aboutsummaryrefslogtreecommitdiff
path: root/security/ssh2
Commit message (Collapse)AuthorAgeFilesLines
* Fix plist.Alexander Leidinger2003-07-071-10/+10
| | | | | | | | | No PORTREVISION update because of the short timeframe between the commits. Submitted by: maintainer Notes: svn path=/head/; revision=84396
* Update to 3.2.5:Alexander Leidinger2003-07-074-42/+80
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Fixed a critical security bug with RSA signature verification. Mitigating factors: DSA is used by default (not vulnerable). Also, the attack requires that attacker has the public key and the attacker needs to precompute the signature data so, that it looks like a valid PKCS#1 signature. This is a non-trivial task to perform without the private key. Nonetheless, all users should update their servers and clients as soon as convenient. Workarounds are to not use RSA keys as host keys (though connecting to existing hosts with RSA hostkeys poses a serious risk with a vulnerable client), and disabling publickey authentication. Update your clients and servers. Update MASTER_SITES, remove sites that are down or no langer carry ssh2 and add some new. - Turn Kerberos and group writeability support into knobs so one hasn't to edit the Makefile. - Remove dependency on security/tcp_wrapper for tcp-wrapper support on systems < FreeBSD 4.0, that port is no longer persistent. - Fix pkg-plist for WITH_STATIC_SFTP case. - Replace referneces to /etc/ssh2/* in man pages with references to PREFIX/etc/ssh2/* in order to better fit for FreeBSD. - Replace "$(ETCDIR)" in ssh_dummy_shell.out with PREFIX/etc. - Remove duplicated mechanism for generating the host key if an old one isn't found in the post-install target in the Makefile of the port, this is already done by the generate-host-key target in WRKSRC/apps/ssh/Makefile. - Fix differences between the install action done when installing the package versus installing the port. I.e. make the package create the host key with what ever bits ssh-keygen2 defaults to (currently 2048) instead of 1024 bits, copy over the configuration files for ssh2 and sshd2 from the examples if not already existent and create the directories for the global host keys and known hosts files. - Add some foo to pkg-plist to remove as much as possible from PREFIX/etc/ssh2, i.e. configuration files that don't differ from the corresponding examples and empty directories. Inform the user to remove what's left over if any. - Use _PATH_STDPATH instead of _PATH_DEFPATH so that the default PATH gets set to "/usr/bin:/bin:/usr/sbin:/sbin:PREFIX/bin" instead of "/usr/bin:/bin:PREFIX/bin". Using _PATH_STDPATH is consistent with OpenSSH and seems more usefull. One might want to patch ssh2 to also use login_cap(3) so that e.g. PATH gets picked up from whatever is defined in /etc/login.conf. - Change MAINTAINER. - Replace "share/doc/ssh2" with %%DATADIR%% in pkg-plist. Submitted by: Marius Strobl <marius@alchemy.franken.de> Approved by: maintainer Notes: svn path=/head/; revision=84393
* Update port: security/ssh2 3.2.2 -> 3.2.3Edwin Groothuis2003-02-233-19/+13
| | | | | | | | PR: ports/48542 Submitted by: Lars Eggert <larse@isi.edu> Notes: svn path=/head/; revision=76323
* De-pkg-comment.Akinori MUSHA2003-02-212-1/+1
| | | | Notes: svn path=/head/; revision=76041
* 1.) If WITH_STATIC_SFTP is defined, ssh-chrootmgr works.Ying-Chieh Liao2003-01-022-7/+13
| | | | | | | | | | | | | 2.) If libX11.a exists and xauth not, the build of ssh2 fails. This patch fix this. 3.) ssh2/files/sshd.sh looks for the wrong pid file in /var/run. This patch fix this and adds 2> /dev/null to the sshd2 startup PR: 46012 Submitted by: maintainer Notes: svn path=/head/; revision=72287
* upgrade to 3.2.2Ying-Chieh Liao2003-01-022-2/+2
| | | | | | | | PR: 45876 Submitted by: maintainer Notes: svn path=/head/; revision=72254
* Update to 3.2.0Patrick Li2002-06-183-7/+3
| | | | | | | | PR: 39491 Submitted by: maintainer Notes: svn path=/head/; revision=61534
* Update to 3.1.2 which fixes a recent security problem described at:Pete Fritchman2002-05-282-3/+2
| | | | | | | | | | http://www.ssh.com/products/ssh/advisories/authentication.cfm PR: 38592 Submitted by: maintainer Notes: svn path=/head/; revision=60230
* Oops, ".include <bsd.port.pre.mk>" line must be placed here.SADA Kenji2002-05-171-2/+2
| | | | Notes: svn path=/head/; revision=59313
* Install default config files as *.sample instead of overwriting existing ones.SADA Kenji2002-05-172-25/+46
| | | | | | | | | | | Note: The PR includes diffs to cope with WITHOUT_X11 env, but this was already committed by knu-san. So I just added CONFIGURE_ARGS line, please verify it. PR: ports/35385 Submitted by: maintainer Notes: svn path=/head/; revision=59308
* ssh_askpass2 is built only when X11 is installed. SupportAkinori MUSHA2002-04-022-1/+9
| | | | | | | | | | {WITH,WITHOUT}_X11 and detect ${X11BASE}/lib/libX11.a. Reported by: bento Obtained from: security/ssh (partly) Notes: svn path=/head/; revision=57179
* - Update to 3.1.0.Akinori MUSHA2002-02-2214-326/+45
| | | | | | | | | | | | | | PR: ports/34740 Submitted by: larse@ISI.EDU - Add %%PORTDOCS%% to pkg-plist. - Assign MAINTAINER to the submitter. Requested by: issei (previous MAINTAINER) Notes: svn path=/head/; revision=55065
* Remove myself from MAINTAINERIssei Suzuki2002-02-161-1/+1
| | | | Notes: svn path=/head/; revision=54769
* Remove extra file from pkg-plist to fix package buildingDavid W. Chapman Jr.2001-09-141-1/+0
| | | | Notes: svn path=/head/; revision=47836
* Unrestrict to match the ssh port.David E. O'Brien2001-02-171-1/+1
| | | | Notes: svn path=/head/; revision=38417
* Don't install etc/rc.d/sshd.sh if sshd is being started from inetd.conf.Steve Price2000-10-301-1/+3
| | | | | | | | | PR: 15691 Submitted by: Roger Marquis <marquis@roble.com> Reviewed by: maintainer Notes: svn path=/head/; revision=34448
* Upgrade to ssh-2.3.0.Kris Kennaway2000-09-0215-152/+109
| | | | | | | | PR: ports/20869 Submitted by: Issei Suzuki <issei@issei.org> (Maintainer) Notes: svn path=/head/; revision=32191
* Remove redundant/inappropriate CATEGORIES. People need to start readingWill Andrews2000-06-021-1/+1
| | | | | | | the Porter's Handbook. :-) Notes: svn path=/head/; revision=29084
* Update to version 2.1.0pl2.Steve Price2000-05-2912-100/+119
| | | | | | | | PR: 18620 Submitted by: maintainer Notes: svn path=/head/; revision=28875
* Correct whitespace introduced during PORTNAME conversion and portlintMichael Haro2000-04-211-3/+3
| | | | Notes: svn path=/head/; revision=27847
* Standardize all user defined options to the booleans WITH_FOO andJeremy Lea2000-04-171-16/+14
| | | | | | | | | | WITHOUT_FOO. Begin the process of reserving these prefixes for user defined options. No comment by: ports Notes: svn path=/head/; revision=27680
* Sorry to everyone, the commits previously broke installing for these ports.Will Andrews2000-04-141-1/+1
| | | | | | | | | | | Thanks to those who reported this. PRs: 17927, 17937 Submitted by: Keith Davey <redlance@primenet.com> maintainer (ssh2) Notes: svn path=/head/; revision=27523
* Update with the new PORTNAME/PORTVERSION variablesChris Piazza2000-04-091-3/+3
| | | | Notes: svn path=/head/; revision=27426
* Add better sshd startup scripts; specifically, allow restarting andWill Andrews2000-04-052-2/+29
| | | | | | | | | | | | | | | | stopping the server. Martti's submission did not include -h, which I added because if I had added the scripts the way he submitted them, the server wouldn't be started on startup. PR: 10196 Submitted by: Martti Kuparinen <martti.kuparinen@ericsson.com> Reviewed by: kris (partially) No response: maintainers (PR opened February 22, 1999) Notes: svn path=/head/; revision=27351
* Support OpenSSH in the base system as the ssh1 component.David E. O'Brien2000-03-111-2/+10
| | | | Notes: svn path=/head/; revision=26743
* Make pkgname match the directory the port lives in, and to reduce collsionDavid E. O'Brien2000-01-281-2/+3
| | | | | | | | | | with the ssh1 port. Asked for by: several on the ports list over time [the maintainer has not responded to multiple emails asking about this change] Notes: svn path=/head/; revision=25179
* remove --prefix=${PREFIX} when GNU_CONFIGURE=yes and other minor cleanupsMichael Haro1999-12-242-12/+2
| | | | | | | | PR: 14759 Submitted by: Jeremy Lea <reg@shale.csir.co.za> Notes: svn path=/head/; revision=23999
* Forgot a lineChris Piazza1999-11-251-0/+1
| | | | Notes: svn path=/head/; revision=23333
* Patches are now available from www.ssh.org/patchesChris Piazza1999-11-251-0/+3
| | | | | | | Submitted by: Issei Suzuki <issei@jp.freebsd.org> Notes: svn path=/head/; revision=23332
* Removed an obsoleted patch.SADA Kenji1999-11-241-4/+0
| | | | | | | | PR: 15059 Submitted by: Maintainer Notes: svn path=/head/; revision=23303
* Path for problem with tty ownership with chflags and chown in BSD 4.4Chris Piazza1999-09-022-0/+5
| | | | | | | | | | | variants. Fixes a security bug in tty allocation. PR: 13515 PR: 13536 Submitted by: Issei Suzuki <issei@jp.FreeBSD.org> (ssh2 maintainer) Notes: svn path=/head/; revision=21200
* FreeBSD.ORG -> FreeBSD.orgMichael Haro1999-08-311-1/+1
| | | | | | | | Prompted by PR: 13476, 13477 Submitted by: KATO Tsuguru Notes: svn path=/head/; revision=21157
* $Id$ -> $FreeBSD$Peter Wemm1999-08-311-1/+1
| | | | Notes: svn path=/head/; revision=21143
* chmod -> ${CHMOD}Michael Haro1999-08-221-16/+10
| | | | | | | chown -> ${CHOWN} Notes: svn path=/head/; revision=20885
* #4/4 enforcing Caps, no periodTim Vanderhoek1999-06-261-1/+1
| | | | | | | | | | | | | | | [Has anyone figured-out what makes the number 393 so interesting to PW, now?] I wonder what was going through Jordan's head during his infamous $Id$-smashing commit. Before I forget.... Thanks to naddy@mips.rhein-neckar.de (Christian Weisgerber) for prompting this commit. See msg-id: 7geokh$tje$1@mips.rhein-neckar.de Notes: svn path=/head/; revision=19804
* Add comment that USE_TCPWRAP ==> YES if /usr/include/tcpd.h exists.David E. O'Brien1999-06-241-2/+2
| | | | Notes: svn path=/head/; revision=19753
* upgrade to 2.0.13Andrey A. Chernov1999-06-1811-62/+70
| | | | | | | | | | XXXtgetent from original PR fixed PR: 12279 Submitted by: Issei Suzuki <issei@issei.org> Notes: svn path=/head/; revision=19548
* Add WWW: to DESCR filesMichael Haro1999-05-031-1/+1
| | | | Notes: svn path=/head/; revision=18397
* detect/use -current libwrapAndrey A. Chernov1999-04-031-1/+5
| | | | Notes: svn path=/head/; revision=17616
* Re-order definition of a couple of variables so the ssh1 dependencySteve Price1999-03-151-10/+11
| | | | | | | | | | is picked up correctly. PR: 10577 Submitted by: maintainer Notes: svn path=/head/; revision=17188
* Use setusercontext() now to set all sort of login things including env.Andrey A. Chernov1999-02-063-5/+138
| | | | | | | | | variables and priority! Enable light debugging for compatibility with -v option Don't print "No mail." - not in BSD login style. Notes: svn path=/head/; revision=16549
* remove lines which do chmod -x on recently installed rc.d/sshd.shAndrey A. Chernov1999-02-051-4/+1
| | | | Notes: svn path=/head/; revision=16547
* upgrade to 2.0.12Andrey A. Chernov1999-02-056-20/+42
| | | | Notes: svn path=/head/; revision=16540
* remove curses bloatAndrey A. Chernov1999-01-281-0/+20
| | | | Notes: svn path=/head/; revision=16412
* 1. Update base ssh2 version from 2.0.9 to 2.0.11David E. O'Brien1998-12-017-33/+79
| | | | | | | | | | | | | | | | | | | | Ssh 2.0.9 has bugs abount updating utmp/wtmp file. 2. Now you can compile ssh2 to support TCP_Wrapper (security/tcp_wrapper) when you define USE_TCPWRAP=YES 3. Fix typo in MASTER_SITES (Thanks to Chris Piazza <norn@home.net>) 4. Use /usr/lib/libz.so.* instead of libz in ssh2 source file. 5. Delete some obsolute pathes. PR: ports/8916 Submitted by: issei@jp.FreeBSD.ORG Notes: svn path=/head/; revision=15012
* fix typo in a URLDavid E. O'Brien1998-12-011-2/+2
| | | | Notes: svn path=/head/; revision=14995
* Oops, I forgot to remove old patches...Jun Kuriyama1998-11-236-598/+0
| | | | Notes: svn path=/head/; revision=14796
* Secure shell client and server (remote login program).Jun Kuriyama1998-11-236-318/+172
| | | | | | | | PR: ports/8204 Submitted by: Issei Suzuki <issei@jp.FreeBSD.ORG> Notes: svn path=/head/; revision=14788
* Mark this broken as it awaits upgrade after repository copy.Satoshi Asami1998-11-221-1/+3
| | | | Notes: svn path=/head/; revision=14775
* add official kerberos patchAndrey A. Chernov1998-11-101-0/+286
| | | | Notes: svn path=/head/; revision=14446