Commit Graph

  • 7b064ea363 Add missing changelog Jakub Jelen 2020-09-29 16:10:09 +0200
  • 527f79ee8c Remove the snap version, which is not used for build Jakub Jelen 2020-09-29 15:56:35 +0200
  • bd35168662 8.4p1-1 + 0.10.4-1 Jakub Jelen 2020-09-21 13:19:05 +0200
  • 3783a5da43 Rebase pam_ssh_agent_auth to 0.10.4 Jakub Jelen 2020-09-23 12:29:53 +0200
  • 9c88962b82 Improve crypto policies mention in manual pages (#1881301) Jakub Jelen 2020-09-22 15:55:35 +0200
  • 7e9d046986 Remove support for building rescue CD Jakub Jelen 2020-09-07 09:37:51 +0200
  • 10cdecf4f1 8.3p1-4 + 0.10.3-10 Jakub Jelen 2020-08-21 09:45:53 +0200
  • 26c894b07f Second iteration of sftp-server -m documentation (#1862504) Jakub Jelen 2020-08-28 20:14:29 +0200
  • 44157573e5 Remove openssh-ldap subpackage Jakub Jelen 2020-08-21 09:40:42 +0200
  • 4c85eb3d53 pkcs11: Do not crash with invalid paths in ssh-agent (#1868996) Jakub Jelen 2020-08-17 09:37:02 +0200
  • 77aa771110 Clarify documentation about sftp-server -m (#1862504) Jakub Jelen 2020-08-12 15:09:02 +0200
  • 68460c09bb Use make macros Jakub Jelen 2020-07-31 15:33:21 +0200
  • dfeecfb1e8 Drop loading of anaconda configuration from sysconfig including scriptlet to migrate to include drop-in directory Jakub Jelen 2020-06-08 21:47:34 +0200
  • fccd87eb18 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild Fedora Release Engineering 2020-07-28 12:48:46 +0000
  • 996e25f2f9 8.3p1-3 + 0.10.3-10 Jakub Jelen 2020-06-10 14:24:36 +0200
  • 653d073710 Move sshd_config include before any other definitions (#1824913) Jakub Jelen 2020-06-10 14:30:23 +0200
  • ed59cb1783 Do not lose PIN when more slots match PKCS#11 URI (#1843372) Jakub Jelen 2020-06-09 08:45:29 +0200
  • 868439f73a Stop loading crypto policy for command line in service files Jakub Jelen 2020-06-08 21:51:12 +0200
  • 8b7ddfb28b Move included configuration files in order to allow applications to include their defaults Jakub Jelen 2020-06-08 18:31:06 +0200
  • 3bd5ced9ee 8.3p1-2 + 0.10.3-10 Jakub Jelen 2020-06-01 13:51:43 +0200
  • 7f87bd9cc9 Avoid crash on cleanup Jakub Jelen 2020-06-01 12:20:31 +0200
  • 5cd9552fc4 8.3p1-1 + 0.10.3-10 Jakub Jelen 2020-05-27 09:57:29 +0200
  • efd1b7e5c8 Unbreak corner cases of sshd_config include Jakub Jelen 2020-05-27 09:53:38 +0200
  • 169fdb8814 Fix order of GSSAPI key exchange methods Jakub Jelen 2020-05-05 10:56:47 +0200
  • 4e3553bf2a openssh-8.2p1-3 + 0.10.3-9 Jakub Jelen 2020-03-24 09:42:14 +0100
  • a848054c8a Clarify crypto policies documentation in manual pages Jakub Jelen 2020-03-26 14:53:18 +0100
  • eb546ec1a7 Drop fipscheck dependency and non-standard fips checks Jakub Jelen 2020-03-24 10:40:08 +0100
  • 02af5cfa17 Do not break X11 forwarding without IPv6 Jakub Jelen 2020-03-24 09:37:47 +0100
  • 1cc7c87af2 Enable SHA2-based GSSAPI key exchange algorithms by default (#1666781) Jakub Jelen 2020-03-24 09:32:00 +0100
  • fbd5f1bee2 Print FIPS mode initialized in debug mode after the configuration is processed Jakub Jelen 2020-03-24 09:24:31 +0100
  • 57ba1bd853 Restore gssapi-canohost.patch (#1749862) Jakub Jelen 2020-03-16 19:26:01 +0100
  • 3e611d91bb Simplify references to crypto policies in configuration files (#1812854) Jakub Jelen 2020-03-16 11:02:42 +0100
  • b2417553a2 openssh-8.2p1-2 + 0.10.3-9 Jakub Jelen 2020-02-20 10:34:01 +0100
  • 82f9421fb4 Build properly with integrated u2f support (#1803948) Jakub Jelen 2020-02-18 13:06:10 +0100
  • 51f5c1c99f openssh-8.2p1-1 + 0.10.3-9 Jakub Jelen 2020-02-17 11:57:13 +0100
  • ee9cb005b3 Do not write information about FIPS mode to stderr (#1778224) Jakub Jelen 2020-02-17 14:30:49 +0100
  • 2b86acd332 Correctly report invalid key permissions (#1801459) Jakub Jelen 2020-02-17 11:57:35 +0100
  • a2cffc6e9b openssh-8.1p1-4 + 0.10.3-8 Jakub Jelen 2020-02-03 00:51:53 +0100
  • 7f46693182 Unbreak seccomp filter on ARM (#1796267) Jakub Jelen 2020-02-03 00:50:34 +0100
  • 657d132847 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild Fedora Release Engineering 2020-01-29 20:24:49 +0000
  • 62361a761c openssh-8.1p1-3 + 0.10.3-8 Jakub Jelen 2019-11-27 11:16:26 +0100
  • c28decf412 Unbreak the seccomp filter also on ARM (#1777054) Jakub Jelen 2019-11-27 11:15:00 +0100
  • 7254607b91 Do not extensively modify sshd_config -- DSA keys are not loaded for some time already Jakub Jelen 2019-11-19 13:16:28 +0100
  • d26b44fe7f openssh-8.1p1-2 + 0.10.3-8 Jakub Jelen 2019-11-14 09:24:36 +0100
  • 6a2fce44b5 Unbreak seccomp filter with latest glibc (#1771946) Jakub Jelen 2019-11-14 09:18:41 +0100
  • 36fef5669a openssh-8.1p1-1 + 0.10.3-8 Jakub Jelen 2019-10-09 10:24:21 +0200
  • 5eb2d51328 Add missing hostkey certificate algorithms to the FIPS list Jakub Jelen 2019-07-23 15:35:09 +0200
  • d19ba936f2 Do not attempt to generate DSA and ED25519 keys in FIPS mode Jakub Jelen 2019-07-23 15:00:45 +0200
  • 0ca1614ae2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild Fedora Release Engineering 2019-07-25 23:35:32 +0000
  • 73b069e926 openssh-8.0p1-8 + 0.10.3-7 Jakub Jelen 2019-07-23 09:50:20 +0200
  • 5d6a14bd4a Use the upstream version of the PKCS#8 PEM support (#1722285) Jakub Jelen 2019-07-23 09:49:22 +0200
  • 30922f629c openssh-8.0p1-7 + 0.10.3-7 Jakub Jelen 2019-07-12 23:22:51 +0200
  • 358f62be8a As agreed with anaconda team, they will provide a environment file under /etc/sysconfig (#1722928) Jakub Jelen 2019-07-12 23:20:56 +0200
  • e9bd9a2128 openssh-8.0p1-6 + 0.10.3-7 Jakub Jelen 2019-07-03 16:52:53 +0200
  • 0b10752bbc Accept environment variable PERMITROOTLOGIN from anaconda drop-in service file (#1722928) Jakub Jelen 2019-07-03 14:54:38 +0200
  • 36a44721c5 openssh-8.0p1-5 + 0.10.3-7 Jakub Jelen 2019-06-26 14:01:20 +0200
  • e9a555ffbf Whitelist some annonying errors from rpmlint Jakub Jelen 2019-06-26 13:58:55 +0200
  • 58ee5c17a8 Drop INSTALL file from docs as recommended by rpmlint checks Jakub Jelen 2019-06-26 13:34:22 +0200
  • eda4c070da Drop unused unversioned Obsoletes and Provides, which are 5 or 10 years old now Jakub Jelen 2019-06-26 13:30:54 +0200
  • 4bd6cfb874 Disable root password logins (#1722928) Jakub Jelen 2019-06-26 11:12:54 +0200
  • fdbd5bc6f9 Fix typos in manual pages related to crypto-policies Jakub Jelen 2019-06-19 15:56:25 +0200
  • 3153574729 tests: Make sure the user gets removed and the test pass Jakub Jelen 2019-06-17 13:31:57 +0200
  • dad744a32b openssh-8.0p1-4 + 0.10.3-7 Jakub Jelen 2019-06-17 12:49:59 +0200
  • 56494b92a4 pkcs11: Allow to specify pin-value also for ssh-add Jakub Jelen 2019-06-17 12:42:15 +0200
  • 50e2b60d3f Provide correct signature type for SHA2 certificates in agent Jakub Jelen 2019-06-17 12:40:12 +0200
  • 56fdfa2a52 Use the new OpenSSL API to export PEM files to avoid dependency on MD5 Jakub Jelen 2019-05-30 11:29:43 +0200
  • f15fbdc5fe Whitelist another syscall variant for s390x cryptographic module (ibmca engine) Jakub Jelen 2019-05-30 11:28:11 +0200
  • 66e9887b15 Coverity warnings Jakub Jelen 2019-05-30 11:27:04 +0200
  • 7f1ad371a4 openssh-8.0p1-3 + 0.10.3-7 Jakub Jelen 2019-05-27 10:23:08 +0200
  • 7a14283cba Drop the problematic patch for updating pw structure after authentication Jakub Jelen 2019-05-23 15:34:17 +0200
  • ae802a53d8 pkcs11: Do not require the labels on the public objects (#1710832) Jakub Jelen 2019-05-16 15:14:52 +0200
  • 53c9085316 openssh-8.0p1-2 + 0.10.3-7 Jakub Jelen 2019-05-14 13:45:08 +0200
  • f726e51d86 Use OpenSSL KDF Jakub Jelen 2019-05-14 13:35:14 +0200
  • 751cd9acc7 Use OpenSSL high-level API to produce and verify signatures Jakub Jelen 2019-05-14 13:32:04 +0200
  • 6caa973459 Mention crypto-policies in the manual pages instead of the hardcoded defaults Jakub Jelen 2019-05-13 14:22:21 +0200
  • 4feb6a973f Verify SCP vulnerabilities are fixed in the package testsuite Jakub Jelen 2019-05-10 14:34:35 +0200
  • b33caef080 Drop unused patch Jakub Jelen 2019-05-07 13:45:34 +0200
  • f660e11adc FIPS: Do not fail if FIPS-unsupported algorithm is provided in configuration or on command line Jakub Jelen 2019-05-07 11:42:15 +0200
  • ec02bb9685 tests: Make sure the user gets removed after the test Jakub Jelen 2019-04-29 15:16:44 +0200
  • def1debf2e openssh-8.0p1-1 + 0.10.3-7 Jakub Jelen 2019-04-26 17:42:30 +0200
  • f51d092120 Remove unused parts of spec file Jakub Jelen 2019-03-27 13:20:32 +0100
  • cb35953bec The FIPS_mode() is in different header file Jakub Jelen 2019-03-21 17:02:28 +0100
  • 91aa3d4921 openssh-7.9p1-5 + 0.10.3.6 Jakub Jelen 2019-03-11 13:41:09 +0100
  • 81a703d751 Do not allow negotiation of unknown primes with DG GEX in FIPS mode Jakub Jelen 2019-03-11 17:17:13 +0100
  • c53a1d4e90 Ignore PKCS#11 label if no key is found with it (#1671262) Jakub Jelen 2019-03-11 16:08:21 +0100
  • c694548168 Do not segfault when multiple pkcs11 providers is specified Jakub Jelen 2019-03-11 16:05:49 +0100
  • 3339efd12d Do not fallback to sshd_net_t SELinux context Jakub Jelen 2019-03-11 13:35:55 +0100
  • 586cf149b5 Reformat SELinux patch Jakub Jelen 2019-03-11 13:35:20 +0100
  • 1341391c78 Update cached passwd structure after PAM authentication Jakub Jelen 2019-03-04 16:33:28 +0100
  • 3722267e80 Make sure the kerberos cleanup procedures are properly invoked Jakub Jelen 2019-03-04 16:23:36 +0100
  • ae07017120 Use correct function name in the debug log Jakub Jelen 2019-03-01 11:33:25 +0100
  • 7295e97cd1 openssh-7.9p1-4 + 0.10.3.6 Jakub Jelen 2019-01-31 14:07:33 +0100
  • d711f557f7 Log when a client requests an interactive session and only sftp is allowed Jakub Jelen 2019-01-31 14:04:29 +0100
  • e8524ac3f4 ssh-copy-id: Minor issues found by shellcheck Jakub Jelen 2019-01-23 20:51:26 +0100
  • 8622e384ef ssh-copy-id: Do not fail in case remote system is out of space Jakub Jelen 2019-01-23 20:47:44 +0100
  • ffb1787c07 Enclose redhat specific configuration with Match final block Jakub Jelen 2019-01-23 15:35:07 +0100
  • 4e5f61c2a0 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild Fedora Release Engineering 2019-02-01 17:32:05 +0000
  • 7c726e0a13 Remove obsolete Group tag Igor Gnatenko 2019-01-28 20:17:59 +0100
  • 018ac8d1d9
    Rebuilt for libcrypt.so.2 (#1666033) Björn Esser 2019-01-14 19:11:16 +0100
  • 311908c042 openssh-7.9p1-3 + 0.10.3-6 Jakub Jelen 2019-01-14 11:09:48 +0100