aboutsummaryrefslogtreecommitdiff
path: root/libexec/rlogind
Commit message (Collapse)AuthorAgeFilesLines
* Oops, I missed a few more /etc/nologin references yesterday. It appearsSatoshi Asami1999-01-121-2/+2
| | | | | | | | | my check of the tree was incomplete. Sorry guys. Reported by: Ben Smithurst <ben@scientia.demon.co.uk> Notes: svn path=/head/; revision=42587
* As previously threatened, clean up the rshd -a option and make it defaultPeter Wemm1998-12-161-47/+21
| | | | | | | | | | | | | | | | | | | on rshd and rlogind. However, note that: 1: rshd used to drop a connection with -a if the hostname != ip address. This is unneeded, because iruserok() does it's own checking. It was also wrong if .rhosts had an explicit IP address in it, connections would be dropped from that host solely because the DNS was mismatched even though it was explicitly intended to work by IP address. 2: rlogind and rshd check the hostname mappings by default now because that is what goes into the utmp/wtmp and logs. If the hostname != ip address, then it uses the IP address for logging/utmp/wtmp purposes. There isn't much point logging ficticious hostnames. 3: rshd -a is now accepted (but ignored) for compatability. If you really want to make life miserable for people with bad reverse DNS, use tcpd in paranoid mode (which is questionable anyway, given DNS ttl tweaking). Notes: svn path=/head/; revision=41860
* Add -lcrypt when building kerberos.John Birrell1998-09-051-3/+3
| | | | Notes: svn path=/head/; revision=38827
* Fix LIBDIR (for aout/ELF).Mark Murray1998-08-061-2/+2
| | | | Notes: svn path=/head/; revision=38149
* Sort #includes. Add rcsid. Add man page section in .Xrefs.Philippe Charnier1997-11-252-13/+15
| | | | Notes: svn path=/head/; revision=31405
* Changes for the new KTH Kerberos.Mark Murray1997-09-282-12/+26
| | | | | | | Also make -Wall a bit quieter. Notes: svn path=/head/; revision=29916
* compare return value from getopt against -1 rather than EOF, per the finalWarner Losh1997-03-281-2/+2
| | | | | | | posix standard on the topic. Notes: svn path=/head/; revision=24349
* Fix various buffer overflows that may or may not be exploitable.Warner Losh1997-03-241-5/+7
| | | | | | | | | | Fixes PR 2588 Reviewed by: Dan Cross? Submitted by: Julian Assange Notes: svn path=/head/; revision=24191
* Revert $FreeBSD$ to $Id$Peter Wemm1997-02-223-3/+3
| | | | Notes: svn path=/head/; revision=22989
* Some patches for source routed packets from OpenBSD.Warner Losh1997-02-091-14/+14
| | | | | | | | | | | | | | | | | | Rev 1.16 deraadt: do not warn about valid options; invalid options correctly quit Rev 1.15 deraadt: need not clear options since bad ones cause exit; provos@ws1.physnet.uni-hamburg.de Rev 1.14 deraadt: IPOPT_LSRR/IPOPT_SSRR must exit() due to tcp sequencing; pointed out by provos@wserver.physnet.uni-hamburg.de. also another 1-char buffer overflow. Reviewed by: Peter Wemm Obtained from: OpenSBD Notes: svn path=/head/; revision=22455
* Make the long-awaited change from $Id$ to $FreeBSD$Jordan K. Hubbard1997-01-143-3/+3
| | | | | | | | | | | This will make a number of things easier in the future, as well as (finally!) avoiding the Id-smashing problem which has plagued developers for so long. Boy, I'm glad we're not using sup anymore. This update would have been insane otherwise. Notes: svn path=/head/; revision=21673
* Sort cross references.Wolfram Schneider1997-01-131-4/+2
| | | | Notes: svn path=/head/; revision=21635
* Document the -k, -v and -x options.Mike Pritchard1996-12-161-1/+15
| | | | | | | Closes PR# 801. Notes: svn path=/head/; revision=20542
* add forgotten $Id$Wolfram Schneider1996-09-223-0/+4
| | | | Notes: svn path=/head/; revision=18471
* Fix some compilation warnings.Paul Traina1996-09-211-1/+1
| | | | Notes: svn path=/head/; revision=18449
* #include <kerberosIV/des.h> -> #include <des.h>Mark Murray1996-02-111-1/+1
| | | | Notes: svn path=/head/; revision=14024
* Rename des_set_key -> des_set_key_krb. (libdes conflict)Mark Murray1996-02-031-1/+1
| | | | Notes: svn path=/head/; revision=13881
* Section FILES and SEE ALSO completedWolfram Schneider1996-01-281-1/+13
| | | | Notes: svn path=/head/; revision=13680
* Fix typo.Nate Williams1995-12-021-1/+1
| | | | Notes: svn path=/head/; revision=12575
* It is not necessary to check if a '-' is in lusername., Checking ifGuido van Rooij1995-12-011-1/+1
| | | | | | | | lusername starts with a '-' is enough. Otherwise, no users with a '-' in there name can use rlogin. Notes: svn path=/head/; revision=12561
* Stop rlogind from bogusly ignoring an explicit .rhosts file for root.Peter Wemm1995-11-201-3/+2
| | | | | | | It still correctly ignores hosts.equiv. This is now consistant with rshd. Notes: svn path=/head/; revision=12434
* Added a -D option to set the TCP_NODELAY socket option. This improvesDavid Greenman1995-10-152-5/+17
| | | | | | | responsiveness at the expense of some additional network traffic. Notes: svn path=/head/; revision=11486
* Kerberos can now deal with multi-homed clients.Justin T. Gibbs1995-10-051-1/+1
| | | | | | | | | | | | | | | | | Kerberos obtains a network address for the local host from the routing tables and uses it consistently for all Kerberos transactions. This ensures that packets only leave the *authenticated* interface. Clients who open and use their own sockets for encrypted or authenticated correspondance to kerberos services should bind their sockets to the same address as that used by kerberos. krb_get_local_addr() and krb_bind_local_addr() allow clients to obtain the local address or bind a socket to the local address used by Kerberos respectively. Reviewed by: Mark Murray <markm>, Garrett Wollman <wollman> Obtained from: concept by Dieter Dworkin Muller <dworkin@village.org> Notes: svn path=/head/; revision=11233
* Remove trailing whitespace.Rodney W. Grimes1995-05-301-1/+1
| | | | Notes: svn path=/head/; revision=8870
* Add distribution=krb for P-HKGarrett Wollman1994-11-201-0/+1
| | | | Notes: svn path=/head/; revision=4715
* First level of changes for bringing in eBones (kerberos).Geoff Rehmet1994-09-291-5/+10
| | | | | | | | | | | - Get rid of inverse logic (NOKERBEROS and NOEBONES) in src/makefile, and replace with MAKE_KERBEROS and MAKE_EBONES. (Far fewer contortions, and both default to off.) IF YOU WANT KERBEROS, YOU HAVE TO EXPLICITLY DEFINE ONE OF THESE. - Make Makefiles kerberos-aware. Notes: svn path=/head/; revision=3197
* Plug security hole that was already fixed in 1.1. It preventsGuido van Rooij1994-08-151-0/+5
| | | | | | | | | | | user from specifying their hostname when rlogin()-ing in (using rlogin -f-h<host>) Reviewed by: Submitted by: Notes: svn path=/head/; revision=2076
* Update to new make macros and disable Kerberos because we haven't got itGarrett Wollman1994-08-051-5/+5
| | | | | | | set up right yet. Notes: svn path=/head/; revision=1875
* BSD 4.4 Lite Libexec SourcesRodney W. Grimes1994-05-274-0/+976
Notes: svn path=/vendor/CSRG/dist/; revision=1592