Commit Graph

  • b83281f89d Avoid sending SD_NOTIFY from wrong processes (#1427526) Jakub Jelen 2017-02-28 15:13:24 +0100
  • ab7f9474c7 openssh-7.4p1-3 + 0.10.3-1 Jakub Jelen 2017-02-20 13:32:23 +0100
  • 3448f25d85 Typo Jakub Jelen 2017-02-21 19:25:41 +0100
  • b92d3c8ae0 Reference upstream bug Jakub Jelen 2017-02-20 15:24:15 +0100
  • 4e7cdec7ef Add systemd stuff to keep track of service Jakub Jelen 2017-02-20 13:31:29 +0100
  • 140ef5a0f5 Properly report errors from included files (#1408558) Jakub Jelen 2017-02-20 13:22:04 +0100
  • a97eeb671c ppc architecture is gone for years Jakub Jelen 2017-02-16 10:46:10 +0100
  • 4cf8f1aa09 Cleaner linking ldap-helper (circular dependencies) Jakub Jelen 2017-02-14 10:29:34 +0100
  • 465b6e6b82 Check seteuid return values in all cases Jakub Jelen 2017-02-07 15:34:01 +0100
  • bdb932c46a new pam_ssh_agent_auth-0.10.3 release Jakub Jelen 2017-02-07 15:33:15 +0100
  • 26cec0607f openssh-7.4p1-2 + 0.10.2-5 Jakub Jelen 2017-02-06 09:47:28 +0100
  • 640dfa350e Set environment variable to avoid race condition with systemd (#1415218) Jakub Jelen 2017-02-06 09:41:32 +0100
  • 4a6ef41937 Do not overwrite N and E for RSA-certs in ssh-agent (#1416584) Jakub Jelen 2017-02-03 11:06:19 +0100
  • 28ff3aa1c5 Correct path to crypto policies Jakub Jelen 2017-01-06 13:00:16 +0100
  • b19926d292 openssh-7.4p1-1 + 0.10.2-5 Jakub Jelen 2017-01-03 14:30:38 +0100
  • 58f79a27c3 Whitelist /usr/lib64/ for PKCS#11 modules Jakub Jelen 2017-01-03 10:43:15 +0100
  • 6cf9b8e61b rebase to openssh-7.4p1-1 Jakub Jelen 2017-01-02 15:42:13 +0100
  • 4189cebf7a Cache supported OIDS for GSSAPI kex (#1395288) Jakub Jelen 2017-01-02 14:42:38 +0100
  • dd8e5419eb Fix use-after-free error (#1409433) Jakub Jelen 2017-01-02 14:23:54 +0100
  • 38869a3406 Prevent hangs with long MOTD (filling buffers and blocking) Jakub Jelen 2016-12-15 14:29:36 +0100
  • d8c2e8dc88 openssh-7.3p1-7 + 0.10.2-4 Jakub Jelen 2016-12-08 13:57:03 +0100
  • 162941961a Move MAX_DISPLAYS to a configuration option Jakub Jelen 2016-12-08 13:51:28 +0100
  • 4ce5741703 Properly deserialize received RSA certificates in ssh-agent (#1402029) Jakub Jelen 2016-12-08 13:50:08 +0100
  • 7bccf7e6e0 openssh-7.3p1-6 + 0.10.2-4 Jakub Jelen 2016-11-16 11:07:41 +0100
  • ef1da17783 GSSAPI requires futex syscall in privsep child (#1395288) Jakub Jelen 2016-11-16 08:38:35 +0100
  • ccf623128a Fix changelog Jakub Jelen 2016-11-07 09:33:43 +0100
  • 2a8bce34e4 openssh-7.3p1-5 + 0.10.2-4 Jakub Jelen 2016-10-27 18:26:25 +0200
  • aacf0d429a OpenSSL 1.1.0 compat Jakub Jelen 2016-10-22 22:47:27 +0200
  • ecc9f8d02b When doing chroot * we should not drop any capabilities for root * we should not clear bounding capabilities for other users * we should probably retain the supplement groups Jakub Jelen 2016-10-21 14:50:42 +0200
  • c9d9fe9b0f Recommend crypto-policies for a client package Jakub Jelen 2016-10-11 10:29:50 +0200
  • d924bc6892 openssh-7.3p1-4 + 0.10.2-4 Jakub Jelen 2016-09-29 11:17:14 +0200
  • 639ae2c73c Include client Crypto Policy (#1225752) Jakub Jelen 2016-09-29 11:26:06 +0200
  • ae831ab305 Fix NULL derefence (#1380297) https://anongit.mindrot.org/openssh.git/patch/?id=28652bca29046f62c7045e933e6b931de1d16737 Jakub Jelen 2016-09-29 11:15:13 +0200
  • 739842b137 Make the code build without SELinux and without Audit Jakub Jelen 2016-09-15 16:36:04 +0200
  • 0a605f4d31 openssh-7.3p1-3 + 0.10.2-4 Jakub Jelen 2016-08-15 12:20:15 +0200
  • 38d533a5e1 Proper content of the included configuration files Jakub Jelen 2016-08-15 12:18:50 +0200
  • 73953d29f1 openssh-7.3p1-2 + 0.10.2-4 Jakub Jelen 2016-08-09 10:32:01 +0200
  • 88f3a752ae openssh-7.3p1-1. + 0.10.2-4 Jakub Jelen 2016-08-09 08:24:35 +0200
  • 90ffc35e29 Correct permissions on the ssh_config directory (#1365270) Jakub Jelen 2016-08-09 08:23:44 +0200
  • 7ea4bdf410 forgotten sources Jakub Jelen 2016-08-05 15:49:56 +0200
  • a711d3c82f openssh-7.3p1-1 + 0.10.2-4 Jakub Jelen 2016-07-26 12:31:13 +0200
  • 6454089e75 Create include directory with example content (redhat modifications) Jakub Jelen 2016-08-04 10:57:32 +0200
  • 334feb284c Do not build ssh-keycat with sshd LIBS Jakub Jelen 2016-08-02 12:53:25 +0200
  • b165161da2 When we don't listen for the clients, num_listen_socks is -1 Jakub Jelen 2016-07-26 15:14:46 +0200
  • 6da7f4d0ed Drop SCP progressmeter patch because of reworked UTF-8 API (tracked upstream #2434) Jakub Jelen 2016-07-26 10:55:37 +0200
  • b487a6d746 Move old canohost.h API to shared place, so it can be used by audit and gssapi (states) Jakub Jelen 2016-07-26 10:54:13 +0200
  • 5878ebb50e Most of the coverity patch applied upstream, context changes for rebase Jakub Jelen 2016-07-25 16:21:15 +0200
  • 70c2ac20bd CVE-2016-6210 is fixed upstream Jakub Jelen 2016-07-25 15:29:47 +0200
  • 13a7aaf5e3 CVE-2015-8325 and certificate regression are fixed upstream Jakub Jelen 2016-07-25 15:23:16 +0200
  • 38e1dfa80d Upstream bug #2477 applied Jakub Jelen 2016-07-25 15:22:09 +0200
  • 4bd77fcccc seccomp for secondary architecures patch already upstream (#2590) Jakub Jelen 2016-07-25 15:02:45 +0200
  • 05bc93847e Bug #2281 resolved upstream Jakub Jelen 2016-07-25 14:56:34 +0200
  • 178ce15f5a UTF-8 banners resolved by upstream bug #2058 Jakub Jelen 2016-07-25 14:54:30 +0200
  • 14320ca590 The upstream bug #2257 is fixed Jakub Jelen 2016-07-25 14:38:39 +0200
  • 82bfd19e51 openssh-7.2p2-11 + 0.10.2-3 Jakub Jelen 2016-07-26 13:01:28 +0200
  • 6a7dd92929 Remove legacy sshd-keygen (#1359762) Revert "Add legacy sshd-keygen for anaconda (#1331077)" Jakub Jelen 2016-07-26 12:57:48 +0200
  • 793bc4b1cc Remove slogin symlinks (#1359762) Revert "Restore slogin symlinks" Jakub Jelen 2016-07-26 12:56:55 +0200
  • b4df5ebb8d Rework SELinux context handling with chroot using libcap-ng (#1357860) Jakub Jelen 2016-07-20 16:18:46 +0200
  • 9dc741314f openssh-7.2p2-10 + 0.10.2-3 Jakub Jelen 2016-07-18 13:55:58 +0200
  • 1057900209 Prevent user enumeration via timing channel (CVE-2016-6210) Jakub Jelen 2016-07-18 13:30:36 +0200
  • 209c7a8aea Expose more information to PAM Jakub Jelen 2016-07-18 12:38:42 +0200
  • 9864973c69 Make closefrom() ignore softlinks to the /dev/ devices on s390 Jakub Jelen 2016-07-18 12:26:15 +0200
  • a49441fa52 openssh-7.2p2-9 + 0.10.2-3 Jakub Jelen 2016-07-01 09:07:18 +0200
  • a8068249cb Bad condition for UseLogin check (#1350347) Jakub Jelen 2016-06-27 10:33:57 +0200
  • 5a67d51d0f openssh-7.2p2-8 + 0.10.2-3 Jakub Jelen 2016-06-24 11:58:32 +0200
  • 8cf031f736 pam_ssh_agent_auth: Fix conflict bewteen two getpwuid() calls (#1349551) Jakub Jelen 2016-06-24 11:41:45 +0200
  • d8ffa911e3 SFTP server forced permissions should restore umask Jakub Jelen 2016-06-23 16:23:32 +0200
  • f22e5dcaeb pselect6 is already in upstream seccomp filter Jakub Jelen 2016-06-17 13:39:03 +0200
  • 186bf3858e UseLogin yes is not supported in Fedora Jakub Jelen 2016-06-17 13:31:03 +0200
  • c06fe506bc seccomp filter for MIPS (#1195065) Jakub Jelen 2016-06-17 13:26:54 +0200
  • ad928ac7d1 Mandatory Perl build-requires added <https://fedoraproject.org/wiki/Changes/Build_Root_Without_Perl> Petr Písař 2016-06-24 10:03:17 +0200
  • ba8f38935c openssh-7.2p2-7 Jakub Jelen 2016-06-06 10:24:35 +0200
  • f6a096caf2 Build seccomp filter on ppc64(le) architecture (#1195065) Jakub Jelen 2016-06-06 10:16:31 +0200
  • 1144aef1d1 Comments for patches, merge ssh_config from localdomain to redhat patch (ssh_config related) Jakub Jelen 2016-06-03 16:22:59 +0200
  • 84d3989ec8 Coverity -> FIPS patch Jakub Jelen 2016-06-03 12:40:12 +0200
  • 31536c7ac6 Move linux_seed() header from coverity to entropy patch Jakub Jelen 2016-06-03 10:56:54 +0200
  • f2868287aa rebase x11 patch to clean up coverity patch Jakub Jelen 2016-06-03 10:44:32 +0200
  • ea9421342e Coverity: dereference in pam_ssh_agent_auth Upstream: https://sourceforge.net/p/pamsshagentauth/bugs/22/ Jakub Jelen 2016-06-03 09:49:20 +0200
  • d78d347c11 Check for real location of .k5login file (#1328243) Jakub Jelen 2016-06-03 09:28:29 +0200
  • 8dd0608e77 Regression in certificate-based authentication (#1333498) Jakub Jelen 2016-05-06 09:25:20 +0200
  • 991b66246f openssh-7.2p2-6 + 0.10.2-3 Jakub Jelen 2016-04-29 13:57:45 +0200
  • 0b5300a59c Add legacy sshd-keygen for anaconda (#1331077) Jakub Jelen 2016-04-29 13:34:06 +0200
  • 1380564732 openssh-7.2p2-5 + 0.10.2-3 Jakub Jelen 2016-04-22 14:52:57 +0200
  • b7de610db3 Fix typo about sshd-keygen in sysconfig (#1325535) Jakub Jelen 2016-04-18 14:47:10 +0200
  • cf4e3a1844 Fix for CVE-2015-8325 (#1328013) Jakub Jelen 2016-04-18 12:39:11 +0200
  • 58d2868dfe openssh-7.2p2-4 + 0.10.2-3 Jakub Jelen 2016-04-15 17:56:43 +0200
  • 5489ace8dc Add sshd-keygen.target to abstract key creation from sshd.service and sshd@.service (#1325535) Jakub Jelen 2016-04-15 15:19:02 +0200
  • 461b3af818 Remove unused sshd init script Jakub Jelen 2016-04-15 14:13:55 +0200
  • 32a74888d5 openssh-7.2p2-3 + 0.10.2-3 Jakub Jelen 2016-04-13 13:44:58 +0200
  • 00c7b75439 Make sshd-keygen comply with packaging guidelines (#1325535) Jakub Jelen 2016-03-16 09:57:22 +0100
  • 3d2c14680b Soft-deny socket() syscall in seccomp sandbox (#1324493) Jakub Jelen 2016-04-11 16:11:59 +0200
  • 0509c6c977 Remove *sha1 Kex in FIPS mode (#1324493) Jakub Jelen 2016-04-11 13:16:12 +0200
  • 117a730ded Remove *gcm ciphers in FIPS mode (#1324493) Jakub Jelen 2016-04-11 10:34:12 +0200
  • f7e56a52db openssh-7.2p2-2 + 0.10.2-3 Jakub Jelen 2016-04-05 16:13:59 +0200
  • fc0cf7f8d5 Fix GSSAPI Key Exchange for older clients (#1323622) Jakub Jelen 2016-04-05 16:13:17 +0200
  • bda184b249 pam_ssh_agent_auth: prevent using MD5 in Fips mode Jakub Jelen 2016-03-16 09:40:35 +0100
  • 53c9992786 Drop init scripts dependency from sshd-keygen (#1317722) Jakub Jelen 2016-03-15 09:05:38 +0100
  • 9163ba11f1 openssh-7.2p2-1 + 0.10.2-3 Jakub Jelen 2016-03-10 13:36:41 +0100
  • 28ce052525 Audit: Cleanup for upstream proposal Jakub Jelen 2016-03-04 14:33:02 +0100
  • 0bdae3b8df openssh-7.2p1-1 + 0.10.2-2 Jakub Jelen 2016-03-03 17:59:53 +0100