ChangeLog 39.1 KB
Newer Older
Niels Möller's avatar
Niels Möller committed
1
2
3
4
5
2000-05-30  Niels Mller  <nisse@lysator.liu.se>

	* src/invert-defs: Improved awk-code to deal with repeated message
	numbers. Thanks to bellman.

Niels Möller's avatar
Niels Möller committed
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
2000-05-29  Niels Mller  <nisse@lysator.liu.se>

	* src/testsuite/macros.m4 (TS_STRING): Ignore newlines in hex
	literals. 
	(TS_TEST_STRING_EQ): Construct values only once.
	(TS_TEST_HMAC): New macro.

	* src/testsuite/Makefile.am (TS_PROGS): Added sha1-test and
	m5-test. 

	* src/testsuite/sha1-test.m4: New file.
	* src/testsuite/md5-test.m4: New file.

	* src/digit_table.c (main): There's no hex digit with the value
	16. 

	* src/abstract_crypto.c (mac_string): New function.

Niels Möller's avatar
Niels Möller committed
24
25
2000-05-28  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
	* src/werror.c (werror_hexdump): Include an ascii column in the
	output. 

	* src/unix_user.c (do_read_file): Fixed call to ssh_format.

	* src/publickey_crypto.h (make_dh): Added prototype.

	* src/dh_exchange.c (init_dh_instance): Use hex in debug output. 

	* src/client_keyexchange.c (srp_client_instance): Removed salt
	attribute. 
	(do_handle_srp_reply): Bug fixes.

	* doc/Makefile.am.in: Added pattern rule for RFC-like nroff
	formatting. 

Niels Möller's avatar
Niels Möller committed
42
43
44
45
46
47
48
49
50
	* src/srp_exchange.c (srp_make_verifier): New function.
	(srp_hash_password): Fixed call to ssh_format.
	(srp_make_init_msg): Likewise.
	(srp_make_reply_msg): Likewise.

	* src/publickey_crypto.c (make_ssh_group1): New funcction.

	* src/lshd.c: Added SRP support. New options --srp-keyexchange,
	--no-srp-keyexchange, --dh-keyexchange, --no-dh-keyexchange.
Niels Möller's avatar
Niels Möller committed
51
	* src/lsh.c: Likewise.
Niels Möller's avatar
Niels Möller committed
52
53
54
55
56
57
58
59

	* src/dh_exchange.c (make_dh): New function.
	(make_dh1): Use make_dh() and make_ssh_group1().

	* src/command.h (COMMAND_STATIC): New macro.

	* src/Makefile.am.in (bin_PROGRAMS): Added srp-gen.

Niels Möller's avatar
Niels Möller committed
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
	* src/unix_user.c (do_read_file): Changed USER_READ_FILE to use
	exceptions and continuations.

	* src/ssh.h: Added message numbers for SRP key exchange and dh
	group negotiation. 

	* src/srp_exchange.c: Various bugfixes. At least compiles now.

	* src/sexp.c (sexp_check_type_l): Renamed tthe sexp_check_type
	function. 
	(sexp_check_type): Moved and renamed the spki_check_type function.
	(sexp2bignum_u): New function.
	(sexp_atom_eq): New function.
	(sexp_atoms_eq): Renamed the previos sexp_atom_eq function.
	(sexp_get_un): Use sexp2bignum_u.

	* src/publickey_crypto.h: Renamed all occurences of
	"diffie_hellman" do "dh".

	* src/publickey_crypto.c (zn_ring_add): New function.
	(zn_ring_subtract): New function.

	* src/keyexchange.c (kex_build_secret): Use a string rather than a
	bignum for the third argument.
	(keyexchange_finish): New function.

	* src/io.c (check_user_permissions): Made fname argument const.
	(io_read_user_file): Fixed call to fstat().

	* src/invert-defs: Use -u flag to sort (is that a GNU:ism?)

	* src/exception.c (make_protocol_exception): Updated with new
	messages. 

	* src/dh_exchange.c (dh_hash_update): New (or ersurrected)
	function. 
	(dh_hash_digest): Don't hash the host key here.
	(dh_make_server_msg): Hash host key.
	(dh_process_server_msg): Likewise.

	* src/client_keyexchange.h (make_srp_client): New prototype.

	* acconfig.h: Added WITH_SRP.

	* configure.in: Include sys/types.h when checking for utmp
	members.
	Added --disable-srp option.

	* src/client_keyexchange.c (do_handle_dh_reply): Use
	keyexchange_finish().
	First attempt at SRP support.
	* src/server_keyexchange.c: Likewise
	
	* src/atoms.in: Added srp-group1-sha1, srp-verifier and ssh-group1.

Niels Möller's avatar
Niels Möller committed
115
116
2000-05-27  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
117
118
	* src/testsuite/Makefile.am (TS_MORE_SH): Added lsh-4-test.

Niels Möller's avatar
Niels Möller committed
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
	* src/publickey_crypto.h: Renamed the class group to abstract_group.
	(GROUP_RANGE): Renamed from GROUP_MEMBER, as it actually doesn't
	check membership.
	(GROUP_SMALL_POWER): New method, for raising a group element to a
	power that fits in an UINT32.
	(abstract_group): Added generator attribute.

	* src/publickey_crypto.c: Moved most dh-related code to
	dh_exchange.c. Moved the definition of the group_zn class to
	publickey_crypto.h. 

	* src/Makefile.am.in (liblsh_a_SOURCES): Added dh_Exchange.c and
	srp_exchange.c. 

	* src/userauth.h (lsh_user): Added read_file method.

	* src/unix_user.c (do_read_file): New function.
	(make_unix_user_db): Added backend argument.

	* src/io.c (check_user_permissions): New function.
	(io_read_user_file): New function.

	* src/io.h (io_read_user_file): Added prototype.

Niels Möller's avatar
Niels Möller committed
143
144
145
146
2000-05-24  Niels Mller  <nisse@cuckoo.localdomain>

	* contrib/lsh.spec.in: Use -o flag for lsh_writekey (Thayne).

Niels Möller's avatar
Niels Möller committed
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
2000-05-22  Niels Mller  <nisse@cuckoo.localdomain>

	* src/io.c (do_kill_fd): Call close_fd_nicely(). This fixes a
	problem, where output from for instance "lsh host echo foo" loses
	output because the channel is closed before the output is flushed
	from the write buffer.

	* src/channel.c (adjust_rec_window): Check the state of the
	channel, and send the SSH_MSG_CHANNEL_WINDOW_ADJUST message only
	if it makes sense.

	* src/dsa.c (do_dsa_verify): Removed the extra length field, as it
	seems it will disappear in the next draft.
	(do_dsa_sign): Likewise.

Niels Möller's avatar
Niels Möller committed
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
2000-05-21  Niels Mller  <nisse@cuckoo.localdomain>

	* configure.in: Bumped version to 0.9.10.

	* acinclude.m4 (AC_SEARCH_LIBGMP): Use HAVE_GMP_H and
	HAVE_GMP2_GMP_H. 

	* configure.in (gmp_header_found): Changed "no gmp" error message
	not to refer to a particular version.

	* src/dsa.c (do_dsa_verify): Require outer length field.
	(do_dsa_sign): Add outer length field.

	* src/ssh.h (SSH_DISCONNECT_TOO_MANY_CONNECTIONS): Updated for
	draft-ietf-secsh-transport-07.txt.
	(SSH_DISCONNECT_AUTH_CANCELLED_BY_USER): Likewise.
	(SSH_DISCONNECT_NO_MORE_AUTH_METHODS_AVAILABLE): Likewise.
	(SSH_DISCONNECT_ILLEGAL_USER_NAME): Likewise.
	(SSH_DISCONNECT_RESERVED): Likewise.

	* src/client.c (do_exit_signal): Use control character filtering
	on the message.

Niels Möller's avatar
Niels Möller committed
185
186
187
188
189
190
2000-05-19  Niels Mller  <nisse@lysator.liu.se>

	* src/client_userauth.c (do_userauth_pk_ok): Moved else across
	"#endif /* DATAFELLOWS_WORKAROUNDS */" (reported by Sami
	Lehtinen). 

Niels Möller's avatar
Niels Möller committed
191
192
193
194
195
2000-05-09  Niels Mller  <nisse@lysator.liu.se>

	* src/unix_user.c (do_fork_process): Check HAVE_UT_NAME and
	HAVE_UT_USER. 

Niels Möller's avatar
Niels Möller committed
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
2000-05-08  Niels Mller  <nisse@cuckoo.localdomain>

	* acconfig.h (HAVE_UT_NAME): Added.
	(HAVE_UT_USER) Added.

	* configure.in: Bumped version to 0.9.9.
	Added --with-lib-path option, RPATH handling, and checks for
	libutil.h, ut_name and ut_user. Fixed gmp check to recognize
	gmp-3.x. 

	* src/unix_user.c: Include libutil.h if available (reported by
	Jonathan McDowell).
	(lsh_make_utmp): Use ut_user if ut_name is not available.
	(reported by Jonathan McDowell).

	* src/server_session.c: Include signal.h (reported by Jonathan
	McDowell). 

	* src/symmetric/desTest.c: Eliminate warnings.

	* src/io.c (address_info2sockaddr) [!HAVE_GETADDRINFO]: Initialize
	addr->sin_family properly (reported by Jonathan McDowell).

	* acinclude.m4 (LSH_RPATH_INIT): New macro.
	(LSH_RPATH_FIX): Likewise.
	(AC_SEARCH_LIBGMP): Likewise.

2000-05-07  Niels Mller  <nisse@cuckoo.localdomain>

	* src/lsh_types.h: Include stddef.h.

	* configure.in: Fixes for recognizing gmp-3.x.

	* acinclude.m4 (AC_CHECK_LIBGMP): New macro.

	* acconfig.h: Added HAVE_LIBGMP

233
234
2000-05-06  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
235
236
237
238
239
240
241
242
243
244
	* configure.in: Bumped version to 0.9.8.

	* src/sexp.c (sexp_argp_parser): Renamed output-format option from
	-o to -f.

	* src/lsh_writekey.c (main_options): #if:ed out the -f alias.

	* doc/lsh.texinfo (Getting started): Updated example on using
	lsh_writekey. 

245
246
247
248
249
250
251
252
253
	* src/tcpforward_commands.c (do_remote_port_install_continuation):
	Handle only the successful case here.

	* src/connection.c (make_ssh_connection): Bugfix: Don't apply
	SSH_CHANNEL_MAX_PACKET_FUZZ here.

	* src/client_userauth.c (client_publickey_next): Fixes for the
	case where we send complete signatures for several keys.

Niels Möller's avatar
Niels Möller committed
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
2000-05-01  Niels Mller  <nisse@cuckoo.localdomain>

	* src/testsuite/keygen-test: Use -o flag to lsh_writekey.

	* src/spki_commands.c (make_pkcs5_encrypt): New function.

	* src/spki.c: Deleted old #if'ed out code.

	* src/sexp.c (sexp_s): Renamed from make_sexp_string(). Updated
	all callers.

	* src/pkcs5.c (pkcs5_derive_key): Renamed pkcs5_key_derivation().
	Added comments trying to analyze the choice of iteration count.

	* src/lsh_writekey.c: Major reorganization. Use argp, and support
	pkcs5-style encryption. 

	* src/lsh_keygen.c (main_argp_parser): Removed ARGP_KEY_ARG case. 
	* src/lshd.c (main_argp_parser): Likewise.

	* src/io.c (safe_pushd): Use char * for the directory argument. 

	* src/crypto.h (pkcs5_derive_key): Renamed pkcs5_key_derivation(). 

	* src/algorithms.c (lookup_crypto): Added an extra argument for
	returning tha algorithm object, not just the name. Updated all
	callers. 
	(lookup_mac): Likewise.
	(lookup_compression): Likewise.
	(lookup_hash): Likewise.
	(vlist_algorithms): Made non-static. 
	(list_algorithms): Likewise.
	(list_crypto_algorithms): Likewise.
	(list_mac_algorithms): Likewise.
	(list_compression_algorithms): Likewise.

	* src/abstract_crypto.c (crypt_string_pad): New function.
	(crypt_string_unpad): New function.

	* src/Makefile.am.in (noinst_PROGRAMS): Added pkcs5-test.

Niels Möller's avatar
Niels Möller committed
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
2000-04-23  Niels Mller  <nisse@cuckoo.localdomain>

	* src/testsuite/Makefile.am (TS_PROGS): Added twofish-test.

	* Constness improvements.
	
	* src/pkcs5.c: New file.

	* src/keyexchange.c (kex_make_mac): Pass key length to MAKE_MAC. 

	* src/io.c (safe_popd): New function.
	(safe_pushd): New function.

	* src/hmac.c (make_hmac_instance): Added key length argument, and
	implemented variable size keys.

	* src/gc.c (gc_kill): Implemented early deallocation.

	* src/crypto.h (pkcs5_key_derivation): Added prototype.

	* src/abstract_crypto.h (MAKE_MAC): Added key length argument. 
	Const-ness fixes.

	* src/Makefile.am.in (liblsh_a_SOURCES): Added pkcs5.c. 

	* acinclude.m4 (AC_CHECK_MEMBER): Bug fix. 

Niels Möller's avatar
Niels Möller committed
322
323
324
325
326
327
328
2000-04-22  Niels Mller  <nisse@lysator.liu.se>

	* src/unix_user.c (lsh_make_utmp): Check HAVE_UT_HOST.

	* src/io.c: include sys/stat.h
	(io_listen_local, io_connect_local): Use AF_UNIX, not AF_LOCAL

Niels Möller's avatar
Niels Möller committed
329
330
331
332
2000-04-22  Niels Mller  <nisse@cuckoo.localdomain>

	* configure.in: Bumped version.

Niels Möller's avatar
Niels Möller committed
333
334
2000-04-21  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
335
336
	* Removed lots of old #if:ed out code.
	
Niels Möller's avatar
Niels Möller committed
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
	* src/testsuite/lsh-cat-test: Use diff to check result.

	* src/userauth.h: Added more arguments to the USER_FORK method. 

	* src/unix_user.c (make_logout_cleanup): New function.
	(lsh_strncpy): New funtion.
	(lsh_strncpy_tty): Kew function.
	(lsh_make_utmp): New function.
	(process_resource): Class moved here from server_session.c. 
	(do_fork_process): Added utmp/wtmp support, and some more
	arguments. 

	* src/tcpforward_commands.c (do_tcpip_connect_io): Take a
	listen_value as argument, not an lsh_fd.

	* src/sexp_commands.c (do_read_sexp): Changed
	CAST_SUBTYPE(lsh_fd...) to CAST(lsh_fd...)
	* src/tcpforward.c (do_tcpip_forward_request_continuation):
	Likewise. 

	* src/server_session.c (spawn_process): Added peer argument, and
	updated callers.
	(spawn_process): Adapted to the changed USER_FORK method.

	* src/lsh.h: Added forward declarations for struct reap and struct
	exit_callback. 

	* src/io_commands.c (make_connect_continuation): New function. 
	(do_connect): Return a listen_value, not an lsh_fd. Now,
	"listen_value" is an inappropriate name.

	* src/io_commands.c (io_log_peer_command): Don't strip peer
	information.  

	* src/io.c (io_listen_local): Use fchdir().
	(io_connect_local): New function.

	* src/connection_commands.c (do_handshake): Take a listen_value
	as argument, not an lsh_fd.

	* src/connection.c (make_ssh_connection): Added peer argument. 

Niels Möller's avatar
Niels Möller committed
379
380
2000-04-20  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
381
382
383
384
385
386
387
388
389
390
391
392
393
394
	* src/tcpforward_commands.c: Changed uses of listen_command to
	listen_callback.

	* src/tcpforward.c (do_tcpip_forward_request_continuation,
	do_tcpip_forward_request_exc): Moved handling of the failure case
	to the exception handler.

	* src/io_commands.c (make_simple_listen): Deleted resources argument.
	(make_remember_continuation): New function. (Currently not used).
	(do_listen): Generalized, so that it can be used by all of
	do_simple_listen, do_listen_with_callback and do_listen_with_connection.
	(listen_with_callback):  Renamed the improperly named listen_connection.
	(listen_with_connection): New command.

Niels Möller's avatar
Niels Möller committed
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
	* src/client_userauth.c (make_banner_handler): Replaced with
	a static object.

	* src/channel.c (do_channel_open): Use SSH_CHANNEL_MAX_PACKET_FUZZ
	* src/server_session.c (make_server_session): Likewise.
	* src/client.c (make_client_session): Likewise.
	* src/tcpforward.c (make_tcpip_channel): Likewise

	* src/command.h (command_context): Updated comment.

	* src/connection.c (make_fail_handler): Replaced with static object.
	(make_unimplemented_handler): Likewise.

	* src/disconnect.c (make_disconnect_handler): Replaced with a
	static object.

	* src/io.c (choose_address): Choose one address fron an
	addrinfo-list, using a list of preferred address families.
	(address_info2sockaddr): Added preference argument. Updated all
	calls. 

	* src/lookup_verifier.h (lookup_verifier): Updated comments. 

	* src/zlib.c (struct zlib_type): New type.
	(do_free_zstream): Don't rely on casting the void * opaque to a
	function pointer. 
	(do_zlib): Improved messages.

	* src/read_data.c (make_read_data): Deleted the overhead argument. 

	* src/ssh.h (SSH_CHANNEL_MAX_PACKET_FUZZ): New constant.

	* src/algorithms.c (prefer_compression_algorithms): New function. 
	(algorithms_argp_parser): Changed behaviour of -z with no argument.

	* doc/lsh.texinfo (Algorithm options): Documented change of -z
	behaviour. 

Niels Möller's avatar
Niels Möller committed
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
2000-04-19  Niels Mller  <nisse@cuckoo.localdomain>

	* src/xalloc.h [DEBUG_ALLOC] (CHECK_TYPE, CHECK_SUBTYPE): Return
	the object pointer. Needed by CLONE()

	* src/userauth.h (lsh_user): Added tty-argument to the fork
	method. 

	* src/unix_user.c (do_fork_process): Call logwtmp. For now, the
	host-name is bogus.

	* src/server_session.c (do_kill_process): Call logout(), to update
	wtmp. 
	(spawn_process): Construct tty name for utmp/wtmp logging.
	(lsh_basename): New function.

	* src/lsh.c, src/lshd.c, src/lsh_proxy.c: Improved default
	behaviour if no --port argument is given.

	* src/io_commands.c (do_listen, do_listen_connection, do_connect):
	IPv6 support. 

	* src/io.c (get_inaddr): Removed.
	(tcp_addr): Likewise.
	(make_address_info_c): Added an extra argument used as fallback if
	service lookup fails.
	(sockaddr2info): IPv6 support.
	(address_info2sockaddr): Rewrote, to handle IPv6 and to allocate
	the returned sockaddr structure dynamically.

	* src/connection.h (ssh_connection): Added peer attribute,
	currently unused.

	* src/atoms.in: Added rsa-related atoms.

	* configure.in: Replaced many calls to AC_ARG_WITH with
	AC_ARG_ENABLE. Added --disable-ipv6 and --disable-utmp flags.

	* acconfig.h: Added WITH_IPV6 and WITH_UTMP.

2000-04-18  Niels Mller  <nisse@cuckoo.localdomain>

	* src/io_commands.c (do_listen_continue): Use make_listen_value().

Niels Möller's avatar
Niels Möller committed
477
478
2000-04-17  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
479
480
481
482
483
	* src/publickey_crypto.h (make_rsa_algorithm): Added prototype. 

	* src/io.c (io_iter): Use #ifdef:s around tests for POLLNVAL,
	POLLPRI and POLLHUP.

Niels Möller's avatar
Niels Möller committed
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
	* configure.in: Bumped version to 0.9.6.

2000-04-16  Niels Mller  <nisse@cuckoo.localdomain>

	* src/io.c (io_listen): Take a sockaddr * rather than a
	sockaddr_in *. 
	(io_listen_local): Implemented local sockets. Currently #if:ed
	out. 

	* src/io_commands.c (do_listen): Pass a sockaddr * rather than a
	sockaddr_in * to io_listen.
	(do_listen_connection): Likewise.

	* src/lsh_types.h (OFFSETOF): Define, if needed.

	* src/lsh.h (NUL_TERMINATED): New macro.

	* src/dsa.c (WITH_DSA_CLASSIC): Deleted this unused macro.

	* configure.in (lsh_cv_c_offsetof): Check for offsetof.

	* src/unix_user.c (make_unix_user): Use NUL_TERMINATED macro.

	* acconfig.h (HAVE_C_OFFSETOF): New macro. 

Niels Möller's avatar
Niels Möller committed
509
510
511
512
2000-04-13  Niels Mller  <nisse@lysator.liu.se>

	* src/unix_user.c (do_exec_shell): Fixed debug() call.

Niels Möller's avatar
Niels Möller committed
513
514
515
516
517
518
519
520
521
522
523
2000-04-12  Niels Mller  <nisse@cuckoo.localdomain>

	* src/testsuite/Makefile.am (TS_MORE_SH): Added lsh-cat-test.

	* src/testsuite/functions.sh (exec_lsh): New function. 

	* src/server_session.c (do_spawn_exec): Don't spawn a login-mode
	shell.
	(do_send_adjust): Check that files are alive before operating on
	them. 

Niels Möller's avatar
Niels Möller committed
524
525
526
527
528
2000-04-11  Niels Mller  <nisse@cuckoo.localdomain>

	* src/io.c (io_listen_local): Started on AF_LOCAL support.
	Currently disabled.

Niels Möller's avatar
Niels Möller committed
529
530
531
532
2000-04-11  Niels Mller  <nisse@lysator.liu.se>

	* src/lshd.c (main_argp_parser): Fixed root-login option.

Niels Möller's avatar
Niels Möller committed
533
534
535
536
537
2000-04-10  Niels Mller  <nisse@cuckoo.localdomain>

	* configure.in: Bumped version to 0.9.5.
	Fixed descriptions of options.

Niels Möller's avatar
Niels Möller committed
538
539
540
541
542
2000-04-06  Niels Mller  <nisse@lysator.liu.se>

	* src/channel.c (do_window_adjust): Allow CHANNEL_WINDOW_ADJUST
	when we have received EOF but not CLOSE. Noted by Markus Friedl.

Niels Möller's avatar
Niels Möller committed
543
544
545
546
547
548
549
2000-04-02  Niels Mller  <nisse@lysator.liu.se>

	* configure.in: Bumped version to 0.9.4.

	* src/userauth.h: Renamed class user to lsh_user, to avoid name
	clash with glibc. 

Niels Möller's avatar
Niels Möller committed
550
551
552
553
2000-04-02  Niels Mller  <nisse@cuckoo.localdomain>

	* contrib/Makefile.am (EXTRA_DIST): Added lshd.debian.init 

Niels Möller's avatar
Niels Möller committed
554
555
556
557
2000-04-01  Niels Mller  <nisse@cuckoo.localdomain>

	* src/unix_user.c (do_exec_shell): Fixed MAX_ENV check.

Niels Möller's avatar
Niels Möller committed
558
559
560
561
562
563
564
565
566
2000-03-29  Niels Mller  <nisse@cuckoo.localdomain>

	* src/unix_user.c (do_lookup_user): Improved shadow support,
	following suggestions by Thayne Harbaugh.

2000-03-28  Niels Mller  <nisse@cuckoo.localdomain>

	* contrib/lshd.rhlinux.init: chkconfig priorities.

Niels Möller's avatar
Niels Möller committed
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
2000-03-26  Niels Mller  <nisse@cuckoo.localdomain>

	* src/server_session.c (server_session): New attribute
	initial_window. 

	* src/client.c (make_client_session): Removed references to
	max_window. 

	* src/channel.c (channel_start_receive): Added argument
	initial_window_size. Removed references to max_window.
	(format_global_request): New function.

	* src/channel.h (ssh_channel): Removed obsolete max_window
	attribute.  
	(channel_open): Added send_window_size argument.

	* src/Makefile.am.in (liblsh_a_SOURCES): Added gateway_channel.c.
	Removed proxy_channel.c.

	* src/gateway_channel.c: New file. More or less copied from
	proxy_channel.c. 

Niels Möller's avatar
Niels Möller committed
589
590
591
592
593
594
595
596
597
598
599
600
2000-03-19  Niels Mller  <nisse@cuckoo.localdomain>

	* src/unix_user.c (do_lookup_user): Honor shadow-style password
	aging and account expiration.

	* configure.in: Bumped version to 0.9.2.

	* src/unix_user.c (do_file_exists): Deallocate the name properly.

	* src/server_authorization.c (do_key_lookup): Don't free the
	filename twice.

Niels Möller's avatar
Niels Möller committed
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
2000-03-16  Niels Mller  <nisse@cuckoo.localdomain>

	* src/proxy.c, src/proxy.h: Merged changes (Bazsi).

	* src/lsh_proxy.c: More features (Bazsi).

	* src/lsh.c (WINDOW_SIZE): Decreased to 10000.
	* src/server_session.c (WINDOW_SIZE): Likewise.

	* src/channel.h (ssh_channel): Replaced CHANNEL_SEND method with
	CHANNEL_SEND_ADJUST. 
	(CHANNEL_OPEN): Added send_max_packet argument.

	* src/channel.c (format_open_confirmation): Added debug output. 
	(do_channel_open): Pass send_packet_size to the CHANNEL_OPEN
	method, and round it down to SSH_MAX_PACKET if needed.
	(do_window_adjust): Pass the window adjustment to the
	CHANNEL_SEND_ADJUST method.

	(do_channel_data): Check that data length is less than
	rec_max_packet. More debug output.
	(do_channel_extended_data): Likewise.

	* src/proxy_agentforward.c, src/proxy_agentforward.h,
	proxy_x11forward.c, proxy_x11forward.h: New files (Bazsi). 

	* src/Makefile.am.in (liblsh_a_SOURCES): Added
	proxy_agentforward.c and proxy_x11forward.c.

	* configure.in: Bumped version to 0.9.1.
	(--without-x11-forward, --without-agent-forward): New flags. So
	far, used only by the proxy.

	* acconfig.h (WITH_X11_FORWARD, WITH_AGENT_FORWARD): New defines.  

2000-03-14  Niels Mller  <nisse@cuckoo.localdomain>

	* src/server_session.c (do_spawn_exec): New function.
	(make_exec_handler): New function.

	* src/lshd.c (main): Enable command execution.

	* src/format.c (make_cstring_l): New function.

Niels Möller's avatar
Niels Möller committed
645
646
647
648
649
2000-03-13  Niels Mller  <nisse@lysator.liu.se>

	* src/lsh.c (lsh_options): Renamed stdin attribute to stdin_file,
	and similarly for stdout and stderr.

Niels Möller's avatar
Niels Möller committed
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
2000-03-08  Niels Mller  <nisse@cuckoo.localdomain>

	* src/server_session.c (do_login): Fixed message.
	(do_spawn_shell): Adapted to improved user class.

	* src/server_userauth.h: Removed unix_user_db class (moved to
	unix_user.c). 

	* src/server_publickey.c (do_authenticate): Use the user
	superclass rather than unix_user.

	* src/server_password.c (do_authenticate): Use the new
	USER_VERIFY_PASSWORD method.

	* src/server_authorization.c (do_key_lookup): Use the new
	USER_FILE_EXISTS method.

	* src/Makefile.am.in (liblsh_a_SOURCES): Added unix_user.c.

	* src/werror.c (error_fd): Made  static.
	(dup_error_stream): New function.
	(set_error_ignore, set_error_syslog): Set error_fd to -1.

	* src/userauth.h (user): Added uid attribute, and a bunch of
	methods. 

	* src/unix_user.c: New file, implementing the unix_user class. 

Niels Möller's avatar
Niels Möller committed
678
679
680
681
682
683
684
685
686
687
688
689
2000-03-07  Niels Mller  <nisse@cuckoo.localdomain>

	* src/lsh.c: Implemented rsh-style operation, and the -S and -E
	action options. 

	* src/client.c (make_exec_request): New function.

2000-03-06  Niels Mller  <nisse@cuckoo.localdomain>

	* src/client_pty.c (do_format_pty_request): Free the terminal-mode
	string. 

Niels Möller's avatar
Niels Möller committed
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
2000-03-02  Niels Mller  <nisse@cuckoo.localdomain>

	* src/rsync/send.c: Improved the sending state machine. Still
	missing some pieces.

	* src/rsync/checksum.c (rsync_search): Increment i in the middle
	of the loop.

	* src/rsync/Makefile.am (librsync_a_SOURCES): Added send.c.

2000-02-27  Niels Mller  <nisse@cuckoo.localdomain>

	* src/rsync/generate.c (rsync_update): Call rsync_update_1.

	* src/rsync/Makefile.am (librsync_a_SOURCES): Added checksum.c. 

Niels Möller's avatar
Niels Möller committed
706
707
708
709
710
711
712
713
714
715
716
717
2000-02-26  Niels Mller  <nisse@cuckoo.localdomain>

	* src/Makefile.am.in (SUBDIRS): Added rsync.

	* configure.in (lsh_cv_c_attribute): Output src/rsync/Makefile. 

	* src/lsh_types.h (WRITE_UINT16): Added READ_UINT16 and
	WRITE_UINT16 macros.

	* src/connection_commands.c (do_line): Recognize ssh-2.1.0 (Markus
	Friedl) 

Niels Möller's avatar
Niels Möller committed
718
719
720
721
722
723
724
725
726
727
728
729
730
731
732
733
734
735
736
737
738
739
740
741
742
743
744
745
746
747
748
749
750
751
752
753
754
755
756
757
758
759
760
761
762
763
764
765
766
767
768
769
770
2000-02-22  Niels Mller  <nisse@cuckoo.localdomain>

	* doc/lsh.texinfo (Invoking lshd): Adding doc for --root-login. 

	* src/version.h (BUG_ADDRESS): New constant.

	* src/userauth.h (user): New class.

	* src/sexp_conv.c (argp_program_version,
	argp_program_bug_address): New constants.

	* src/server_userauth.c (make_unix_user_db): New function.
	(do_lookup_user): Check allow_root flag.

	* src/server_session.c (do_login): Write log message.

	* src/server_publickey.c (make_userauth_publickey): Take user_db
	argument.
	
	* src/server_password.c (make_userauth_password): New function. 

	* src/server_authorization.c (do_key_lookup): Take user as
	argument. 

	* src/lshd.c (argp_program_version, argp_program_bug_address): New
	constants.
	(main_options): New options --root-login and --no-root-login.
	(main_argp_parser): Use make_unix_user_db().

	* src/lsh_proxy.c (argp_program_version,
	argp_program_bug_address): New constants.

	* src/lsh_keygen.c (argp_program_version,
	argp_program_bug_address): New constants.

	* src/lsh.c (argp_program_version): New constant. 
	(argp_program_bug_address): New constant.

	* src/lookup_verifier.h (lookup_verifier): Changed third argument
	to authenticate method to struct user. 

	* src/lsh.h: Added forward declaration of struct user.

2000-02-21  Niels Mller  <nisse@cuckoo.localdomain>

	* src/algorithms.c (vlist_algorithms): New function.
	(list_algorithms): New function.
	(list_crypto_algorithms): New function.
	(list_mac_algorithms): New function.
	(list_compression_algorithms): New function.
	(algorithms_options): New option --list-algorithms.
	(algorithms_argp_parser): List supported algorithms on errors. 

Niels Möller's avatar
Niels Möller committed
771
772
773
774
775
776
777
778
779
780
781
782
783
784
785
786
787
788
2000-02-20  Niels Mller  <nisse@cuckoo.localdomain>

	* src/io_commands.c (do_listen_connection): Raise EXC_IO_LISTEN. 

	* src/tcpforward.c (make_tcpip_forward_request_exc): New function. 
	(do_tcpip_forward_request): Use a better exception handler.

	* src/read_data.c (make_read_data): Deleted assert checking
	send_max_packet.

	* src/zlib.c (do_free_zstream): Changed message from verbose() to
	debug():

	* src/testsuite/Makefile.am (TS_MORE_SH): Added tcpip-remote-test. 

	* src/testsuite/functions.sh: Pass --enable-core to lshd.
	Use set -e and set +e.

Niels Möller's avatar
Niels Möller committed
789
790
791
792
793
794
795
796
797
798
799
800
801
802
803
2000-02-17  Niels Mller  <nisse@cuckoo.localdomain>

	* README: Updated disclaimer to be a little less pessimistic.  

	* doc/TODO, doc/TASKLIST: Updated.

	* doc/lsh.texinfo (Top): Added GNU reference.

	* Makefile.am.in (EXTRA_DIST): Added ANNOUNCE file.

	* configure.in: Bumped version to 0.9.

	* src/zlib.c (do_free_zstream): Only output message about problems
	when freeing the z stream when in debug mode.

Niels Möller's avatar
Niels Möller committed
804
805
806
807
2000-02-17  Niels Mller  <nisse@lysator.liu.se>

	* src/zlib.c (do_zlib): Z_BUF_ERROR is normal.

Niels Möller's avatar
Niels Möller committed
808
809
810
811
812
813
814
815
816
817
818
819
820
821
822
823
824
2000-02-15  Niels Mller  <nisse@cuckoo.localdomain>

	* src/unpad.c (do_unpad): Use SSH_MAX_PACKET_FUZZ, as inflating
	happens after unpadding.

	* src/connection.c (handle_connection): Check packet length.

	* configure.in: Bumped version to 0.2.9.

	* src/channel.c (make_channel_read_data): Take packet overhead
	into consideration.
	(make_channel_read_stderr): D:o.

	* src/read_data.c (do_read_data_query): Subtract some overhead
	from the max packet size.
	(make_read_data): Added overhead argument.

Niels Möller's avatar
Niels Möller committed
825
826
827
828
829
830
831
832
833
2000-02-09  Niels Mller  <nisse@cuckoo.localdomain>

	* acinclude.m4: New file.

	* src/io.c (do_listen_callback): Use socklen_t.
	(do_connect_callback): Use socklen_t.

	* doc/lsh.texinfo: Wrote secions on invoking lsh and lshd. 

Niels Möller's avatar
Niels Möller committed
834
835
836
837
838
839
840
841
842
843
844
2000-02-07  Niels Mller  <nisse@cuckoo.localdomain>

	* src/tcpforward_commands.c (forward_local_port): Use
	connection_remember. 

	* src/io.c (io_iter): Use a double loop around the close logic, to
	handle close-callbacks that close other files.
	Changed shorter debug() messages to use trace() instead.

	* src/connection_commands.c (connection_remember): New command. 

Niels Möller's avatar
Niels Möller committed
845
846
2000-02-06  Niels Mller  <nisse@cuckoo.localdomain>

847
848
849
850
851
852
853
854
855
856
857
858
859
860
861
862
863
864
865
866
867
868
869
870
871
872
873
874
875
876
877
878
879
880
881
882
883
884
885
886
887
888
889
890
891
892
893
894
895
896
897
898
899
	* configure.in: Bumped version to 0.2.8.

	* src/tcpforward.c: Adapted to new CHANNEL_REQUEST conventions.

	* src/server_session.c: Adapted to new CHANNEL_REQUEST
	conventions.  

	* src/proxy_session.c: Updated to Bazsi's latest version.

	* src/proxy.c: Updated to Bazsi's latest version.

	* src/lsh_proxy.c: Updated to Bazsi's latest version.

	* src/debug.c (packet_debug): Changed prefix atribute to type
	string.  

	* src/connection_commands.c (make_handshake_info): Added
	debug_comment argument.

	* src/connection.c (make_ssh_connection): New argument
	debug_comment. 

	* src/client_pty.c (do_pty_continuation): Removed old code for the
	(impossible) case x == NULL.

	* src/client.c: Adapted to new CHANNEL_REQUEST conventions. 

	* src/channel.h (ssh_channel): Added active_requests queue
	(Bazsi). 
	(global_request_callback): Deleted class (Bazsi).
	(global_request): Added type, continuation and exception_hnalder
	arguments do the GLOBAL_REQUEST method (Bazsi).
	(channel_request): Likewise.

	* src/channel.c (make_request_status): Renamed from
	make_global_request_status (Bazsi).
	(global_request_continuation): New class (Bazsi).
	(send_global_request_responses): New function (Bazsi).
	(do_global_request_response): Use send_global_request_responses(). 
	(global_request_exception_handler): New class (Bazsi).
	(make_global_request_exception_handler): New function (Bazsi).
	(do_global_request): Pass a continuation and an exception handler
	to the GLOBAL_REQUEST-method.
	(send_channel_request_responses): New function (Bazsi).
	(channel_request_continuation): New class (Bazsi).
	(channel_request_continuation): New class (Bazsi).
	(do_channel_request): Pass a continuation and an exception to the
	CHANNEL_REQUEST-method. 
	(init_channel): Initialize active_requests.

	* src/Makefile.am.in (liblsh_a_SOURCES): AAdded proxy_channel.c
	and proxy_tcpforward.c.

Niels Möller's avatar
Niels Möller committed
900
901
902
903
904
905
906
907
908
909
910
911
912
913
914
915
916
917
918
919
920
921
922
923
924
925
926
927
928
929
930
931
932
933
934
935
936
	* src/tcpforward_commands.c (new_tcpip_channel): Use
	format_channel_open(). 

	* src/proxy_session.c (do_proxy_open_channel): Use
	format_channel_open(). 

	* src/lsh-authorize: Tried to remove bash-isms. 

	* src/client.c (new_session): Use format_channel_open.

	* src/channel_commands.h (channel_open_command): Added
	local_channel_number argument to NEW_CHANNEL. 

	* src/channel_commands.c (do_channel_open_command): Call
	alloc_channel() and register_channel(), rather than delegating it
	to the NEW_CHANNEL method. Set the channel's exception handler
	properly. 

	* src/channel.c (use_channel): New function to take a channel in
	use. 
	(register_channel): New argument take_into_use.
	(lookup_channel_reserved): New function that returns channels that
	are marked as reserved, but not in use.
	(do_channel_open_continue): Call register_channel with
	take_in_use=1. 
	(do_channel_open_confirm): Use lookup_channel_reserved(). Call
	use_channel(). 
	(do_channel_open_failure): Use lookup_channel_reserved().
	(format_channel_open): Renamed from prepare_channel_open. Don't
	call alloc_channel() or register_channel().

	* src/channel.h (CHANNEL_FREE, CHANNEL_RESERVED, CHANNEL_IN_USE):
	New three-level classification for the in_use table.

	* src/channel.c (exc_finish_channel_handler): Use pointer to
	connection rather than to its channel table. 

Niels Möller's avatar
Niels Möller committed
937
938
2000-02-05  Niels Mller  <nisse@cuckoo.localdomain>

Niels Möller's avatar
Niels Möller committed
939
940
941
942
943
944
945
946
	* src/client.c (do_exit_status, do_exit_signal): Use the
	connection's exception handler for protocol errors.

	* src/channel.c (do_exc_finish_channel_handler): Raise
	EXC_FINISH_READ using the connection's exception handler.
	(make_exc_finish_channel_handler): Take a connection, rather than
	a channel_table, as argument.

Niels Möller's avatar
Niels Möller committed
947
948
949
950
951
952
953
954
955
956
957
958
959
960
961
962
963
964
965
966
967
968
969
970
971
972
973
974
975
976
977
978
979
980
981
982
983
984
985
986
987
	* src/io.c, src/io.h: Reorganized, and deleted all subclasses of
	lsh_fd.  
	(io_connect): Take a continuation as argument.
	(io_listen): Take an io_callback (typically of type
	io_listen_callback) as argument.
	(make_listen_callback): New function.

	* src/io_commands.c: Replaced io_fd with lsh_fd.

	* src/io_commands.h: Moved listen_value to io.h

	* src/tcpforward_commands.c (forward_local_port,
	tcpip_forward_hook): Catch EXC_CHANNEL_OPEN. 

	* src/proxy.c, src/server_session.c: Replaced io_fd with lsh_fd. 

	* src/read_data.c (make_read_data): Changed return type to
	io_callback. 

	* src/lshd.c: Replaced io_fd with lsh_fd.
	(main): Use make_report_exception_info().

	* src/lsh_types.h (STRSIGNAL): Use _sys_siglist on SGI.

	* src/lsh.h: Added forward declaration of listen_value.

	* src/exception.c (make_report_exception_info): New function. 

	* src/connection_commands.c: Replaced io_fd with lsh_fd.

	* src/command.h (STATIC_CATCH_REPORT): New macro.

	* src/command.c: New command catch_report.

	* src/client.c: Replaced io_fd with lsh_fd.

	* src/channel.c (do_channel_open_failure): Improved exception
	message. 
	(make_channel_read_data, make_channel_read_stderr): Changed return
	type to io_callback. 

Niels Möller's avatar
Niels Möller committed
988
989
990
991
992
2000-02-03  Niels Mller  <nisse@lysator.liu.se>

	* src/client.c (make_accept_service_handler): Use UINT32 for the
	service name.

Niels Möller's avatar
Niels Möller committed
993
994
995
996
997
2000-02-02  Niels Mller  <nisse@lysator.liu.se>

	* configure.in: Added check for inline.
	Bumped version to 0.2.7.

Niels Möller's avatar
Niels Möller committed
998
999
1000
2000-02-02  Niels Mller  <nisse@lysator.liu.se>

	* src/testsuite/functions.sh, src/testsuite/lsh-1-test,