Commit Graph

388 Commits

Author SHA1 Message Date
Jan F
d9ebda3152 improve audit of server ket management 2011-02-17 17:55:34 +01:00
Jan F
2c1a4adbdd improve audit of server ket management 2011-02-17 17:54:23 +01:00
Jan F
b9127ef973 improve audit of logins and auths 2011-02-16 23:36:59 +01:00
Jan F
483c73337b improve audit of logins and auths 2011-02-16 17:30:51 +01:00
Jan F
003cb0b27f - bump openssh version to 5.8p1 2011-02-14 15:32:49 +01:00
Dennis Gilmore
fa335ee67e - Rebuilt for https://fedoraproject.org/wiki/Fedora_15_Mass_Rebuild 2011-02-08 21:31:13 -06:00
Jan F
cfb0f30feb - clean the data structures in the non privileged process
- clean the data structures when roaming
2011-02-07 20:47:23 +01:00
Jan F
865391f74f - clean the data structures when roaming 2011-02-07 09:21:27 +01:00
Jan F
ee23b09ac6 - clean the data structures in the privileged process 2011-02-02 10:18:01 +01:00
Jan F
f32d86bd8a - clean the data structures in the privileged process 2011-02-02 09:28:26 +01:00
Jan F
6f931660c8 - clean the data structures in the privileged process 2011-01-31 17:04:10 +01:00
Jan F
f00e4a3ddc - clean the data structures before exit net process 2011-01-25 14:06:13 +01:00
Jan F
af8738486c - make audit compatible with the fips mode 2011-01-16 23:50:01 +01:00
Jan F
377ba3cfce - add audit of destruction the server keys 2011-01-14 10:20:53 +01:00
Jan F
9828ffb5fc - add audit of destruction the server keys 2011-01-14 10:18:17 +01:00
Jan F
92eab14042 - add audit of destruction the server keys 2011-01-14 09:45:08 +01:00
Jan F
5c20fa8d2d - add audit of destruction the session keys 2011-01-12 11:09:58 +01:00
Jan F. Chadima
a7cb7d2954 - reenable run sshd as non root user
- renable rekeying
2010-10-28 13:04:45 +02:00
Jan F
436639ac40 - reapair clientloop crash (#627332)
- properly restore euid in case connect to the ssh-agent socket fails
2010-11-24 08:24:42 +01:00
Jan F
bb5eb00d2d - properly restore euid in case connect to the ssh-agent socket fails 2010-11-24 07:49:04 +01:00
Jan F. Chadima
d2ed53bfc6 - striped read permissions from suid and sgid binaries
- properly restore euid in case connect to the ssh-agent socket fails
2010-10-10 05:43:12 +02:00
Jan F
7c53d7e5af - used upstream version of the biguid patch 2010-11-15 14:01:18 +01:00
Jan F
82036abfa2 - improoved kuserok patch 2010-11-15 10:35:33 +01:00
Jan F
5daee12df3 - add auditing the host based key ussage
- repait X11 abstract layer socket (#648896)
2010-11-05 17:31:30 +01:00
Jan F. Chadima
848d56e0fa - add auditing the kex result 2010-09-21 05:50:26 +02:00
Jan F. Chadima
f44bdee1ed - add auditing the kex result 2010-09-21 05:36:25 +02:00
Jan F
f8f722ebad - add auditing the key ussage 2010-11-02 21:10:16 +01:00
Jan F. Chadima
b7b582b70e - add auditing the key ussage 2010-09-20 04:41:01 +02:00
Jan F
0f4c82ee87 - add auditing the key ussage 2010-11-02 13:10:33 +01:00
Jan F
2d0bc8b9f6 - update gsskex patch (#645389) 2010-10-22 15:45:07 +02:00
Jan F
ba25ecfbc7 - rebase linux audit according to upstream 2010-10-20 11:52:05 +02:00
Jan F. Chadima
cf74d509bc - add missing headers to linux audit 2010-08-31 21:47:07 +02:00
Jan F
faae1e801d - audit module now uses openssh audit framevork 2010-09-29 09:17:40 +02:00
Jan F
cae7368913 - Add the GSSAPI kuserok switch to the kuserok patch 2010-09-15 19:21:47 +02:00
Jan F
46c77f5af2 - Add the GSSAPI kuserok switch to the kuserok patch 2010-09-15 15:55:55 +02:00
Jan F
4c4aa13bbb - Repaired the kuserok patch 2010-09-15 10:07:41 +02:00
Jan F
abe4bc8a6b - Repaired the problem with puting entries with very big uid into lastlog 2010-09-13 14:22:31 +02:00
Jan F
10c6ac8404 - Repaired the problem with puting entries with very big uid into lastlog 2010-09-13 13:08:30 +02:00
Jan F
ce0606e548 - Repaired the problem with puting entries with very big uid into lastlog 2010-09-13 13:02:01 +02:00
Jan F
2bdd0209d2 - Merging selabel patch with the upstream version. (#632914) 2010-09-13 11:40:52 +02:00
Jan F
84d568abcc - Merging selabel patch with the upstream version. (#632914) 2010-09-13 11:38:26 +02:00
Jan F
93909d91af - Tweaking selabel batch to work properly without selinux rules loaded. (#632914) 2010-09-13 10:26:50 +02:00
Tomas Mraz
13fa787ecc - Make fipscheck hmacs compliant with FHS - requires new fipscheck 2010-09-08 09:00:22 +02:00
Jan F
f7e15d5204 - Added -z relro -z now to LDFLAGS 2010-09-08 08:41:29 +02:00
Jan F. Chadima
c6801b909e - Rebased to openssh5.6p1
- Added -z relro -z now to LDFLAGS
2010-08-12 07:41:58 +02:00
Jan F. Chadima
d675c0b550 more acurrate source file 2010-08-12 06:48:38 +02:00
Jan F. Chadima
1b8a267cb9 Upgrade to openssh-5.6p1 2010-08-03 02:41:49 +02:00
Jan F. Chadima
98ba34ae05 upgrade to openssh-5.6p1 2010-08-03 01:10:26 +02:00
Fedora Release Engineering
34e1de0e79 dist-git conversion 2010-07-29 05:17:07 +00:00
Jan F. Chadima
7818e56d62 - merged with newer bugzilla's version of authorized keys command patch 2010-07-07 13:48:36 +00:00