearconvert and dropbearkey to libz or libutil
|
2014-01-28 |
Matt Johnston |
Fix check for EINTR
|
2014-01-23 |
Matt Johnston |
Back out accidentally committed files
|
2014-01-23 |
Matt Johnston |
requirenext doesn't need two values
|
2014-01-23 |
Matt Johnston |
Fix failing rekeying when we receive a still-in-flight packet
|
2014-01-17 |
Matt Johnston |
Forgot to save the change
|
2014-01-17 |
Matt Johnston |
DROPBEAR_CLI_AUTH_IMMEDIATE fixed, now enabled by default
|
2013-12-11 |
Mike Frysinger |
Fix so that "make install" for multi target won't fail on scp which doesn't
|
2013-12-11 |
Mike Frysinger |
Turn dropbearmulti into a real target so we don't constantly re-link it
|
2013-12-03 |
Matt Johnston |
Added signature for changeset 3d1d7d151c0c
|
2013-12-03 |
Matt Johnston |
Added tag DROPBEAR_2013.62 for changeset 3d1d7d151c0c
|
2013-12-03 |
Matt Johnston |
2013.62
DROPBEAR_2013.62
|
2013-12-03 |
Matt Johnston |
Update to 2013-10-01
|
2013-12-03 |
Matt Johnston |
Fix disabling DSS key
|
2013-12-03 |
Matt Johnston |
Log when generating a hostkey
|
2013-12-03 |
Matt Johnston |
Update README
|
2013-12-03 |
Matt Johnston |
Exit if we don't have keys and -R wasn't specified
|
2013-12-02 |
Catalin Patulea |
Fix TRACEs of cli_send_netcat_request
|
2013-12-02 |
Matt Johnston |
- Sockets are set to lowdelay priority initially to improve conneciton setup
|
2013-12-02 |
Catalin Patulea |
Set IPTOS_LOWDELAY on PTY sessions only
|
2013-12-02 |
Matt Johnston |
Only define LTM_DESC if it isn't already
|
2013-11-27 |
Matt Johnston |
merge
|
2013-11-27 |
Matt Johnston |
- Increase buffer size, fixes converting 521bit ECC key
|
2013-11-25 |
Matt Johnston |
Fix library order of libtom*
|
2013-11-25 |
Matt Johnston |
Try and fix utmp handling
|
2013-11-25 |
Matt Johnston |
Fix some warnings
|
2013-11-14 |
Matt Johnston |
Added signature for changeset 9ec083a21adf
|
2013-11-14 |
Matt Johnston |
Added tag DROPBEAR_2013.61test for changeset e894dbc015ba
|
2013-11-14 |
Matt Johnston |
2013.61test
DROPBEAR_2013.61test
|
2013-11-14 |
Matt Johnston |
docs for ecdsa
|
2013-11-14 |
Matt Johnston |
another new config.guess 2013-06-10
|
2013-11-14 |
Matt Johnston |
rename random.h to dbrandom.h since some OSes have a system random.h
|
2013-11-14 |
Matt Johnston |
use oldstyle comments
|
2013-11-14 |
Matt Johnston |
Replace some deprecated macros with other ones, from Daniel Richard G.
|
2013-11-14 |
Matt Johnston |
- Some fixes for old compilers like tru64 v4 from Daniel Richard G.
|
2013-11-14 |
Matt Johnston |
merge ecc again
|
2013-11-12 |
Matt Johnston |
Don't exit fatally if authorized_keys has a line like
ecc
|
2013-11-12 |
Matt Johnston |
Various cleanups and fixes for warnings
ecc
|
2013-11-08 |
Matt Johnston |
comments, turn off debugging options
ecc
|
2013-11-08 |
Matt Johnston |
- Make curve25519 work after fixing a typo, interoperates with OpenSSH
ecc
|
2013-11-08 |
Matt Johnston |
Merge
ecc
|
2013-11-08 |
Matt Johnston |
curve25519
ecc
|
2013-11-07 |
Matt Johnston |
Add '-R' for delayed hostkey option
keyondemand
|
2013-11-06 |
Matt Johnston |
refactor key generation, make it generate as required.
keyondemand
|
2013-10-31 |
Matt Johnston |
merge yet again
|
2013-10-31 |
Matt Johnston |
merge again
|
2013-10-21 |
Matt Johnston |
Fix shadowed "ret" variable
ecc
|
2013-10-31 |
Matt Johnston |
Merge
|
2013-10-31 |
Matt Johnston |
Fix specifying a keysize for key generation, fix key name arguments
ecc
|
2013-10-31 |
Matt Johnston |
Default to some larger key sizes
ecc
|
2013-10-21 |
Matt Johnston |
Merge in ECC
|
2013-10-21 |
Matt Johnston |
A few small fixes for ECC compilation
ecc
|
2013-10-20 |
Matt Johnston |
merge
ecc
|
2013-10-20 |
Matt Johnston |
writing out openssh ecc keys works
ecc
|
2013-10-18 |
Matt Johnston |
Merge in changes from the past couple of releases
ecc
|
2013-10-16 |
Matt Johnston |
Added signature for changeset a50a1dc74331
|
2013-10-16 |
Matt Johnston |
Added signature for changeset 025237c9f0a1
|
2013-10-16 |
Matt Johnston |
Added tag DROPBEAR_2013.60 for changeset a50a1dc74331
|
2013-10-16 |
Matt Johnston |
Update debian changelog for 2013.60 too
DROPBEAR_2013.60
|
2013-10-16 |
Matt Johnston |
- 2013.60, update CHANGES
|
2013-10-15 |
Matt Johnston |
Make --disable-bundled-libtom work, based on patch from Mike Frysinger
|
2013-10-09 |
Matt Johnston |
- Fix "inst_scp" target since there isn't a manpage
|
2013-10-09 |
Matt Johnston |
Add @exec_prefix@ that was missing
|
2013-10-04 |
Matt Johnston |
Added signature for changeset deb211f75ca1
|
2013-10-04 |
Matt Johnston |
Added tag DROPBEAR_2013.59 for changeset 7b68e581985f
|
2013-10-04 |
Matt Johnston |
Fix up debian build
DROPBEAR_2013.59
|
2013-10-04 |
Matt Johnston |
Fix debian installation of manpages
|
2013-10-04 |
Matt Johnston |
Version 2013.59
|
2013-10-03 |
Matt Johnston |
Don't say "SSH 2" any more since protocol version 1 is irrelevant
|
2013-10-03 |
Matt Johnston |
Add manpage for dropbearconvert
|
2013-10-03 |
Matt Johnston |
Get rid of spurious newlines in pam log messages
|
2013-10-03 |
Matt Johnston |
Send PAM error messages as a banner messages
|
2013-10-03 |
Matt Johnston |
Constant time memcmp for the hmac and password crypt
|
2013-09-20 |
Matt Johnston |
Only send a failure response to a channel request if wantreply is set.
|
2013-09-20 |
Matt Johnston |
Improve EOF handling for half-close. Patch from Catalin Patulea
|
2013-08-12 |
Matt Johnston |
Remove accidental one second sleep leftover from debugging
|
2013-07-08 |
Matt Johnston |
merge
|
2013-07-08 |
Matt Johnston |
strdup the proxycmd to avoid crash when freeing, from LluĂs Batlle i Rossell
|
2013-05-28 |
Matt Johnston |
limit how much we read from rt_cache etc
|
2013-05-26 |
Matt Johnston |
merge
|
2013-05-26 |
Matt Johnston |
merge
|
2013-05-26 |
Matt Johnston |
improve auth failure delays to avoid indicating which users exist
|
2013-05-24 |
Matt Johnston |
have separate ecdsa keys for each size
ecc
|
2013-05-23 |
Matt Johnston |
hackish ECC import code from OpenSSH
ecc
|
2013-05-23 |
Matt Johnston |
Add m_mp_alloc_init_multi() helper
ecc
|
2013-05-21 |
Matt Johnston |
Enable SMALL_CODE by default
ecc
|
2013-05-21 |
Matt Johnston |
Fix static library order, libtomcrypt depends on libtommath
ecc
|
2013-05-21 |
Matt Johnston |
Fix broken disablekey()
ecc
|
2013-05-21 |
Matt Johnston |
merge in HEAD
ecc
|
2013-05-13 |
Matt Johnston |
Fix bad comma in header list
|
2013-05-09 |
Matt Johnston |
quieten the compiler
ecc
|
2013-05-09 |
Matt Johnston |
merge
ecc
|
2013-05-09 |
Matt Johnston |
Fix build for dropbearkey and ecdsa with certain options
ecc
|
2013-05-09 |
Matt Johnston |
Fix ecdsa verification
ecc
|
2013-05-03 |
Matt Johnston |
ecdsa is working
ecc
|
2013-04-28 |
Matt Johnston |
more ecdsa signkey work, not correct
ecc
|
2013-04-13 |
Matt Johnston |
A bit of work on ecdsa for host/auth keys
ecc
|
2013-05-13 |
Matt Johnston |
Update config.guess and config.sub
|
2013-05-08 |
Matt Johnston |
Limit decompressed size
|
2013-04-29 |
Matt Johnston |
Avoid segfault for locked accounts (invalid salt to crypt())
|
2013-04-18 |
Matt Johnston |
Save with utf8 encoding
|
2013-04-18 |
Matt Johnston |
Added signature for changeset f168962bab85
|
2013-04-18 |
Matt Johnston |
Added tag DROPBEAR_2013.58 for changeset e76614145aea
|
2013-04-18 |
Matt Johnston |
2013.58
DROPBEAR_2013.58
|
2013-04-18 |
Matt Johnston |
Don't enable CLI_IMMEDIATE_AUTH by default, it breaks blank password logins
|
2013-04-17 |
Matt Johnston |
Use % rather than # for port delimiter
|
2013-04-17 |
Matt Johnston |
Use '#' for host#port separator, document it. This fixes scp
|
2013-04-17 |
Matt Johnston |
If running as non-root only allow that user to log in
|
2013-04-16 |
Matt Johnston |
Fix build when zlib is disabled, from
|
2013-04-15 |
Matt Johnston |
Added signature for changeset 095b46180bbc
|
2013-04-15 |
Matt Johnston |
Added tag DROPBEAR_2013.57 for changeset 96b8bcb88017
|
2013-04-15 |
Matt Johnston |
Fix error message for requirenext change
DROPBEAR_2013.57
|
2013-04-15 |
Matt Johnston |
bump version to 2013.57
|
2013-04-15 |
Matt Johnston |
changelog updates for 2013.57
|
2013-04-14 |
Matt Johnston |
requirenext fixup for firstkexfollows
|
2013-04-14 |
Matt Johnston |
Document escape chars
|
2013-04-14 |
Matt Johnston |
merge
|
2013-04-14 |
Matt Johnston |
-y -y to disable hostkey checking
|
2013-04-11 |
Matt Johnston |
Fix zlib for split newkeys
|
2013-04-10 |
Matt Johnston |
run closehandlers on cleanup
|
2013-04-10 |
Matt Johnston |
reset terminal modes before printing a message
|
2013-04-09 |
Matt Johnston |
A bit of debugging output
ecc
|
2013-04-09 |
Matt Johnston |
Be safer with how we handle ltc_ecc_sets[] (particularly with
ecc
|
2013-04-08 |
Matt Johnston |
start on ecdsa keys
ecc
|
2013-04-08 |
Matt Johnston |
- Rename buf_put_ecc_pubkey_string() to buf_put_ecc_raw_pubkey_string()
ecc
|
2013-04-08 |
Matt Johnston |
add printmpint() for debugging
ecc
|
2013-04-08 |
Matt Johnston |
ecdh works against OpenSSH
ecc
|
2013-04-07 |
Matt Johnston |
- Fix various hardcoded uses of SHA1
ecc
|
2013-04-06 |
Matt Johnston |
ecc kind of works, needs fixing/testing
ecc
|
2013-04-06 |
Matt Johnston |
Make _sign and _verify functions take a buffer* rather than void* and int
ecc
|
2013-03-28 |
Matt Johnston |
More changes for KEX and ECDH. Set up hash descriptors, make ECC code work,
ecc
|
2013-03-28 |
Matt Johnston |
Set LTC_SOURCE for proper ltm_desc etc
ecc
|
2013-03-27 |
Matt Johnston |
ecc key import function
ecc
|
2013-03-26 |
Matt Johnston |
more bits on ecc branch
ecc
|
2013-03-25 |
Matt Johnston |
refactor kexdh code a bit, start working on ecdh etc
ecc
|
2013-04-03 |
Matt Johnston |
setup tcp after requesting a channel - might hide some DNS latency
|
2013-04-03 |
Matt Johnston |
Take transmit and receive keys into use separately
|
2013-04-03 |
Matt Johnston |
Fix MAC bug which would prevent asymmetric hashes
|
2013-04-03 |
Matt Johnston |
Just put the version string on the queue, don't use atomicio
|
2013-04-02 |
Matt Johnston |
fix leftover kexguess debugging
|
2013-04-02 |
Matt Johnston |
Fix a few options and headers
|
2013-04-02 |
Matt Johnston |
merge
|
2013-04-02 |
Matt Johnston |
merge kexguess branch
|
2013-04-02 |
Matt Johnston |
Put some #ifdef options around first-follows options in case they
kexguess
|
2013-04-02 |
Matt Johnston |
Don't usually need to recalculate dh_e for the repeated kexdh_init packet
kexguess
|
2013-04-02 |
Matt Johnston |
Add sentinel attribute
kexguess
|
2013-03-31 |
Matt Johnston |
merge from head roundtrip changes
kexguess
|
2013-03-30 |
Matt Johnston |
merge
kexguess
|
2013-03-30 |
Matt Johnston |
Get rid of client/server specific buf_match_algo, use single
kexguess
|
2013-03-29 |
Matt Johnston |
Add kexguess2 behaviour
kexguess
|
2013-03-29 |
Matt Johnston |
first_kex_packet_follows working, needs tidying
kexguess
|
2013-04-02 |
Matt Johnston |
add IUTF8
|
2013-04-02 |
Matt Johnston |
fix tabs
|
2013-04-02 |
Matt Johnston |
merge
|
2013-04-02 |
Matt Johnston |
Fix segfault when /dev/urandom isn't writable
|
2013-04-01 |
Matt Johnston |
Be a bit more careful about when we want to use CLI_AUTH_IMMEDIATE
|
2013-04-01 |
Matt Johnston |
Run the cleanup handler also when we close due to TCP connection being closed
|
2013-04-01 |
Matt Johnston |
Try password before interactive - bit of a hack
|
2013-03-31 |
Matt Johnston |
Move the more verbose TRACE() statements into TRACE2()
|
2013-03-31 |
Matt Johnston |
Send an auth packet straight away, save another roundtrip
|
2013-03-31 |
Matt Johnston |
Fix incorrect logic for USE_VFORK and calling arg_setup()
|
2013-03-31 |
Matt Johnston |
Try using writev() for writing packets out to tcp
|
2013-03-31 |
Matt Johnston |
Don't bother waiting for a ssh-connection service reply - the server
|
2013-03-30 |
Matt Johnston |
send out our kexinit packet before blocking to read the SSH version string
|
2013-03-23 |
Matt Johnston |
Define _GNU_SOURCE for vasprintf
|
2013-03-23 |
Mike Frysinger |
rename configure.in -> configure.ac
|
2013-03-23 |
Matt Johnston |
Fix a few compile warnings
|
2013-03-23 |
Matt Johnston |
Add ~. and ~^Z handling to exit/suspend dbclient
|
2013-03-21 |
Matt Johnston |
Added signature for changeset 9b80981212fe
|
2013-03-21 |
Matt Johnston |
Added tag DROPBEAR_2013.56 for changeset 1b8b2b9d6e94
|
2013-03-21 |
Matt Johnston |
Forgot date in CHANGES
DROPBEAR_2013.56
|
2013-03-21 |
Matt Johnston |
2013.56 changelog
|
2013-03-21 |
Matt Johnston |
update text about authorized_keys options
|
2013-03-21 |
Matt Johnston |
Add URL to usage text
|
2013-03-21 |
Matt Johnston |
Make hmac-sha2-256 and hmac-sha2-512 work
|
2013-03-21 |
Matt Johnston |
Make sure "struct timeval" is initialised on OS X to avoid valgrind warnings
|
2013-03-20 |
Matt Johnston |
Fix "-c none" so that it allows aes during authentication
|
2013-03-20 |
Matt Johnston |
Fix "-m none" case and ugly typo
|
2013-03-20 |
Matt Johnston |
Fix "-m none" case where an entire packet fits in a block and can be
|
2013-03-20 |
Matt Johnston |
Merge "none" cipher/MAC branch. Also adds sha256 and sha512
|
2013-03-20 |
Matt Johnston |
use an empty writebuf rather than a NULL one
|
2013-03-19 |
Matt Johnston |
document a few more changes
|
2013-03-19 |
Matt Johnston |
Fix memory leak when direct TCP connections time out on connection.
|
2013-03-19 |
Matt Johnston |
Allow specifying server "-p" options with ipv6 bracket notation,
|
2013-03-19 |
Matt Johnston |
Android returns NULL for pw_crypt, set it to something else
|