freebsd-dev/crypto/openssh
Dag-Erling Smørgrav b7f9a9adc7 Paranoia: instead of a NULL conversation function, use one that always
returns PAM_CONV_ERR; moreover, make sure we always have the right
conversation function installed before calling PAM service functions.
Also unwrap some not-so-long lines.

MFC after:	3 days
2003-02-16 11:03:55 +00:00
..
openbsd-compat
regress
scard
acconfig.h
aclocal.m4
atomicio.c
atomicio.h
auth1.c
auth2-chall.c
auth2-hostbased.c
auth2-kbdint.c Remove code related to the PAMAuthenticationViaKbdInt option (which we've 2002-12-14 13:48:13 +00:00
auth2-none.c
auth2-pam-freebsd.c Paranoia: instead of a NULL conversation function, use one that always 2003-02-16 11:03:55 +00:00
auth2-pam.c
auth2-pam.h
auth2-passwd.c
auth2-pubkey.c
auth2.c Add a missing #include "canohost.h". 2002-12-14 13:48:47 +00:00
auth-bsdauth.c
auth-chall.c Fix keyboard-interactive authentication for ssh1. The problem was twofold: 2003-01-31 11:08:07 +00:00
auth-krb4.c
auth-krb5.c
auth-options.c
auth-options.h
auth-pam.c
auth-pam.h If possible, use pthreads instead of a child process for PAM. 2002-12-14 13:52:39 +00:00
auth-passwd.c
auth-rh-rsa.c
auth-rhosts.c
auth-rsa.c
auth-sia.c
auth-sia.h
auth-skey.c
auth.c
auth.h
authfd.c
authfd.h
authfile.c
authfile.h
bufaux.c
bufaux.h
buffer.c
buffer.h
canohost.c
canohost.h
ChangeLog
channels.c
channels.h
cipher.c
cipher.h
clientloop.c
clientloop.h
compat.c
compat.h
compress.c
compress.h
config.guess
config.h
config.sub
configure.ac
crc32.c
crc32.h
CREDITS
deattack.c
deattack.h
defines.h
dh.c
dh.h
dispatch.c
dispatch.h
entropy.c
entropy.h
fatal.c
fixpaths
fixprogs
FREEBSD-tricks
FREEBSD-upgrade
FREEBSD-Xlist
getput.h
groupaccess.c
groupaccess.h
hostfile.c
hostfile.h
includes.h
INSTALL
install-sh
kex.c
kex.h
kexdh.c
kexgex.c
key.c
key.h
LICENCE
log.c
log.h
loginrec.c
loginrec.h
logintest.c
mac.c
mac.h
Makefile.in
Makefile.inc
match.c
match.h
md5crypt.c
md5crypt.h
mdoc2man.pl
misc.c
misc.h
mkinstalldirs
moduli
monitor_fdpass.c
monitor_fdpass.h
monitor_mm.c
monitor_mm.h
monitor_wrap.c
monitor_wrap.h
monitor.c Fix keyboard-interactive authentication for ssh1. The problem was twofold: 2003-01-31 11:08:07 +00:00
monitor.h
mpaux.c
mpaux.h
msg.c
msg.h
myproposal.h
nchan2.ms
nchan.c
nchan.ms
OVERVIEW
packet.c
packet.h
pathnames.h
radix.c
radix.h
readconf.c
readconf.h
README
README.privsep
README.smartcard
readpass.c
readpass.h
RFC.nroff
rijndael.c
rijndael.h
rsa.c
rsa.h
scard-opensc.c
scard.c
scard.h
scp.1
scp.c
servconf.c
servconf.h
serverloop.c
serverloop.h
session.c Back out a lastlog-related change which is no longer relevant. 2002-12-14 13:40:21 +00:00
session.h
sftp-client.c
sftp-client.h
sftp-common.c
sftp-common.h
sftp-glob.c
sftp-glob.h
sftp-int.c
sftp-int.h
sftp-server.8
sftp-server.c
sftp.1
sftp.c
sftp.h
ssh1.h
ssh2.h
ssh_config document the current default value for VersionAddendum. 2003-02-11 12:11:15 +00:00
ssh_config.5 document the current default value for VersionAddendum. 2003-02-11 12:11:15 +00:00
ssh_prng_cmds.in
ssh-add.1
ssh-add.c
ssh-agent.1
ssh-agent.c Set the ruid to the euid at startup as a workaround for a bug in pam_ssh. 2003-02-07 15:48:27 +00:00
ssh-dss.c
ssh-dss.h
ssh-keygen.1
ssh-keygen.c
ssh-keyscan.1
ssh-keyscan.c
ssh-keysign.8
ssh-keysign.c
ssh-rand-helper.8
ssh-rand-helper.c
ssh-rsa.c
ssh-rsa.h
ssh.1
ssh.c
ssh.h
sshconnect1.c
sshconnect2.c
sshconnect.c
sshconnect.h
sshd_config document the current default value for VersionAddendum. 2003-02-11 12:11:15 +00:00
sshd_config.5 document the current default value for VersionAddendum. 2003-02-11 12:11:15 +00:00
sshd.8 The manual page lists only 2 files, however it reads as `three files' which is 2003-02-05 02:14:03 +00:00
sshd.c Force early initialization of the resolver library, since the resolver 2003-01-22 14:12:59 +00:00
sshlogin.c
sshlogin.h
sshpty.c
sshpty.h
sshtty.c
sshtty.h
tildexpand.c
tildexpand.h
TODO
ttymodes.c
ttymodes.h
uidswap.c
uidswap.h
uuencode.c
uuencode.h
version.c
version.h Bump patch date to 2003-02-01 (the day after I fixed PAM authentication 2003-02-03 11:11:36 +00:00
WARNING.RNG
xmalloc.c
xmalloc.h

- A Japanese translation of this document and of the OpenSSH FAQ is 
- available at http://www.unixuser.org/~haruyama/security/openssh/index.html
- Thanks to HARUYAMA Seigo <haruyama@unixuser.org>

This is the port of OpenBSD's excellent OpenSSH[0] to Linux and other
Unices.

OpenSSH is based on the last free version of Tatu Ylonen's sample
implementation with all patent-encumbered algorithms removed (to
external libraries), all known security bugs fixed, new features
reintroduced and many other clean-ups.  OpenSSH has been created by
Aaron Campbell, Bob Beck, Markus Friedl, Niels Provos, Theo de Raadt,
and Dug Song. It has a homepage at http://www.openssh.com/

This port consists of the re-introduction of autoconf support, PAM
support (for Linux and Solaris), EGD[1]/PRNGD[2] support and replacements 
for OpenBSD library functions that are (regrettably) absent from other 
unices. This port has been best tested on Linux, Solaris, HP-UX, NetBSD 
and Irix. Support for AIX, SCO, NeXT and other Unices is underway. 
This version actively tracks changes in the OpenBSD CVS repository.

The PAM support is now more functional than the popular packages of
commercial ssh-1.2.x. It checks "account" and "session" modules for
all logins, not just when using password authentication.

OpenSSH depends on Zlib[3], OpenSSL[4] and optionally PAM[5].

There is now several mailing lists for this port of OpenSSH. Please
refer to http://www.openssh.com/list.html for details on how to join.

Please send bug reports and patches to the mailing list
openssh-unix-dev@mindrot.org. The list is open to posting by
unsubscribed users.

If you are a citizen of an USA-embargoed country to which export of 
cryptographic products is restricted, then please refrain from sending 
crypto-related code or patches to the list. We cannot accept them.
Other code contribution are accepted, but please follow the OpenBSD
style guidelines[6].

Please refer to the INSTALL document for information on how to install
OpenSSH on your system. There are a number of differences between this 
port of OpenSSH and F-Secure SSH 1.x, please refer to the OpenSSH FAQ[7]
for details and general tips.

Damien Miller <djm@mindrot.org>

Miscellania - 

This version of OpenSSH is based upon code retrieved from the OpenBSD
CVS repository which in turn was based on the last free sample
implementation released by Tatu Ylonen.

References -

[0] http://www.openssh.com/faq.html
[1] http://www.lothar.com/tech/crypto/
[2] http://www.aet.tu-cottbus.de/personen/jaenicke/postfix_tls/prngd.html
[3] http://www.gzip.org/zlib/
[4] http://www.openssl.org/
[5] http://www.kernel.org/pub/linux/libs/pam/ (PAM is standard on Solaris
    and HP-UX 11)
[6] http://www.openbsd.org/cgi-bin/man.cgi?query=style&sektion=9
[7] http://www.openssh.com/faq.html

$Id: README,v 1.50 2001/12/24 03:17:21 djm Exp $