2013-11-08 |
Matt Johnston |
comments, turn off debugging options
ecc
|
2013-11-08 |
Matt Johnston |
- Make curve25519 work after fixing a typo, interoperates with OpenSSH
ecc
|
2013-11-08 |
Matt Johnston |
Merge
ecc
|
2013-11-08 |
Matt Johnston |
curve25519
ecc
|
2013-11-07 |
Matt Johnston |
Add '-R' for delayed hostkey option
keyondemand
|
2013-11-06 |
Matt Johnston |
refactor key generation, make it generate as required.
keyondemand
|
2013-10-31 |
Matt Johnston |
merge yet again
|
2013-10-31 |
Matt Johnston |
merge again
|
2013-10-21 |
Matt Johnston |
Fix shadowed "ret" variable
ecc
|
2013-10-31 |
Matt Johnston |
Merge
|
2013-10-31 |
Matt Johnston |
Fix specifying a keysize for key generation, fix key name arguments
ecc
|
2013-10-31 |
Matt Johnston |
Default to some larger key sizes
ecc
|
2013-10-21 |
Matt Johnston |
Merge in ECC
|
2013-10-21 |
Matt Johnston |
A few small fixes for ECC compilation
ecc
|
2013-10-20 |
Matt Johnston |
merge
ecc
|
2013-10-20 |
Matt Johnston |
writing out openssh ecc keys works
ecc
|
2013-10-18 |
Matt Johnston |
Merge in changes from the past couple of releases
ecc
|
2013-10-16 |
Matt Johnston |
Added signature for changeset a50a1dc74331
|
2013-10-16 |
Matt Johnston |
Added signature for changeset 025237c9f0a1
|
2013-10-16 |
Matt Johnston |
Added tag DROPBEAR_2013.60 for changeset a50a1dc74331
|
2013-10-16 |
Matt Johnston |
Update debian changelog for 2013.60 too
DROPBEAR_2013.60
|
2013-10-16 |
Matt Johnston |
- 2013.60, update CHANGES
|
2013-10-15 |
Matt Johnston |
Make --disable-bundled-libtom work, based on patch from Mike Frysinger
|
2013-10-09 |
Matt Johnston |
- Fix "inst_scp" target since there isn't a manpage
|
2013-10-09 |
Matt Johnston |
Add @exec_prefix@ that was missing
|
2013-10-04 |
Matt Johnston |
Added signature for changeset deb211f75ca1
|
2013-10-04 |
Matt Johnston |
Added tag DROPBEAR_2013.59 for changeset 7b68e581985f
|
2013-10-04 |
Matt Johnston |
Fix up debian build
DROPBEAR_2013.59
|
2013-10-04 |
Matt Johnston |
Fix debian installation of manpages
|
2013-10-04 |
Matt Johnston |
Version 2013.59
|
2013-10-03 |
Matt Johnston |
Don't say "SSH 2" any more since protocol version 1 is irrelevant
|
2013-10-03 |
Matt Johnston |
Add manpage for dropbearconvert
|
2013-10-03 |
Matt Johnston |
Get rid of spurious newlines in pam log messages
|
2013-10-03 |
Matt Johnston |
Send PAM error messages as a banner messages
|
2013-10-03 |
Matt Johnston |
Constant time memcmp for the hmac and password crypt
|
2013-09-20 |
Matt Johnston |
Only send a failure response to a channel request if wantreply is set.
|
2013-09-20 |
Matt Johnston |
Improve EOF handling for half-close. Patch from Catalin Patulea
|
2013-08-12 |
Matt Johnston |
Remove accidental one second sleep leftover from debugging
|
2013-07-08 |
Matt Johnston |
merge
|
2013-07-08 |
Matt Johnston |
strdup the proxycmd to avoid crash when freeing, from Lluís Batlle i Rossell
|
2013-05-28 |
Matt Johnston |
limit how much we read from rt_cache etc
|
2013-05-26 |
Matt Johnston |
merge
|
2013-05-26 |
Matt Johnston |
merge
|
2013-05-26 |
Matt Johnston |
improve auth failure delays to avoid indicating which users exist
|
2013-05-24 |
Matt Johnston |
have separate ecdsa keys for each size
ecc
|
2013-05-23 |
Matt Johnston |
hackish ECC import code from OpenSSH
ecc
|
2013-05-23 |
Matt Johnston |
Add m_mp_alloc_init_multi() helper
ecc
|
2013-05-21 |
Matt Johnston |
Enable SMALL_CODE by default
ecc
|
2013-05-21 |
Matt Johnston |
Fix static library order, libtomcrypt depends on libtommath
ecc
|
2013-05-21 |
Matt Johnston |
Fix broken disablekey()
ecc
|
2013-05-21 |
Matt Johnston |
merge in HEAD
ecc
|
2013-05-13 |
Matt Johnston |
Fix bad comma in header list
|
2013-05-09 |
Matt Johnston |
quieten the compiler
ecc
|
2013-05-09 |
Matt Johnston |
merge
ecc
|
2013-05-09 |
Matt Johnston |
Fix build for dropbearkey and ecdsa with certain options
ecc
|
2013-05-09 |
Matt Johnston |
Fix ecdsa verification
ecc
|
2013-05-03 |
Matt Johnston |
ecdsa is working
ecc
|
2013-04-28 |
Matt Johnston |
more ecdsa signkey work, not correct
ecc
|
2013-04-13 |
Matt Johnston |
A bit of work on ecdsa for host/auth keys
ecc
|
2013-05-13 |
Matt Johnston |
Update config.guess and config.sub
|
2013-05-08 |
Matt Johnston |
Limit decompressed size
|
2013-04-29 |
Matt Johnston |
Avoid segfault for locked accounts (invalid salt to crypt())
|
2013-04-18 |
Matt Johnston |
Save with utf8 encoding
|
2013-04-18 |
Matt Johnston |
Added signature for changeset f168962bab85
|
2013-04-18 |
Matt Johnston |
Added tag DROPBEAR_2013.58 for changeset e76614145aea
|
2013-04-18 |
Matt Johnston |
2013.58
DROPBEAR_2013.58
|
2013-04-18 |
Matt Johnston |
Don't enable CLI_IMMEDIATE_AUTH by default, it breaks blank password logins
|
2013-04-17 |
Matt Johnston |
Use % rather than # for port delimiter
|
2013-04-17 |
Matt Johnston |
Use '#' for host#port separator, document it. This fixes scp
|
2013-04-17 |
Matt Johnston |
If running as non-root only allow that user to log in
|
2013-04-16 |
Matt Johnston |
Fix build when zlib is disabled, from
|
2013-04-15 |
Matt Johnston |
Added signature for changeset 095b46180bbc
|
2013-04-15 |
Matt Johnston |
Added tag DROPBEAR_2013.57 for changeset 96b8bcb88017
|
2013-04-15 |
Matt Johnston |
Fix error message for requirenext change
DROPBEAR_2013.57
|
2013-04-15 |
Matt Johnston |
bump version to 2013.57
|
2013-04-15 |
Matt Johnston |
changelog updates for 2013.57
|
2013-04-14 |
Matt Johnston |
requirenext fixup for firstkexfollows
|
2013-04-14 |
Matt Johnston |
Document escape chars
|
2013-04-14 |
Matt Johnston |
merge
|
2013-04-14 |
Matt Johnston |
-y -y to disable hostkey checking
|
2013-04-11 |
Matt Johnston |
Fix zlib for split newkeys
|
2013-04-10 |
Matt Johnston |
run closehandlers on cleanup
|
2013-04-10 |
Matt Johnston |
reset terminal modes before printing a message
|
2013-04-09 |
Matt Johnston |
A bit of debugging output
ecc
|
2013-04-09 |
Matt Johnston |
Be safer with how we handle ltc_ecc_sets[] (particularly with
ecc
|
2013-04-08 |
Matt Johnston |
start on ecdsa keys
ecc
|
2013-04-08 |
Matt Johnston |
- Rename buf_put_ecc_pubkey_string() to buf_put_ecc_raw_pubkey_string()
ecc
|
2013-04-08 |
Matt Johnston |
add printmpint() for debugging
ecc
|
2013-04-08 |
Matt Johnston |
ecdh works against OpenSSH
ecc
|
2013-04-07 |
Matt Johnston |
- Fix various hardcoded uses of SHA1
ecc
|
2013-04-06 |
Matt Johnston |
ecc kind of works, needs fixing/testing
ecc
|
2013-04-06 |
Matt Johnston |
Make _sign and _verify functions take a buffer* rather than void* and int
ecc
|
2013-03-28 |
Matt Johnston |
More changes for KEX and ECDH. Set up hash descriptors, make ECC code work,
ecc
|
2013-03-28 |
Matt Johnston |
Set LTC_SOURCE for proper ltm_desc etc
ecc
|
2013-03-27 |
Matt Johnston |
ecc key import function
ecc
|
2013-03-26 |
Matt Johnston |
more bits on ecc branch
ecc
|
2013-03-25 |
Matt Johnston |
refactor kexdh code a bit, start working on ecdh etc
ecc
|
2013-04-03 |
Matt Johnston |
setup tcp after requesting a channel - might hide some DNS latency
|
2013-04-03 |
Matt Johnston |
Take transmit and receive keys into use separately
|
2013-04-03 |
Matt Johnston |
Fix MAC bug which would prevent asymmetric hashes
|
2013-04-03 |
Matt Johnston |
Just put the version string on the queue, don't use atomicio
|
2013-04-02 |
Matt Johnston |
fix leftover kexguess debugging
|
2013-04-02 |
Matt Johnston |
Fix a few options and headers
|
2013-04-02 |
Matt Johnston |
merge
|
2013-04-02 |
Matt Johnston |
merge kexguess branch
|
2013-04-02 |
Matt Johnston |
Put some #ifdef options around first-follows options in case they
kexguess
|
2013-04-02 |
Matt Johnston |
Don't usually need to recalculate dh_e for the repeated kexdh_init packet
kexguess
|
2013-04-02 |
Matt Johnston |
Add sentinel attribute
kexguess
|
2013-03-31 |
Matt Johnston |
merge from head roundtrip changes
kexguess
|
2013-03-30 |
Matt Johnston |
merge
kexguess
|
2013-03-30 |
Matt Johnston |
Get rid of client/server specific buf_match_algo, use single
kexguess
|
2013-03-29 |
Matt Johnston |
Add kexguess2 behaviour
kexguess
|
2013-03-29 |
Matt Johnston |
first_kex_packet_follows working, needs tidying
kexguess
|
2013-04-02 |
Matt Johnston |
add IUTF8
|
2013-04-02 |
Matt Johnston |
fix tabs
|
2013-04-02 |
Matt Johnston |
merge
|
2013-04-02 |
Matt Johnston |
Fix segfault when /dev/urandom isn't writable
|
2013-04-01 |
Matt Johnston |
Be a bit more careful about when we want to use CLI_AUTH_IMMEDIATE
|
2013-04-01 |
Matt Johnston |
Run the cleanup handler also when we close due to TCP connection being closed
|
2013-04-01 |
Matt Johnston |
Try password before interactive - bit of a hack
|
2013-03-31 |
Matt Johnston |
Move the more verbose TRACE() statements into TRACE2()
|
2013-03-31 |
Matt Johnston |
Send an auth packet straight away, save another roundtrip
|
2013-03-31 |
Matt Johnston |
Fix incorrect logic for USE_VFORK and calling arg_setup()
|
2013-03-31 |
Matt Johnston |
Try using writev() for writing packets out to tcp
|
2013-03-31 |
Matt Johnston |
Don't bother waiting for a ssh-connection service reply - the server
|
2013-03-30 |
Matt Johnston |
send out our kexinit packet before blocking to read the SSH version string
|
2013-03-23 |
Matt Johnston |
Define _GNU_SOURCE for vasprintf
|
2013-03-23 |
Mike Frysinger |
rename configure.in -> configure.ac
|
2013-03-23 |
Matt Johnston |
Fix a few compile warnings
|
2013-03-23 |
Matt Johnston |
Add ~. and ~^Z handling to exit/suspend dbclient
|
2013-03-21 |
Matt Johnston |
Added signature for changeset 9b80981212fe
|
2013-03-21 |
Matt Johnston |
Added tag DROPBEAR_2013.56 for changeset 1b8b2b9d6e94
|
2013-03-21 |
Matt Johnston |
Forgot date in CHANGES
DROPBEAR_2013.56
|
2013-03-21 |
Matt Johnston |
2013.56 changelog
|
2013-03-21 |
Matt Johnston |
update text about authorized_keys options
|
2013-03-21 |
Matt Johnston |
Add URL to usage text
|
2013-03-21 |
Matt Johnston |
Make hmac-sha2-256 and hmac-sha2-512 work
|
2013-03-21 |
Matt Johnston |
Make sure "struct timeval" is initialised on OS X to avoid valgrind warnings
|
2013-03-20 |
Matt Johnston |
Fix "-c none" so that it allows aes during authentication
|
2013-03-20 |
Matt Johnston |
Fix "-m none" case and ugly typo
|
2013-03-20 |
Matt Johnston |
Fix "-m none" case where an entire packet fits in a block and can be
|
2013-03-20 |
Matt Johnston |
Merge "none" cipher/MAC branch. Also adds sha256 and sha512
|
2013-03-20 |
Matt Johnston |
use an empty writebuf rather than a NULL one
|
2013-03-19 |
Matt Johnston |
document a few more changes
|
2013-03-19 |
Matt Johnston |
Fix memory leak when direct TCP connections time out on connection.
|
2013-03-19 |
Matt Johnston |
Allow specifying server "-p" options with ipv6 bracket notation,
|
2013-03-19 |
Matt Johnston |
Android returns NULL for pw_crypt, set it to something else
|
2013-03-19 |
Matt Johnston |
ignore I_PUSH if it isn't defined, for Android from Reimar Döffinger
|
2013-03-19 |
Matt Johnston |
Fix compat basename() to handle paths with no slashes. Thanks to Frank Teo
|
2013-03-19 |
Matt Johnston |
Include /proc/vmstat as another random source
|
2013-03-19 |
Matt Johnston |
link to Dropbear webpage
|
2013-03-19 |
Matt Johnston |
Removed tag t:ltc-0.95-db-merge1
|
2013-03-19 |
Matt Johnston |
Removed tag t:ltc-0.95-orig
|
2013-03-11 |
Matt Johnston |
fix signedness error in prototype
|
2013-03-03 |
Matt Johnston |
improve subsystem/sftp documentation, and multi-hop manual formatting
|
2013-02-23 |
Matt Johnston |
fix typo
|
2013-02-23 |
Matt Johnston |
DSS_PROTOK is not necessary now that private keys are included
|
2013-02-23 |
Matt Johnston |
add loadavg and entropy_avail as sources
|
2012-06-29 |
Matt Johnston |
increase MAX_MAC_LEN for sha2
sha2
|
2013-02-12 |
Paul Eggleton |
Allow configuring "allow blank password option" at runtime
|
2013-02-22 |
Matt Johnston |
Some changes since 2012.55
|
2013-02-22 |
Matt Johnston |
Document "-m" and "-c"
|
2012-07-19 |
Matt Johnston |
/dev/random blocks on busy servers too.
|
2012-06-30 |
Matt Johnston |
Add a few more files in /proc for Linux
|
2012-06-29 |
Matt Johnston |
Improve RNG seeding.
|
2012-05-17 |
Matt Johnston |
- Only request "none" cipher after auth has succeeded
insecure-nocrypto
|
2012-05-17 |
Matt Johnston |
Add ALLOW_NONE_PASSWORD_AUTH option
insecure-nocrypto
|
2012-05-17 |
Matt Johnston |
Merge in "-m"/"-c" code
insecure-nocrypto
|
2012-05-16 |
Matt Johnston |
ENABLE_USER_ALGO_LIST should work for the client
|
2012-05-16 |
Matt Johnston |
Add rough support for choosing ciphers/hashes with "-c" or "-m"
|
2012-05-16 |
Matt Johnston |
Update insecure-nocrypto to current head
insecure-nocrypto
|
2012-05-16 |
Matt Johnston |
Disable SHA256 and SHA512 by default in options.h
sha2
|
2012-05-10 |
Matt Johnston |
- Add hmac-sha2-256 and hmac-sha2-512. Needs debugging, seems to be
sha2
|
2012-05-09 |
Matt Johnston |
Don't TRACE() the pw_passwd
|
2012-05-09 |
Matt Johnston |
Fix empty password immediate login
|
2012-05-09 |
Matt Johnston |
Return immediate success for blank passwords if allowed
|
2012-05-09 |
Matt Johnston |
Server shouldn't return "localhost" in response to -R forward connections
|
2012-05-09 |
Matt Johnston |
Initialise agent_fd to -1 so we don't end up closing stdin (fd 0)
|
2012-05-09 |
Matt Johnston |
- Don't sent SSH_MSG_UNIMPLEMENTED if we don't have ENABLE_SVR_REMOTETCPFWD
|
2012-04-24 |
Matt Johnston |
Ignore -q if SCP_PROGRESS isn't set
|
2012-04-12 |
Matt Johnston |
Split listening port argument at the rightmost colon, allows binding to
|
2012-04-12 |
Matt Johnston |
Improve comment about sha1-96
|
2012-04-09 |
Matt Johnston |
Slight formatting change for ENABLE_CLI_AGENTFWD if statement
|
2012-03-26 |
Andrey Mazo |
Fixed compilation with unset ENABLE_{SVR,CLI}_AGENTFWD.
|
2012-04-09 |
Matt Johnston |
Rename HAVE_FORK to USE_VFORK
|
2012-04-08 |
Mike Frysinger |
check for fork() and not __uClinux__
|
2012-04-08 |
Mike Frysinger |
fix out-of-tree cleaning
|
2012-02-23 |
Matt Johnston |
Added signature for changeset 85f835f2fe0a
|
2012-02-23 |
Matt Johnston |
Added tag DROPBEAR_2012.55 for changeset d354464b2aa6
|
2012-02-23 |
Matt Johnston |
- Improve CHANGES description
DROPBEAR_2012.55
|
2012-02-22 |
Matt Johnston |
2012.55
|
2012-02-22 |
Matt Johnston |
- Fix minor leak
|
2012-02-22 |
Matt Johnston |
Fix accidentally committed change
|
2011-12-03 |
Matt Johnston |
- Initialise sa_mask properly
|
2012-02-21 |
Matt Johnston |
- Merge
|
2012-02-21 |
Matt Johnston |
- Make sure sa_mask is set
|
2012-02-21 |
Matt Johnston |
- Burn buffers to 0x00 instead
|
2011-12-03 |
Matt Johnston |
- Fix use-after-free if multiple command requests were sent. Move
|
2011-12-03 |
Matt Johnston |
- Remove unused variable/code
|
2011-12-03 |
Matt Johnston |
- Make sure we don't use channel-specific data after it has been freed
|
2011-12-03 |
Matt Johnston |
- Fix some format strings in TRACE()s
|
2011-12-03 |
Matt Johnston |
- We don't need to test for NULL before free()
|
2012-02-10 |
Matt Johnston |
Merge
|
2012-02-10 |
Matt Johnston |
Clear a few buffers when possible
|
2011-11-30 |
Matt Johnston |
- Fix constraints so we don't get warned about uninitialised
dropbear-tfm
|
2011-11-30 |
Matt Johnston |
- More asm constraint fixes. Now seems to build OK on 32-bit OS X.
dropbear-tfm
|
2011-11-30 |
Matt Johnston |
- Work around broken asm constraint behaviour on 32bit x86 OS X
dropbear-tfm
|
2011-11-23 |
Matt Johnston |
Somehow Makefile.in went missing
dropbear-tfm tomsfastmath
|
2011-11-23 |
Matt Johnston |
Add tomsfastmath from git rev bfa4582842bc3bab42e4be4aed5703437049502a
dropbear-tfm
|
2011-11-22 |
Matt Johnston |
A few build fixes
dropbear-tfm
|
2011-11-21 |
Matt Johnston |
- Update tfm changes to current default tip
dropbear-tfm
|
2011-11-21 |
Matt Johnston |
- Bring in original tomsfastmath patch against 0.52 from Peter Turczak
dropbear-tfm
|
2011-11-10 |
Matt Johnston |
Put better #if guards around IPv6 socket options for IPV6_TCLASS and
|
2011-11-08 |
Matt Johnston |
Added signature for changeset 3f12086c2ef2
|
2011-11-08 |
Matt Johnston |
Added tag DROPBEAR_2011.54 for changeset 3f12086c2ef2
|
2011-11-08 |
Matt Johnston |
Changelog and version bump for 2011.54
DROPBEAR_2011.54
|
2011-11-08 |
Matt Johnston |
Fix symlink target created by installdropbearmulti
|
2011-11-07 |
Matt Johnston |
Added signature for changeset aa2f51a6b81d
|
2011-11-07 |
Matt Johnston |
Use "uint64_t" instead of "u_int64_t" since the Solaris doesn't have the
|
2011-11-06 |
Matt Johnston |
Fix crash with -R forwarding
|
2011-11-05 |
Matt Johnston |
Print the server allocated port when using dbclient -R 0:....
|
2011-11-03 |
convert-repo |
update tags
|
2011-10-26 |
Matt Johnston |
Set IPTOS_LOWDELAY for IPv6 too
|
2011-10-26 |
Matt Johnston |
- Add ALLOW_BLANK_PASSWORD option
|
2011-10-20 |
Matt Johnston |
Try bind IPV6_V6ONLY
|
2011-07-05 |
Matt Johnston |
list.c also has no trailing newline
|
2011-07-05 |
Matt Johnston |
Fix lost ending newline
|
2011-06-30 |
Matt Johnston |
Hopefully fix -lcrypt problem
|
2011-06-07 |
Matt Johnston |
Fix case where "-K 1" would cause a SSH_MSG_IGNORE packet to be sent
|
2011-06-07 |
Matt Johnston |
Mention that the value is in seconds
|
2011-04-07 |
Matt Johnston |
Clean up leaked FD if getnameinfo fails. From Klocwork
|
2011-04-07 |
Matt Johnston |
Fix crash when remote forwarding was requested
|
2011-04-07 |
Matt Johnston |
Fix leak found by Klocwork
|
2011-04-07 |
Matt Johnston |
Properly fix the bug found years ago by Klocwork, refound again.
|
2011-04-07 |
Matt Johnston |
Clean up fd on failure. Found by Klocwork
|
2011-04-07 |
Matt Johnston |
Define LTC_NO_FILE to avoid hmac_file() etc
|
2011-04-07 |
Matt Johnston |
Fix FD leak if connect() fails, found by Klocwork
|
2011-04-07 |
Matt Johnston |
Add noreturn and format attribute hints for some functions.
|
2011-04-07 |
Matt Johnston |
Fix memory leak found by Klocwork
|
2011-04-07 |
Matt Johnston |
Tidy error handling and get rid of some commented out code
|