<feed xmlns='http://www.w3.org/2005/Atom'>
<title>src/secure/usr.bin/ssh, branch releng/9.3</title>
<subtitle>FreeBSD source tree</subtitle>
<id>https://cgit-dev.freebsd.org/src/atom?h=releng%2F9.3</id>
<link rel='self' href='https://cgit-dev.freebsd.org/src/atom?h=releng%2F9.3'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/'/>
<updated>2014-03-31T14:39:56Z</updated>
<entry>
<title>MFH (r237568, r255422, r255460, r255766, r255767, r255774, r255829,</title>
<updated>2014-03-31T14:39:56Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2014-03-31T14:39:56Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=8445f9d73512b4333e78ed31f64eab75a676110f'/>
<id>urn:sha1:8445f9d73512b4333e78ed31f64eab75a676110f</id>
<content type='text'>
  r256126, r257954, r261320, r261499, r263691, r263712): upgrade to
  OpenSSH 6.6p1 via 6.3p1, 6.4p1 and 6.5p1.

Differences relative to head:

 - No DNSSEC support since stable/9 does not have LDNS
 - Sandboxing off by default, and uses rlimit instead of Capsicum
 - ED25519 moved to the bottom of the order of preference to avoid
   "new public key" warnings
</content>
</entry>
<entry>
<title>MFH (r254407, r254960, r255371): misc cleanup</title>
<updated>2014-03-20T10:56:05Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2014-03-20T10:56:05Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=a0f99e6fc99e8095a750256681e75e72d53e00be'/>
<id>urn:sha1:a0f99e6fc99e8095a750256681e75e72d53e00be</id>
<content type='text'>
MFH (r255386): make libssh private
MFH (r255369, r255376, r255393, r262530): import OpenPAM Nummularia
</content>
</entry>
<entry>
<title>MFH (r245527): add OPENSSH_NONE_CIPHER build option</title>
<updated>2013-03-01T01:02:26Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2013-03-01T01:02:26Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=73ade74207cdb3298f2b781c29539103ceb3a30b'/>
<id>urn:sha1:73ade74207cdb3298f2b781c29539103ceb3a30b</id>
<content type='text'>
</content>
</entry>
<entry>
<title>MFC r233136, r233432:</title>
<updated>2012-03-29T01:46:01Z</updated>
<author>
<name>Eitan Adler</name>
<email>eadler@FreeBSD.org</email>
</author>
<published>2012-03-29T01:46:01Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=81ebc8c88ef44f0999a453299f0f9e1080f645aa'/>
<id>urn:sha1:81ebc8c88ef44f0999a453299f0f9e1080f645aa</id>
<content type='text'>
	Restore the ability to use a non-standard LOCALBASE to sshd
	Add the ability to use a non-standard LOCALBASE to ssh

Approved by:	cperciva (implicit)
</content>
</entry>
<entry>
<title>Upgrade to OpenSSH 5.4p1.</title>
<updated>2010-03-09T19:16:43Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2010-03-09T19:16:43Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=b15c83408cb1e9b86c1895af0f097de05fc92ccf'/>
<id>urn:sha1:b15c83408cb1e9b86c1895af0f097de05fc92ccf</id>
<content type='text'>
MFC after:	1 month
</content>
</entry>
<entry>
<title>Upgrade to OpenSSH 5.3p1.</title>
<updated>2009-10-01T17:12:52Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2009-10-01T17:12:52Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=7aee6ffee0748c4c6bd9d11bb2a90c7531244d63'/>
<id>urn:sha1:7aee6ffee0748c4c6bd9d11bb2a90c7531244d63</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Upgrade to OpenSSH 5.1p1.</title>
<updated>2008-08-01T02:48:36Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2008-08-01T02:48:36Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=d4af9e693f15f5155095f38c7650b24fe74ae351'/>
<id>urn:sha1:d4af9e693f15f5155095f38c7650b24fe74ae351</id>
<content type='text'>
I have worked hard to reduce diffs against the vendor branch.  One
notable change in that respect is that we no longer prefer DSA over
RSA - the reasons for doing so went away years ago.  This may cause
some surprises, as ssh will warn about unknown host keys even for
hosts whose keys haven't changed.

MFC after:	6 weeks
</content>
</entry>
<entry>
<title>For users of FreeBSD &lt;= 6.2 we recommend during the x.org 7.x upgrade</title>
<updated>2008-03-05T20:58:15Z</updated>
<author>
<name>Kris Kennaway</name>
<email>kris@FreeBSD.org</email>
</author>
<published>2008-03-05T20:58:15Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=ac188d74d602f639ecd8c4a5b5a81efa64ee0e9a'/>
<id>urn:sha1:ac188d74d602f639ecd8c4a5b5a81efa64ee0e9a</id>
<content type='text'>
that they add X11BASE=${LOCALBASE} to /etc/make.conf since X11BASE was
hard-wired to the now-wrong location in old releases.

However, both X11BASE and LOCALBASE have moved out of scope of src/
into ports/ now, which causes problems for upgraded users who have old
make.conf files still containing the above setting.  X11BASE becomes
null and we instruct ssh and sshd to look for xauth in /bin/xauth
where it is unlikely to be found.

Instead, provide a copy of the default LOCALBASE?=/usr/local setting
here.

We also have to deal with the case where the user only overrides
LOCALBASE and doesn't set an explicit X11BASE (in ports it will be set
implicitly but not here), which will also move the location of xauth.

MFC after:	 3 days
Reported by:	 rwatson
</content>
</entry>
<entry>
<title>Add a manual dependency on ssh_namespace.h.</title>
<updated>2006-05-13T21:38:16Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2006-05-13T21:38:16Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=9fd9594daf9457ae7b72e53860d2534f4207a23d'/>
<id>urn:sha1:9fd9594daf9457ae7b72e53860d2534f4207a23d</id>
<content type='text'>
Discussed with:	ru
</content>
</entry>
<entry>
<title>Introduce a namespace munging hack inspired by NetBSD to avoid polluting</title>
<updated>2006-05-13T13:47:45Z</updated>
<author>
<name>Dag-Erling Smørgrav</name>
<email>des@FreeBSD.org</email>
</author>
<published>2006-05-13T13:47:45Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src/commit/?id=ed22e27d8a1315950938ff1080b06b31aa0df3bb'/>
<id>urn:sha1:ed22e27d8a1315950938ff1080b06b31aa0df3bb</id>
<content type='text'>
the namespace of applications which inadvertantly link in libssh (usually
through pam_ssh)

Suggested by:	lukem@netbsd.org
MFC after:	6 weeks
</content>
</entry>
</feed>
