log

age author description
Sun, 28 Apr 2013 23:17:43 +0800 Matt Johnston more ecdsa signkey work, not correct ecc
Sun, 14 Apr 2013 00:50:03 +0800 Matt Johnston A bit of work on ecdsa for host/auth keys ecc
Mon, 13 May 2013 21:06:35 +0800 Matt Johnston Update config.guess and config.sub
Wed, 08 May 2013 23:23:14 +0800 Matt Johnston Limit decompressed size
Mon, 29 Apr 2013 23:42:37 +0800 Matt Johnston Avoid segfault for locked accounts (invalid salt to crypt())
Thu, 18 Apr 2013 23:15:17 +0800 Matt Johnston Save with utf8 encoding
Thu, 18 Apr 2013 23:10:24 +0800 Matt Johnston Added signature for changeset f168962bab85
Thu, 18 Apr 2013 23:10:19 +0800 Matt Johnston Added tag DROPBEAR_2013.58 for changeset e76614145aea
Thu, 18 Apr 2013 22:57:47 +0800 Matt Johnston 2013.58 DROPBEAR_2013.58
Thu, 18 Apr 2013 21:47:38 +0800 Matt Johnston Don't enable CLI_IMMEDIATE_AUTH by default, it breaks blank password logins
Wed, 17 Apr 2013 23:17:27 +0800 Matt Johnston Use % rather than # for port delimiter
Wed, 17 Apr 2013 22:48:43 +0800 Matt Johnston Use '#' for host#port separator, document it. This fixes scp
Wed, 17 Apr 2013 22:29:18 +0800 Matt Johnston If running as non-root only allow that user to log in
Tue, 16 Apr 2013 22:16:32 +0800 Matt Johnston Fix build when zlib is disabled, from
Mon, 15 Apr 2013 22:11:11 +0800 Matt Johnston Added signature for changeset 095b46180bbc
Mon, 15 Apr 2013 22:10:49 +0800 Matt Johnston Added tag DROPBEAR_2013.57 for changeset 96b8bcb88017
Mon, 15 Apr 2013 22:01:41 +0800 Matt Johnston Fix error message for requirenext change DROPBEAR_2013.57
Mon, 15 Apr 2013 21:56:04 +0800 Matt Johnston bump version to 2013.57
Mon, 15 Apr 2013 21:51:27 +0800 Matt Johnston changelog updates for 2013.57
Sun, 14 Apr 2013 23:16:16 +0800 Matt Johnston requirenext fixup for firstkexfollows
Sun, 14 Apr 2013 23:08:57 +0800 Matt Johnston Document escape chars
Sun, 14 Apr 2013 22:49:19 +0800 Matt Johnston merge
Sun, 14 Apr 2013 22:49:10 +0800 Matt Johnston -y -y to disable hostkey checking
Thu, 11 Apr 2013 23:03:58 +0800 Matt Johnston Fix zlib for split newkeys
Wed, 10 Apr 2013 21:32:55 +0800 Matt Johnston run closehandlers on cleanup
Wed, 10 Apr 2013 21:32:44 +0800 Matt Johnston reset terminal modes before printing a message
Tue, 09 Apr 2013 22:47:03 +0800 Matt Johnston A bit of debugging output ecc
Tue, 09 Apr 2013 22:44:19 +0800 Matt Johnston Be safer with how we handle ltc_ecc_sets[] (particularly with ecc
Tue, 09 Apr 2013 00:36:04 +0800 Matt Johnston start on ecdsa keys ecc
Mon, 08 Apr 2013 23:56:31 +0800 Matt Johnston - Rename buf_put_ecc_pubkey_string() to buf_put_ecc_raw_pubkey_string() ecc
Mon, 08 Apr 2013 23:12:35 +0800 Matt Johnston add printmpint() for debugging ecc
Mon, 08 Apr 2013 23:12:20 +0800 Matt Johnston ecdh works against OpenSSH ecc
Mon, 08 Apr 2013 00:10:57 +0800 Matt Johnston - Fix various hardcoded uses of SHA1 ecc
Sun, 07 Apr 2013 01:36:42 +0800 Matt Johnston ecc kind of works, needs fixing/testing ecc
Sat, 06 Apr 2013 16:00:37 +0800 Matt Johnston Make _sign and _verify functions take a buffer* rather than void* and int ecc
Fri, 29 Mar 2013 00:28:09 +0800 Matt Johnston More changes for KEX and ECDH. Set up hash descriptors, make ECC code work, ecc
Fri, 29 Mar 2013 00:26:46 +0800 Matt Johnston Set LTC_SOURCE for proper ltm_desc etc ecc
Wed, 27 Mar 2013 23:50:52 +0800 Matt Johnston ecc key import function ecc
Wed, 27 Mar 2013 00:38:03 +0800 Matt Johnston more bits on ecc branch ecc
Tue, 26 Mar 2013 01:35:22 +0800 Matt Johnston refactor kexdh code a bit, start working on ecdh etc ecc
Thu, 04 Apr 2013 07:51:13 +0800 Matt Johnston setup tcp after requesting a channel - might hide some DNS latency
Thu, 04 Apr 2013 00:18:50 +0800 Matt Johnston Take transmit and receive keys into use separately
Wed, 03 Apr 2013 23:54:58 +0800 Matt Johnston Fix MAC bug which would prevent asymmetric hashes
Wed, 03 Apr 2013 19:23:53 +0800 Matt Johnston Just put the version string on the queue, don't use atomicio
Wed, 03 Apr 2013 07:34:18 +0800 Matt Johnston fix leftover kexguess debugging
Wed, 03 Apr 2013 07:33:47 +0800 Matt Johnston Fix a few options and headers
Wed, 03 Apr 2013 00:50:46 +0800 Matt Johnston merge
Wed, 03 Apr 2013 00:49:24 +0800 Matt Johnston merge kexguess branch
Wed, 03 Apr 2013 00:43:31 +0800 Matt Johnston Put some #ifdef options around first-follows options in case they kexguess
Wed, 03 Apr 2013 00:32:55 +0800 Matt Johnston Don't usually need to recalculate dh_e for the repeated kexdh_init packet kexguess
Wed, 03 Apr 2013 00:32:05 +0800 Matt Johnston Add sentinel attribute kexguess
Mon, 01 Apr 2013 00:13:41 +0800 Matt Johnston merge from head roundtrip changes kexguess
Sun, 31 Mar 2013 00:41:15 +0800 Matt Johnston merge kexguess
Sat, 30 Mar 2013 23:55:05 +0800 Matt Johnston Get rid of client/server specific buf_match_algo, use single kexguess
Fri, 29 Mar 2013 23:29:48 +0800 Matt Johnston Add kexguess2 behaviour kexguess
Fri, 29 Mar 2013 20:44:13 +0800 Matt Johnston first_kex_packet_follows working, needs tidying kexguess
Tue, 02 Apr 2013 19:11:13 +0800 Matt Johnston add IUTF8
Tue, 02 Apr 2013 18:59:00 +0800 Matt Johnston fix tabs
Tue, 02 Apr 2013 18:54:04 +0800 Matt Johnston merge
Tue, 02 Apr 2013 18:53:18 +0800 Matt Johnston Fix segfault when /dev/urandom isn't writable
Tue, 02 Apr 2013 00:11:53 +0800 Matt Johnston Be a bit more careful about when we want to use CLI_AUTH_IMMEDIATE
Mon, 01 Apr 2013 22:26:55 +0800 Matt Johnston Run the cleanup handler also when we close due to TCP connection being closed
Mon, 01 Apr 2013 22:26:24 +0800 Matt Johnston Try password before interactive - bit of a hack
Mon, 01 Apr 2013 00:07:26 +0800 Matt Johnston Move the more verbose TRACE() statements into TRACE2()
Sun, 31 Mar 2013 23:48:25 +0800 Matt Johnston Send an auth packet straight away, save another roundtrip
Sun, 31 Mar 2013 23:29:03 +0800 Matt Johnston Fix incorrect logic for USE_VFORK and calling arg_setup()
Sun, 31 Mar 2013 23:15:35 +0800 Matt Johnston Try using writev() for writing packets out to tcp
Sun, 31 Mar 2013 21:38:17 +0800 Matt Johnston Don't bother waiting for a ssh-connection service reply - the server
Sun, 31 Mar 2013 00:40:00 +0800 Matt Johnston send out our kexinit packet before blocking to read the SSH version string
Sun, 24 Mar 2013 00:02:20 +0800 Matt Johnston Define _GNU_SOURCE for vasprintf
Sun, 24 Mar 2013 00:00:39 +0800 Mike Frysinger rename configure.in -> configure.ac
Sat, 23 Mar 2013 23:17:01 +0800 Matt Johnston Fix a few compile warnings
Sat, 23 Mar 2013 23:16:06 +0800 Matt Johnston Add ~. and ~^Z handling to exit/suspend dbclient
Thu, 21 Mar 2013 23:35:07 +0800 Matt Johnston Added signature for changeset 9b80981212fe
Thu, 21 Mar 2013 23:33:12 +0800 Matt Johnston Added tag DROPBEAR_2013.56 for changeset 1b8b2b9d6e94
Thu, 21 Mar 2013 23:29:04 +0800 Matt Johnston Forgot date in CHANGES DROPBEAR_2013.56
Thu, 21 Mar 2013 23:19:06 +0800 Matt Johnston 2013.56 changelog
Thu, 21 Mar 2013 23:11:16 +0800 Matt Johnston update text about authorized_keys options
Thu, 21 Mar 2013 23:10:47 +0800 Matt Johnston Add URL to usage text
Thu, 21 Mar 2013 22:55:12 +0800 Matt Johnston Make hmac-sha2-256 and hmac-sha2-512 work
Thu, 21 Mar 2013 21:23:34 +0800 Matt Johnston Make sure "struct timeval" is initialised on OS X to avoid valgrind warnings
Wed, 20 Mar 2013 23:52:49 +0800 Matt Johnston Fix "-c none" so that it allows aes during authentication
Wed, 20 Mar 2013 23:13:45 +0800 Matt Johnston Fix "-m none" case and ugly typo
Wed, 20 Mar 2013 23:13:19 +0800 Matt Johnston Fix "-m none" case where an entire packet fits in a block and can be
Wed, 20 Mar 2013 22:41:07 +0800 Matt Johnston Merge "none" cipher/MAC branch. Also adds sha256 and sha512
Wed, 20 Mar 2013 22:31:07 +0800 Matt Johnston use an empty writebuf rather than a NULL one
Wed, 20 Mar 2013 00:05:19 +0800 Matt Johnston document a few more changes
Tue, 19 Mar 2013 23:54:32 +0800 Matt Johnston Fix memory leak when direct TCP connections time out on connection.
Tue, 19 Mar 2013 20:55:11 +0800 Matt Johnston Allow specifying server "-p" options with ipv6 bracket notation,
Tue, 19 Mar 2013 20:15:44 +0800 Matt Johnston Android returns NULL for pw_crypt, set it to something else
Tue, 19 Mar 2013 20:12:19 +0800 Matt Johnston ignore I_PUSH if it isn't defined, for Android from Reimar Döffinger
Tue, 19 Mar 2013 20:04:55 +0800 Matt Johnston Fix compat basename() to handle paths with no slashes. Thanks to Frank Teo
Tue, 19 Mar 2013 19:47:29 +0800 Matt Johnston Include /proc/vmstat as another random source
Tue, 19 Mar 2013 19:43:47 +0800 Matt Johnston link to Dropbear webpage
Tue, 19 Mar 2013 19:26:54 +0800 Matt Johnston Removed tag t:ltc-0.95-db-merge1
Tue, 19 Mar 2013 19:26:46 +0800 Matt Johnston Removed tag t:ltc-0.95-orig
Mon, 11 Mar 2013 23:07:45 +0800 Matt Johnston fix signedness error in prototype
Sun, 03 Mar 2013 11:47:41 +0800 Matt Johnston improve subsystem/sftp documentation, and multi-hop manual formatting
Sun, 24 Feb 2013 00:16:02 +0800 Matt Johnston fix typo
Sat, 23 Feb 2013 17:55:46 +0800 Matt Johnston DSS_PROTOK is not necessary now that private keys are included
Sat, 23 Feb 2013 10:27:49 +0800 Matt Johnston add loadavg and entropy_avail as sources
Fri, 29 Jun 2012 23:24:39 +0800 Matt Johnston increase MAX_MAC_LEN for sha2 sha2
Tue, 12 Feb 2013 15:52:57 +0000 Paul Eggleton Allow configuring "allow blank password option" at runtime
Fri, 22 Feb 2013 23:54:47 +0800 Matt Johnston Some changes since 2012.55
Fri, 22 Feb 2013 23:53:49 +0800 Matt Johnston Document "-m" and "-c"
Thu, 19 Jul 2012 21:34:27 +0800 Matt Johnston /dev/random blocks on busy servers too.
Sat, 30 Jun 2012 22:12:28 +0800 Matt Johnston Add a few more files in /proc for Linux
Fri, 29 Jun 2012 23:19:43 +0800 Matt Johnston Improve RNG seeding.
Thu, 17 May 2012 20:52:57 +0800 Matt Johnston - Only request "none" cipher after auth has succeeded insecure-nocrypto
Thu, 17 May 2012 08:33:11 +0800 Matt Johnston Add ALLOW_NONE_PASSWORD_AUTH option insecure-nocrypto
Thu, 17 May 2012 08:09:19 +0800 Matt Johnston Merge in "-m"/"-c" code insecure-nocrypto
Thu, 17 May 2012 00:26:12 +0800 Matt Johnston ENABLE_USER_ALGO_LIST should work for the client
Thu, 17 May 2012 00:12:42 +0800 Matt Johnston Add rough support for choosing ciphers/hashes with "-c" or "-m"
Wed, 16 May 2012 22:54:51 +0800 Matt Johnston Update insecure-nocrypto to current head insecure-nocrypto
Wed, 16 May 2012 21:56:50 +0800 Matt Johnston Disable SHA256 and SHA512 by default in options.h sha2
Thu, 10 May 2012 08:38:37 +0800 Matt Johnston - Add hmac-sha2-256 and hmac-sha2-512. Needs debugging, seems to be sha2
Wed, 09 May 2012 22:52:58 +0800 Matt Johnston Don't TRACE() the pw_passwd
Wed, 09 May 2012 22:51:59 +0800 Matt Johnston Fix empty password immediate login
Wed, 09 May 2012 22:37:04 +0800 Matt Johnston Return immediate success for blank passwords if allowed
Wed, 09 May 2012 21:09:34 +0800 Matt Johnston Server shouldn't return "localhost" in response to -R forward connections
Wed, 09 May 2012 20:34:55 +0800 Matt Johnston Initialise agent_fd to -1 so we don't end up closing stdin (fd 0)
Wed, 09 May 2012 20:33:16 +0800 Matt Johnston - Don't sent SSH_MSG_UNIMPLEMENTED if we don't have ENABLE_SVR_REMOTETCPFWD
Tue, 24 Apr 2012 22:05:55 +0800 Matt Johnston Ignore -q if SCP_PROGRESS isn't set
Thu, 12 Apr 2012 22:04:16 +0800 Matt Johnston Split listening port argument at the rightmost colon, allows binding to
Thu, 12 Apr 2012 21:57:30 +0800 Matt Johnston Improve comment about sha1-96
Mon, 09 Apr 2012 21:29:41 +0800 Matt Johnston Slight formatting change for ENABLE_CLI_AGENTFWD if statement
Mon, 26 Mar 2012 16:17:16 +0400 Andrey Mazo Fixed compilation with unset ENABLE_{SVR,CLI}_AGENTFWD.
Mon, 09 Apr 2012 20:35:13 +0800 Matt Johnston Rename HAVE_FORK to USE_VFORK
Sun, 08 Apr 2012 01:50:52 -0400 Mike Frysinger check for fork() and not __uClinux__
Sun, 08 Apr 2012 02:06:54 -0400 Mike Frysinger fix out-of-tree cleaning
Thu, 23 Feb 2012 21:46:02 +0800 Matt Johnston Added signature for changeset 85f835f2fe0a
Thu, 23 Feb 2012 21:45:42 +0800 Matt Johnston Added tag DROPBEAR_2012.55 for changeset d354464b2aa6
Thu, 23 Feb 2012 21:45:36 +0800 Matt Johnston - Improve CHANGES description DROPBEAR_2012.55
Wed, 22 Feb 2012 22:12:15 +0800 Matt Johnston 2012.55
Wed, 22 Feb 2012 22:05:24 +0800 Matt Johnston - Fix minor leak
Wed, 22 Feb 2012 19:33:07 +0800 Matt Johnston Fix accidentally committed change
Sun, 04 Dec 2011 05:41:46 +0800 Matt Johnston - Initialise sa_mask properly
Tue, 21 Feb 2012 23:00:30 +0800 Matt Johnston - Merge
Tue, 21 Feb 2012 22:57:19 +0800 Matt Johnston - Make sure sa_mask is set
Tue, 21 Feb 2012 22:56:45 +0800 Matt Johnston - Burn buffers to 0x00 instead
Sun, 04 Dec 2011 05:31:25 +0800 Matt Johnston - Fix use-after-free if multiple command requests were sent. Move
Sun, 04 Dec 2011 05:27:57 +0800 Matt Johnston - Remove unused variable/code
Sun, 04 Dec 2011 05:27:29 +0800 Matt Johnston - Make sure we don't use channel-specific data after it has been freed
Sun, 04 Dec 2011 05:24:50 +0800 Matt Johnston - Fix some format strings in TRACE()s
Sun, 04 Dec 2011 05:23:43 +0800 Matt Johnston - We don't need to test for NULL before free()
Fri, 10 Feb 2012 19:09:52 +0800 Matt Johnston Merge
Fri, 10 Feb 2012 18:32:18 +0800 Matt Johnston Clear a few buffers when possible
Wed, 30 Nov 2011 23:15:21 +0800 Matt Johnston - Fix constraints so we don't get warned about uninitialised dropbear-tfm
Wed, 30 Nov 2011 23:03:47 +0800 Matt Johnston - More asm constraint fixes. Now seems to build OK on 32-bit OS X. dropbear-tfm
Wed, 30 Nov 2011 22:27:26 +0800 Matt Johnston - Work around broken asm constraint behaviour on 32bit x86 OS X dropbear-tfm
Wed, 23 Nov 2011 18:11:51 +0700 Matt Johnston Somehow Makefile.in went missing dropbear-tfm tomsfastmath
Wed, 23 Nov 2011 18:10:20 +0700 Matt Johnston Add tomsfastmath from git rev bfa4582842bc3bab42e4be4aed5703437049502a dropbear-tfm
Tue, 22 Nov 2011 19:28:58 +0700 Matt Johnston A few build fixes dropbear-tfm
Mon, 21 Nov 2011 19:52:28 +0800 Matt Johnston - Update tfm changes to current default tip dropbear-tfm
Mon, 21 Nov 2011 19:19:57 +0800 Matt Johnston - Bring in original tomsfastmath patch against 0.52 from Peter Turczak dropbear-tfm
Thu, 10 Nov 2011 18:17:00 +0800 Matt Johnston Put better #if guards around IPv6 socket options for IPV6_TCLASS and
Tue, 08 Nov 2011 21:06:29 +0800 Matt Johnston Added signature for changeset 3f12086c2ef2
Tue, 08 Nov 2011 21:06:01 +0800 Matt Johnston Added tag DROPBEAR_2011.54 for changeset 3f12086c2ef2
Tue, 08 Nov 2011 20:48:15 +0800 Matt Johnston Changelog and version bump for 2011.54 DROPBEAR_2011.54
Tue, 08 Nov 2011 20:33:19 +0800 Matt Johnston Fix symlink target created by installdropbearmulti
Tue, 08 Nov 2011 00:01:47 +0800 Matt Johnston Added signature for changeset aa2f51a6b81d
Mon, 07 Nov 2011 19:31:53 +0800 Matt Johnston Use "uint64_t" instead of "u_int64_t" since the Solaris doesn't have the
Sun, 06 Nov 2011 20:22:34 +0800 Matt Johnston Fix crash with -R forwarding
Sat, 05 Nov 2011 23:12:15 +0800 Matt Johnston Print the server allocated port when using dbclient -R 0:....
Thu, 03 Nov 2011 07:18:37 +0000 convert-repo update tags
Wed, 26 Oct 2011 16:02:06 +0000 Matt Johnston Set IPTOS_LOWDELAY for IPv6 too
Wed, 26 Oct 2011 15:49:47 +0000 Matt Johnston - Add ALLOW_BLANK_PASSWORD option
Thu, 20 Oct 2011 13:45:43 +0000 Matt Johnston Try bind IPV6_V6ONLY
Tue, 05 Jul 2011 12:52:06 +0000 Matt Johnston list.c also has no trailing newline
Tue, 05 Jul 2011 12:50:15 +0000 Matt Johnston Fix lost ending newline
Thu, 30 Jun 2011 14:34:32 +0000 Matt Johnston Hopefully fix -lcrypt problem
Tue, 07 Jun 2011 11:55:44 +0000 Matt Johnston Fix case where "-K 1" would cause a SSH_MSG_IGNORE packet to be sent
Tue, 07 Jun 2011 11:08:47 +0000 Matt Johnston Mention that the value is in seconds
Thu, 07 Apr 2011 13:52:43 +0000 Matt Johnston Clean up leaked FD if getnameinfo fails. From Klocwork
Thu, 07 Apr 2011 13:39:10 +0000 Matt Johnston Fix crash when remote forwarding was requested
Thu, 07 Apr 2011 13:38:27 +0000 Matt Johnston Fix leak found by Klocwork
Thu, 07 Apr 2011 13:33:26 +0000 Matt Johnston Properly fix the bug found years ago by Klocwork, refound again.
Thu, 07 Apr 2011 13:25:00 +0000 Matt Johnston Clean up fd on failure. Found by Klocwork
Thu, 07 Apr 2011 13:24:41 +0000 Matt Johnston Define LTC_NO_FILE to avoid hmac_file() etc
Thu, 07 Apr 2011 13:05:10 +0000 Matt Johnston Fix FD leak if connect() fails, found by Klocwork
Thu, 07 Apr 2011 12:59:18 +0000 Matt Johnston Add noreturn and format attribute hints for some functions.
Thu, 07 Apr 2011 12:34:44 +0000 Matt Johnston Fix memory leak found by Klocwork
Thu, 07 Apr 2011 12:30:20 +0000 Matt Johnston Tidy error handling and get rid of some commented out code
Thu, 07 Apr 2011 11:18:35 +0000 Matt Johnston Change comparison to be more paranoid (and perhaps avoid Klocwork false
Thu, 07 Apr 2011 11:14:22 +0000 Matt Johnston Fix check of wrong variable found by Klocwork
Thu, 31 Mar 2011 14:42:11 +0000 Matt Johnston Avoid segfault when handling childpid race
Fri, 18 Mar 2011 14:31:07 +0000 Matt Johnston Use mp_init_size() to avoid some mp_grow()s
Wed, 02 Mar 2011 13:23:27 +0000 Matt Johnston Update changelog for 0.53.1 DROPBEAR_0.53.1
Mon, 28 Feb 2011 13:51:34 +0000 Matt Johnston merge of '8a608f0ed5e4b491dba4bf330e560636ec7376fd'
Mon, 28 Feb 2011 13:51:27 +0000 Matt Johnston - Don't allow setting memLevel since that doesn't work properly
Mon, 28 Feb 2011 13:39:18 +0000 Matt Johnston Compile fix for when both client and server agent forwarding is disabled
Sun, 27 Feb 2011 13:57:32 +0000 Matt Johnston Refer to RFCs rather than drafts, update some section references