OpenBSD CVS

src/usr.bin/ssh/


Click on a directory to enter that directory. Click on a file to display its revision history and to get a chance to display diffs between revisions.

Current directory: [local] / src / usr.bin / ssh

Current tag: OPENBSD_7_2


File Rev. Age Author Last log entry
[BACK] Parent Directory        
[DIR] lib/        
[DIR] moduli-gen/        
[DIR] scard/        
[DIR] scp/        
[DIR] sftp/        
[DIR] sftp-server/        
[DIR] ssh/        
[DIR] ssh-add/        
[DIR] ssh-agent/        
[DIR] ssh-keygen/        
[DIR] ssh-keyscan/        
[DIR] ssh-keysign/        
[DIR] ssh-pkcs11-helper/        
[DIR] ssh-sk-helper/        
[DIR] sshd/        
[DIR] sshd-session/        
[TXT] LICENCE  1.20   7 years  djm   remove the (in)famous SSHv1 CRC compensation attack detector. Despite your came...
[TXT] Makefile  1.17   4 years  djm   ssh-agent support for U2F/FIDO keys feedback & ok markus@
[TXT] Makefile.inc  1.87   3 years  dtucker   Move address handling functions out into their own file in order to reuse them f...
[TXT] OVERVIEW  1.15   5 years  djm   refer to OpenSSL not SSLeay; we're old, but we don't have to act it
[TXT] PROTOCOL  1.47   19 months  djm   sftp-server(8): add a "users-groups-by-id@openssh.com" extension request that al...
[TXT] PROTOCOL.agent  1.18   19 months  dtucker   Fix typo. From AlexanderStohr via github PR#343.
[TXT] PROTOCOL.certkeys  1.19   2 years  naddy   PROTOCOL.certkeys: update reference from IETF draft to RFC Also fix some typos....
[TXT] PROTOCOL.chacha20poly1305  1.5   4 years  dtucker   Fix some typos and an incorrect word in docs. Patch from itoama at live.jp via g...
[TXT] PROTOCOL.key  1.3   22 months  djm   use consistent field names (s/char/byte) in format description
[TXT] PROTOCOL.krl  1.5   5 years  djm   allow key revocation by SHA256 hash and allow ssh-keygen to create KRLs using SH...
[TXT] PROTOCOL.mux  1.13   2 years  jsg   spelling ok dtucker@
[TXT] PROTOCOL.sshsig  1.4   3 years  djm   Add RCS IDs to the few files that are missing them; from Pedro Martelletto
[TXT] PROTOCOL.u2f  1.26   3 years  djm   when writing an attestation blob for a FIDO key, record all the data needed to v...
[TXT] README  1.7   18 years  djm   $OpenBSD$ in here too
[TXT] addr.c  1.5   2 years  djm   be stricter in which characters will be accepted in specifying a mask length; al...
[TXT] addr.h  1.1   3 years  dtucker   Move address handling functions out into their own file in order to reuse them f...
[TXT] addrmatch.c  1.17   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] atomicio.c  1.30   5 years  dtucker   Check for both EAGAIN and EWOULDBLOCK. This is a no-op in OpenBSD (they are the...
[TXT] atomicio.h  1.12   5 years  djm   move client/server SSH-* banners to buffers under ssh->kex and factor out the ba...
[TXT] auth-bsdauth.c  1.15   5 years  markus   sshd: switch authentication to sshbuf API; ok djm@
[TXT] auth-krb5.c  1.24   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] auth-options.c  1.98   2 years  dtucker   Switch hpdelim interface to accept only ":" as delimiter. Historicallly, hpdeli...
[TXT] auth-options.h  1.31   2 years  djm   make authorized_keys environment="..." directives first-match-wins and more stri...
[TXT] auth-passwd.c  1.48   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] auth-rhosts.c  1.56   2 years  djm   free(3) wants stdlib.h
[TXT] auth.c  1.158   23 months  djm   move auth_openprincipals() and auth_openkeyfile() over to auth2-pubkeyfile.c too...
[TXT] auth.h  1.106   23 months  djm   make sure that UseDNS hostname lookup happens in the monitor and not in the pled...
[TXT] auth2-chall.c  1.54   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] auth2-gss.c  1.33   2 years  djm   prepare for multiple names for authmethods allow authentication methods to have...
[TXT] auth2-hostbased.c  1.50   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] auth2-kbdint.c  1.14   2 years  djm   prepare for multiple names for authmethods allow authentication methods to have...
[TXT] auth2-none.c  1.24   2 years  djm   prepare for multiple names for authmethods allow authentication methods to have...
[TXT] auth2-passwd.c  1.21   23 months  dtucker   f sshpkt functions fail, then password is not cleared with freezero. Uncondition...
[TXT] auth2-pubkey.c  1.117   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] auth2-pubkeyfile.c  1.3   22 months  djm   bump up loglevel from debug to info when unable to open authorized keys/principa...
[TXT] auth2.c  1.164   2 years  djm   avoid integer overflow of auth attempts (harmless, caught by monitor)
[TXT] authfd.c  1.130   2 years  dtucker   Add authfd path to debug output. ok markus@
[TXT] authfd.h  1.51   2 years  djm   ssh-add side of destination constraints Have ssh-add accept a list of "destinat...
[TXT] authfile.c  1.143   22 months  tobhe   Make sure not to fclose() the same fd twice in case of an error. ok dtucker@
[TXT] authfile.h  1.25   4 years  djm   factor out reading/writing sshbufs to dedicated functions; feedback and ok marku...
[TXT] bitmap.c  1.9   6 years  djm   add RCSIDs to these; they make syncing portable a bit easier
[TXT] bitmap.h  1.2   6 years  djm   add RCSIDs to these; they make syncing portable a bit easier
[TXT] canohost.c  1.75   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] canohost.h  1.12   8 years  djm   refactor canohost.c: move functions that cache results closer to the places that...
[TXT] chacha.c  1.1   10 years  djm   Add a new protocol 2 transport cipher "chacha20-poly1305@openssh.com" that combi...
[TXT] chacha.h  1.5   3 years  djm   whitespace (tab after space)
[TXT] channels.c  1.420   19 months  djm   better debugging for connect_next()
[TXT] channels.h  1.143   2 years  djm   channel_new no longer frees remote_name. So update the comment accordingly. As...
[TXT] cipher-aesctr.c  1.2   9 years  markus   remove unneeded includes, sync my copyright across files & whitespace; ok djm@
[TXT] cipher-aesctr.h  1.1   10 years  markus   re-add our own aesctr implementation; ok djm@
[TXT] cipher-chachapoly-libcrypto.c  1.1   4 years  djm   chacha20-poly1305 AEAD using libcrypto EVP_chacha20 Based on patch from Yuriy M...
[TXT] cipher-chachapoly.c  1.9   4 years  djm   make Chacha20-POLY1305 context struct opaque; ok tb@ as part of a larger diff at...
[TXT] cipher-chachapoly.h  1.5   4 years  djm   make Chacha20-POLY1305 context struct opaque; ok tb@ as part of a larger diff at...
[TXT] cipher.c  1.119   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] cipher.h  1.55   4 years  dtucker   Make zlib optional. This adds a "ZLIB" build time option that allows building w...
[TXT] cleanup.c  1.5   17 years  deraadt   almost entirely get rid of the culture of ".h files that include .h files" ok dj...
[TXT] clientloop.c  1.380   23 months  djm   Make SetEnv directives first-match-wins in both sshd_config and sshd_config; pre...
[TXT] clientloop.h  1.37   4 years  djm   make failures when establishing "Tunnel" forwarding terminate the connection whe...
[TXT] compat.c  1.120.4.1   15 months  bluhm   fix double-free caused by compat_kex_proposal(); bz3522 from djm@; by dtucker@; ...
[TXT] compat.h  1.57   2 years  djm   Client-side workaround for a bug in OpenSSH 7.4: this release allows RSA/SHA2 si...
[TXT] crypto_api.h  1.7   3 years  dtucker   Update the sntrup761 creation script and generated code: - remove unneeded head...
[TXT] dh.c  1.74   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] dh.h  1.19   3 years  dtucker   Add ModuliFile keyword to sshd_config to specify the location of the "moduli" fi...
[TXT] digest-libc.c  1.7   4 years  jsg   change explicit_bzero();free() to freezero() While freezero() returns early if ...
[TXT] digest-openssl.c  1.9   3 years  djm   whitespace; no code change
[TXT] digest.h  1.8   7 years  djm   remove hmac-ripemd160; ok dtucker
[TXT] dispatch.c  1.32   5 years  djm   allow sshpkt_fatal() to take a varargs format; we'll use this to give packet-rel...
[TXT] dispatch.h  1.15   5 years  djm   remove last traces of old packet API! with & ok markus@
[TXT] dns.c  1.42   2 years  djm   mark const string array contents const too, i.e. static const char *array => sta...
[TXT] dns.h  1.19   2 years  dtucker   Ensure that all returned SSHFP records for the specified host name and hostkey t...
[TXT] ed25519.c  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] fatal.c  1.11   3 years  djm   fix SEGV on fatal() errors spotted by dtucker@
[TXT] groupaccess.c  1.17   5 years  dtucker   Move checks for lists of users or groups into their own function. This is a no-o...
[TXT] groupaccess.h  1.8   15 years  djm   support negation of groups in "Match group" block (bz#1315); ok dtucker@
[TXT] gss-genr.c  1.28   3 years  djm   make ssh->kex->session_id a sshbuf instead of u_char*/size_t and use that instea...
[TXT] gss-serv-krb5.c  1.9   5 years  markus   sshd: switch GSSAPI to sshbuf API; ok djm@
[TXT] gss-serv.c  1.32   4 years  djm   spelling errors in comments; no code change from https://fossies.org/linux/misc/...
[TXT] hash.c  1.6   4 years  djm   perform hashing directly in crypto_hash_sha512() using libcrypto or libc SHA512 ...
[TXT] hmac.c  1.14   4 years  jsg   change explicit_bzero();free() to freezero() While freezero() returns early if ...
[TXT] hmac.h  1.9   9 years  djm   New key API: refactor key-related functions to be more library-like, existing AP...
[TXT] hostfile.c  1.93   2 years  djm   piece of UpdateHostkeys client strictification: when updating known_hosts with n...
[TXT] hostfile.h  1.29   3 years  djm   make struct hostkeys public; I have no idea why I made it opaque originally. ok...
[TXT] kex.c  1.172   2 years  djm   mark const string array contents const too, i.e. static const char *array => sta...
[TXT] kex.h  1.117   2 years  djm   Fix signature algorithm selection logic for UpdateHostkeys on the server side. T...
[TXT] kexc25519.c  1.17   5 years  djm   rename kex->kem_client_pub -> kex->client_pub now that KEM has been renamed to k...
[TXT] kexdh.c  1.34   3 years  djm   memleak of DH public bignum; found with libfuzzer
[TXT] kexecdh.c  1.10   5 years  djm   rename kex->kem_client_pub -> kex->client_pub now that KEM has been renamed to k...
[TXT] kexgen.c  1.8   2 years  djm   Record session ID, host key and sig at intital KEX These will be used later for...
[TXT] kexgex.c  1.32   5 years  djm   pass most arguments to the KEX hash functions as sshbuf rather than pointer+leng...
[TXT] kexgexc.c  1.38   2 years  djm   Record session ID, host key and sig at intital KEX These will be used later for...
[TXT] kexgexs.c  1.44   2 years  djm   Record session ID, host key and sig at intital KEX These will be used later for...
[TXT] kexsntrup761x25519.c  1.2   2 years  jsg   fix unintended sizeof pointer in debug path ok markus@
[TXT] krl.c  1.54   2 years  djm   avoid printing hash algorithm twice; from lucas AT sexy.is
[TXT] krl.h  1.8   4 years  djm   give ssh-keygen the ability to dump the contents of a binary key revocation list...
[TXT] log.c  1.60   2 years  djm   allow log_stderr==2 to prefix log messages with argv[0] use this to make scp's ...
[TXT] log.h  1.33   3 years  markus   do not pass file/func to monitor; noted by Ilja van Sprundel; ok djm@
[TXT] mac.c  1.35   4 years  djm   lots of things were relying on libcrypto headers to transitively include various...
[TXT] mac.h  1.10   7 years  djm   Improve crypto ordering for Encrypt-then-MAC (EtM) mode MAC algorithms. Previou...
[TXT] match.c  1.43   3 years  djm   fold consecutive '*' wildcards to mitigate combinatorial explosion of recursive ...
[TXT] match.h  1.20   3 years  djm   some language improvements; ok markus
[TXT] misc.c  1.177   21 months  djm   allow certificate validity intervals, sshsig verification times and authorized_...
[TXT] misc.h  1.100   23 months  djm   Make SetEnv directives first-match-wins in both sshd_config and sshd_config; pre...
[TXT] moduli.c  1.38   2 years  djm   fix some integer overflows in sieve_large() that show up when trying to generate...
[TXT] monitor.c  1.234   23 months  djm   make sure that UseDNS hostname lookup happens in the monitor and not in the pled...
[TXT] monitor.h  1.23   5 years  djm   remove last references to active_state with & ok markus@
[TXT] monitor_fdpass.c  1.22   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] monitor_fdpass.h  1.4   16 years  djm   make file descriptor passing code return an error rather than call fatal() when ...
[TXT] monitor_wrap.c  1.125   23 months  djm   make sure that UseDNS hostname lookup happens in the monitor and not in the pled...
[TXT] monitor_wrap.h  1.49   23 months  djm   make sure that UseDNS hostname lookup happens in the monitor and not in the pled...
[TXT] msg.c  1.20   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] msg.h  1.5   9 years  djm   sync ssh-keysign, ssh-keygen and some dependencies to the new buffer/key API; mo...
[TXT] mux.c  1.94   23 months  djm   Make SetEnv directives first-match-wins in both sshd_config and sshd_config; pre...
[TXT] myproposal.h  1.71   2 years  djm   select post-quantum KEX sntrup761x25519-sha512@openssh.com as the default; ok ma...
[TXT] nchan.c  1.74   2 years  djm   mark const string array contents const too, i.e. static const char *array => sta...
[TXT] nchan.ms  1.8   20 years  djm   unexpand and delete whitespace at EOL; ok markus@
[TXT] nchan2.ms  1.4   16 years  djm   document eow message in ssh protocol 2 channel state machine; feedback and ok ma...
[TXT] packet.c  1.308   20 months  djm   whitespace
[TXT] packet.h  1.94   2 years  djm   branches: 1.94.8; add a ssh_packet_process_read() function that reads from a fd...
[TXT] pathnames.h  1.31   4 years  markus   enable ed25519 support; ok djm
[TXT] pkcs11.h  1.3   10 years  deraadt   cleanup 1 << 31 idioms. Resurrection of this issue pointed out by Eitan Adler o...
[TXT] poly1305.c  1.3   10 years  djm   use full name for author, with his permission
[TXT] poly1305.h  1.4   10 years  djm   revert __bounded change; it causes way more problems for portable than it solves...
[TXT] progressmeter.c  1.50   4 years  dtucker   Replace all calls to signal(2) with a wrapper around sigaction(2). This wrapper ...
[TXT] progressmeter.h  1.5   5 years  dtucker   Have progressmeter force an update at the beginning and end of each transfer. F...
[TXT] readconf.c  1.369   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] readconf.h  1.148   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] readpass.c  1.70   23 months  dtucker   Avoid kill with -1 argument. The out_ctx label can be reached before fork has be...
[TXT] rijndael.c  1.20   9 years  djm   #if 0 some more arrays used only for decrypting (we don't use since we only need...
[TXT] rijndael.h  1.15   2 years  dtucker   Make prototype for rijndaelEncrypt match function including the bounds. Fixes er...
[TXT] sandbox-pledge.c  1.2   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] sandbox-rlimit.c  1.5   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] scp.1  1.110   19 months  djm   add RequiredRSASize to the list of keywords accepted by -o; spotted by jmc@
[TXT] scp.c  1.248   2 years  djm   arrange for scp, when in sftp mode, to not ftruncate(3) files early previous be...
[TXT] servconf.c  1.386   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] servconf.h  1.157   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] serverloop.c  1.232   2 years  djm   Try to continue running local I/O for channels in state OPEN during SSH transpor...
[TXT] serverloop.h  1.8   6 years  djm   refactor channels.c Move static state to a "struct ssh_channels" that is alloca...
[TXT] session.c  1.330   2 years  dtucker   Switch hpdelim interface to accept only ":" as delimiter. Historicallly, hpdeli...
[TXT] session.h  1.36   5 years  djm   Add server support for signalling sessions via the SSH channel/ session protocol...
[TXT] sftp-client.c  1.165   19 months  djm   sftp client library support for users-groups-by-id@openssh.com; ok markus@
[TXT] sftp-client.h  1.38   19 months  djm   sftp client library support for users-groups-by-id@openssh.com; ok markus@
[TXT] sftp-common.c  1.33   19 months  djm   extend sftp-common.c:extend ls_file() to support supplied user/group names; ok m...
[TXT] sftp-common.h  1.13   19 months  djm   extend sftp-common.c:extend ls_file() to support supplied user/group names; ok m...
[TXT] sftp-glob.c  1.30   2 years  dtucker   Remove the char * casts from arguments to do_lstat, do_readdir and do_stat paths...
[TXT] sftp-realpath.c  1.2   2 years  deraadt   sys/param.h is not needed for any visible reason
[TXT] sftp-server-main.c  1.6   4 years  otto   Replace calls to ssh_malloc_init() by a static init of malloc_options. Prepares ...
[TXT] sftp-server.8  1.31   2 years  jmc   standardise the grammar in the options list; issue reported by debian at helgefj...
[TXT] sftp-server.c  1.144   19 months  djm   extend sftp-common.c:extend ls_file() to support supplied user/group names; ok m...
[TXT] sftp-usergroup.c  1.1   19 months  djm   use users-groups-by-id@openssh.com sftp-server extension (when available) to fil...
[TXT] sftp-usergroup.h  1.1   19 months  djm   use users-groups-by-id@openssh.com sftp-server extension (when available) to fil...
[TXT] sftp.1  1.142   19 months  djm   add RequiredRSASize to the list of keywords accepted by -o; spotted by jmc@
[TXT] sftp.c  1.222   19 months  djm   use users-groups-by-id@openssh.com sftp-server extension (when available) to fil...
[TXT] sftp.h  1.9   15 years  dtucker   replace __dead with __attribute__((noreturn)), makes things a little easier to p...
[TXT] sk-api.h  1.15   21 months  djm   when enrolling a resident key on a security token, check if a credential with ma...
[TXT] sk-usbhid.c  1.45   20 months  djm   sk_enroll: never drop SSH_SK_USER_VERIFICATION_REQD flag from response Now that...
[TXT] smult_curve25519_ref.c  1.2   10 years  markus   add missing $OpenBSD$ tags
[TXT] sntrup761.c  1.5   3 years  dtucker   Update the sntrup761 creation script and generated code: - remove unneeded head...
[TXT] sntrup761.sh  1.5   3 years  dtucker   Update the sntrup761 creation script and generated code: - remove unneeded head...
[TXT] srclimit.c  1.2   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] srclimit.h  1.1   3 years  dtucker   Add PerSourceMaxStartups and PerSourceNetBlockSize options which provide more fi...
[TXT] ssh-add.1  1.84   2 years  dtucker   Since they are deprecated, move DSA to the end of the default list of public key...
[TXT] ssh-add.c  1.166   22 months  dtucker   Don't attempt to fprintf a null identity comment. From Martin Vahlensieck via t...
[TXT] ssh-agent.1  1.73.6.1   9 months  bluhm   Disallow remote addition of FIDO/PKCS11 provider libraries to ssh-agent by defau...
[TXT] ssh-agent.c  1.292.4.1   9 months  bluhm   Disallow remote addition of FIDO/PKCS11 provider libraries to ssh-agent by defau...
[TXT] ssh-dss.c  1.39   4 years  jsg   change explicit_bzero();free() to freezero() While freezero() returns early if ...
[TXT] ssh-ecdsa-sk.c  1.8   3 years  djm   some clarifying comments
[TXT] ssh-ecdsa.c  1.16   5 years  djm   Make sshpkt_get_bignum2() allocate the bignum it is parsing rather than make the...
[TXT] ssh-ed25519-sk.c  1.6   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] ssh-ed25519.c  1.10   20 months  djm   whitespace
[TXT] ssh-gss.h  1.15   3 years  djm   make ssh->kex->session_id a sshbuf instead of u_char*/size_t and use that instea...
[TXT] ssh-keygen.1  1.226   20 months  jsg   fix repeated words ok miod@ jmc@
[TXT] ssh-keygen.c  1.459   21 months  djm   allow certificate validity intervals, sshsig verification times and authorized_...
[TXT] ssh-keyscan.1  1.46   23 months  dtucker   Add missing *-sk types to ssh-keyscan manpage. From skazi0 via github PR#294.
[TXT] ssh-keyscan.c  1.146   20 months  dtucker   Strictly enforce the maximum allowed SSH2 banner size in ssh-keyscan and prevent...
[TXT] ssh-keysign.8  1.17   2 years  naddy   man pages: add missing commas between subordinate and main clauses jmc@ dislike...
[TXT] ssh-keysign.c  1.71   21 months  djm   avoid double-free in error path introduced in r1.70; report and fix based on GHP...
[TXT] ssh-pkcs11-client.c  1.17   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] ssh-pkcs11-helper.8  1.7   2 years  djm   mention that the helpers are used by ssh(1), ssh-agent(1) and ssh-keygen(1). Pre...
[TXT] ssh-pkcs11-helper.c  1.26   2 years  djm   check for POLLHUP wherever we check for POLLIN
[TXT] ssh-pkcs11.c  1.55.6.1   9 months  bluhm   Disallow remote addition of FIDO/PKCS11 provider libraries to ssh-agent by defau...
[TXT] ssh-pkcs11.h  1.6   4 years  djm   expose PKCS#11 key labels/X.509 subjects as comments Extract the key label or X...
[TXT] ssh-rsa.c  1.68   5 years  djm   hold our collective noses and use the openssl-1.1.x API in OpenSSH; feedback and...
[TXT] ssh-sandbox.h  1.1   12 years  djm   rename sandbox.h => ssh-sandbox.h to make things easier for portable
[TXT] ssh-sk-client.c  1.12   2 years  djm   sshsk_load_resident: don't preallocate resp resp is allocated by client_convers...
[TXT] ssh-sk-helper.8  1.4   2 years  djm   mention that the helpers are used by ssh(1), ssh-agent(1) and ssh-keygen(1). Pre...
[TXT] ssh-sk-helper.c  1.13   2 years  dtucker   Don't leak SK device. Patch from Pedro Martelletto via github PR#316. ok djm@
[TXT] ssh-sk.c  1.39   21 months  djm   when enrolling a resident key on a security token, check if a credential with ma...
[TXT] ssh-sk.h  1.11   2 years  djm   When downloading resident keys from a FIDO token, pass back the user ID that was...
[TXT] ssh-xmss.c  1.5   2 years  millert   Add missing includes of stdlib.h and stdint.h. We need stdlib.h for malloc(3) an...
[TXT] ssh.1  1.432   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] ssh.c  1.576   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] ssh.h  1.90   3 years  djm   allow some additional control over the use of ssh-askpass via $SSH_ASKPASS_REQUI...
[TXT] ssh2.h  1.19   3 years  dtucker   draft-ietf-secsh-architecture is now RFC4251.
[TXT] ssh_api.c  1.27   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] ssh_api.h  1.2   6 years  djm   lots of typos in comments/docs. Patch from Karsten Weiss after checking with cod...
[TXT] ssh_config  1.35   3 years  dtucker   Add a '%k' TOKEN that expands to the effective HostKey of the destination. This...
[TXT] ssh_config.5  1.374   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] sshbuf-getput-basic.c  1.13   23 months  djm   revert previous; it was broken (spotted by Theo)
[TXT] sshbuf-getput-crypto.c  1.10   23 months  djm   revert previous; it was broken (spotted by Theo)
[TXT] sshbuf-io.c  1.2   4 years  djm   tidy headers; some junk snuck into sshbuf-misc.c and sshbuf-io.c doesn't need SS...
[TXT] sshbuf-misc.c  1.18   2 years  djm   Add a sshbuf_read() that attempts to read(2) directly in to a sshbuf; ok markus@...
[TXT] sshbuf.c  1.18   23 months  djm   revert previous; it was broken (spotted by Theo)
[TXT] sshbuf.h  1.27   23 months  djm   revert previous; it was broken (spotted by Theo)
[TXT] sshconnect.c  1.358   20 months  djm   whitespace
[TXT] sshconnect.h  1.46   3 years  djm   add a ssh_config KnownHostsCommand that allows the client to obtain known_hosts ...
[TXT] sshconnect2.c  1.361   19 months  djm   add a RequiredRSASize for checking RSA key length in ssh(1). User authentication...
[TXT] sshd.8  1.321   20 months  jmc   .Li -> .Vt where appropriate; from josiah frentsos, tweaked by schwarze ok schw...
[TXT] sshd.c  1.591   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] sshd_config  1.104   2 years  dtucker   Remove references to ChallengeResponseAuthentication in favour of KbdInteractive...
[TXT] sshd_config.5  1.343   19 months  djm   Add RequiredRSASize for sshd(8); RSA keys that fall beneath this limit will be i...
[TXT] ssherr.c  1.10   4 years  djm   improve the error message for u2f enrollment errors by making ssh-keygen be sole...
[TXT] ssherr.h  1.8   4 years  djm   improve the error message for u2f enrollment errors by making ssh-keygen be sole...
[TXT] sshkey-xmss.c  1.11   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] sshkey-xmss.h  1.3   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] sshkey.c  1.122   19 months  djm   Add a sshkey_check_rsa_length() call for checking the length of an RSA key; ok m...
[TXT] sshkey.h  1.52   19 months  djm   Add a sshkey_check_rsa_length() call for checking the length of an RSA key; ok m...
[TXT] sshlogin.c  1.35   3 years  djm   use the new variant log macros instead of prepending __func__ and appending ssh_...
[TXT] sshlogin.h  1.8   17 years  deraadt   almost entirely get rid of the culture of ".h files that include .h files" ok dj...
[TXT] sshpty.c  1.34   4 years  deraadt   fatal() if getgrnam() cannot find "tty"
[TXT] sshpty.h  1.13   7 years  dtucker   Factor out code to disconnect from controlling terminal into its own function. ...
[TXT] sshsig.c  1.30   20 months  djm   double free() in error path; from Eusgor via GHPR333
[TXT] sshsig.h  1.11   2 years  djm   Add ssh-keygen -Y match-principals operation to perform matching of principals n...
[TXT] sshtty.c  1.14   14 years  djm   quell tc[gs]etattr warnings when forcing a tty (ssh -tt), since we usually don't...
[TXT] ttymodes.c  1.36   3 years  djm   remove global variable used to stash compat flags and use the purpose-built ssh-...
[TXT] ttymodes.h  1.16   7 years  djm   purge the last traces of SSHv1 from the TTY modes handling code ok markus
[TXT] uidswap.c  1.42   4 years  deraadt   When system calls indicate an error they return -1, not some arbitrary value < 0...
[TXT] uidswap.h  1.14   5 years  dtucker   Remove support for running ssh(1) setuid and fatal if attempted. Do not link uid...
[TXT] umac.c  1.22   2 years  jsg   spelling
[TXT] umac.h  1.5   2 years  jsg   spelling ok dtucker@
[TXT] umac128.c  1.2   6 years  dtucker   Rename struct umac_ctx to umac128_ctx too. In portable some linkers complain ab...
[TXT] utf8.c  1.11   4 years  djm   expose vasnmprintf(); ok (as part of other commit) markus deraadt
[TXT] utf8.h  1.4   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] version.h  1.95   19 months  djm   openssh-9.1
[TXT] xmalloc.c  1.37   2 years  cheloha   ssh: xstrdup(): use memcpy(3) Copying the given string into the buffer with str...
[TXT] xmalloc.h  1.20   3 years  djm   highly polished whitespace, mostly fixing spaces-for-tab and bad indentation on ...
[TXT] xmss_commons.c  1.2   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_commons.h  1.3   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_fast.c  1.3   6 years  markus   ssh/xmss: fix build; ok djm@
[TXT] xmss_fast.h  1.2   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_hash.c  1.3   2 years  millert   Remove unnecessary includes: openssl/hmac.h and openssl/evp.h. From Martin Vahle...
[TXT] xmss_hash.h  1.2   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_hash_address.c  1.2   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_hash_address.h  1.2   6 years  dtucker   Add $OpenBSD$ markers to xmss files to help keep synced with portable. ok djm@.
[TXT] xmss_wots.c  1.3   6 years  djm   lots of typos in comments/docs. Patch from Karsten Weiss after checking with cod...
[TXT] xmss_wots.h  1.3   6 years  dtucker   Remove unneeded (local) include. ok markus@
[TXT] fe25519.c (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] fe25519.h (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] ge25519.c (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] ge25519.h (in the Attic) [Hide]  1.4   9 years  miod   Declare ge25519_base as extern, to prevent it from becoming a common. Gets us ri...
[TXT] ge25519_base.data (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] sc25519.c (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] sc25519.h (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....
[TXT] verify.c (in the Attic) [Hide]  1.3   10 years  markus   Add Authors for the public domain ed25519/nacl code. see also http://nacl.cr.yp....