Norbert Pocs
e5f72468b8
pki.c: Add missing function documentation
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 27e223ba22 )
2022-11-18 16:17:21 +01:00
Norbert Pocs
1761db6f97
misc.c: Remove dot from documentation group definition
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 954f9c86ce )
2022-11-18 16:17:19 +01:00
Norbert Pocs
73ea9a8922
messages.c: Add missing function documentation
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 99bad9006e )
2022-11-18 16:17:17 +01:00
Norbert Pocs
78e79fbc35
log.c: Remove dot from documentation group definition
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit c17b8f1fb2 )
2022-11-18 16:17:14 +01:00
Norbert Pocs
990db53ee6
getrandom_crypto.c: Add function to the documentation
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit d57a383d43 )
2022-11-18 16:17:12 +01:00
Norbert Pocs
18b46a6e17
error.c: Remove dot from documentation group definition
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 5ef99fcaa5 )
2022-11-18 16:17:09 +01:00
Norbert Pocs
096996501b
client.c: Add documentation
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 85f73a9bf6 )
2022-11-18 16:17:05 +01:00
Norbert Pocs
569164740d
buffer.c: Remove dot from documentation group definition
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 6d67d3ca5d )
2022-11-18 16:17:02 +01:00
Norbert Pocs
0da3fe245b
auth.c: Remove dot from documentation group definition
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit d3f0aabe7f )
2022-11-18 16:17:00 +01:00
Norbert Pocs
b448c3ad98
agent.c: Add missing docu to libssh_auth group
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit f8ba12f0a6 )
2022-11-18 16:16:53 +01:00
Thomas Baag
82e76a15d1
config: Escape brackets in ProxyCommand build from ProxyJump
...
Missing escaping results in syntax errors in Zsh shell because of square
brackets getting interpreted as being a pattern for globbing.
Signed-off-by: Thomas Baag <libssh-git@spam.b2ag.de >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit bccb8513fa )
2022-11-18 16:16:40 +01:00
Norbert Pocs
bddbe2a76d
dh_crypto.c: Add missing rv check
...
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit bcc541f467 )
2022-11-18 16:16:25 +01:00
Andreas Schneider
e8322817a9
Bump version to 0.10.4
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
2022-09-07 15:30:40 +02:00
Andreas Schneider
e0c2f2809b
kdf: Avoid endianess issues
...
The key_type is only a letter, if we use and `int` and then cast it to
(const char *) we will end up with a 0 value on big endian.
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
2022-09-07 15:29:03 +02:00
Andreas Schneider
783f2b97a8
Bump version to 0.10.3
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
2022-09-05 14:27:29 +02:00
Andreas Schneider
1d29d4b627
knownhosts: Fix and infinite loop when iterating known host entries
...
Fixes #145
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit 3e4c2205c5 )
2022-09-05 14:25:22 +02:00
Andreas Schneider
787711a271
knownhosts: Give better warnings about unsupported key types
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit 2d79c7a9d5 )
2022-09-05 14:25:21 +02:00
Andreas Schneider
ddea657ba7
Bump version to 0.10.2
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
2022-09-02 10:00:11 +02:00
Jakub Jelen
fd1563575f
config: Expand tilde when handling include directives
...
Related: #93
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit d69026d7a4 )
2022-09-02 09:56:52 +02:00
Andreas Schneider
0e637e3327
src: Add ABI symbols for 4.9.1
2022-08-30 16:28:00 +02:00
Jakub Jelen
630f335415
libcrypto: Avoid unused variable warning
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit f86727e06a )
2022-08-30 13:26:08 +02:00
Jakub Jelen
b7934ab370
socket: Remove needless typedef
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit a69424d4c5 )
2022-08-30 13:26:06 +02:00
Jakub Jelen
0aaad9eb25
wrapper: Avoid size_t to uint8 cast
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 8aade7ce6f )
2022-08-30 13:26:05 +02:00
Jakub Jelen
8fe4cabb26
misc: Refactor ssh_strerror to check return values
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 41f2ee92c6 )
2022-08-30 13:26:04 +02:00
Jakub Jelen
1689b83d0f
Do not force GNU_SOURCE during build to fix #141
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 8cf9c8162f )
2022-08-30 13:26:02 +02:00
Andreas Schneider
7c6105882b
options: Use exec for the proxy command
...
This wont create a new process but replace the shell.
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit bd2db30174 )
2022-08-30 10:01:48 +02:00
Andreas Schneider
bb6d1b78dc
socket: Add a comment about shells
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit d642b20d9c )
2022-08-30 10:01:46 +02:00
Andreas Schneider
5a884b8c5a
socket: Add error message if execv fails
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 2546b62242 )
2022-08-30 10:01:36 +02:00
Andreas Schneider
d26f7253a9
session: Initialize the port with the standard port (22)
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit f306aafdc6 )
2022-08-30 10:00:48 +02:00
Andreas Schneider
3ad2a21d13
misc: Fix expanding port numbers
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 648baf0f3c )
2022-08-30 10:00:38 +02:00
Andreas Schneider
7f6b3fab4e
misc: Fix format truncation in ssh_path_expand_escape()
...
error: ‘%u’ directive output may be truncated writing between 1 and 10
bytes into a region of size 6.
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 20406e51c9 )
2022-08-26 14:10:39 +02:00
renmingshuai
8c40b2491d
session->socket_callbacks.data will be set to ssh_packet_socket_callback
...
in ssh_packet_register_socket_callback. Here is redundant.
Signed-off-by: renmingshuai <renmingshuai@huawei.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 0799775185 )
2022-08-25 17:36:45 +02:00
Timo Rothenpieler
3331b794bc
misc: rename gettimeofday symbol
...
mingw does have this function, even though it appears to be deprecated.
So the symbol has to have a different name, or linking becomes
impossible.
Signed-off-by: Timo Rothenpieler <timo@rothenpieler.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 17aec429f5 )
2022-08-25 17:36:42 +02:00
Jakub Jelen
5da93db25a
pki: Rework handling of EVP_PKEYs in OpenSSL backend
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit a81e78aff4 )
2022-08-25 17:36:36 +02:00
Jakub Jelen
b18495b56b
Initialize pkcs11 engine only once
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit 0800618f32 )
2022-08-25 17:36:30 +02:00
Jakub Jelen
a96763b195
libcrypto: Skip unneccessary call to ENGINE_cleanup in OSSL>1.1
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit f721ee847b )
2022-08-25 17:36:26 +02:00
Jakub Jelen
540257b421
pki: Factor out the backend-specifics from cleaning the key structure
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
(cherry picked from commit 382ff38caa )
2022-08-25 17:36:22 +02:00
Jakub Jelen
886ed379d8
session: Avoid memory leak of agent_socket from configuration file
...
Thanks oss-fuzz
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=48268
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit aa1e136ea3 )
2022-08-08 10:17:00 +02:00
Jakub Jelen
3db3511467
curve25519: Do not check for openssl functions when other crypto backend is used
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 0982715bb5 )
2022-08-03 10:49:18 +02:00
Jakub Jelen
4c5da86f91
pki: Do not check for DSA headers when DSA is not built in
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit ebeee7631d )
2022-08-03 10:49:17 +02:00
Jakub Jelen
2564246024
mbedcrypto: Refactor PEM parsing
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit aca482a5a5 )
2022-08-03 10:49:15 +02:00
Jakub Jelen
146d1a620d
session: Initialize pointers
...
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 355e29d881 )
2022-08-03 10:49:14 +02:00
Anderson Toshiyuki Sasaki
19c43ff6b7
init: Free global init mutex in the destructor on Windows
...
Fixes : #57 (T238)
Signed-off-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 163951d869 )
2022-08-02 16:03:06 +02:00
Jakub Jelen
17e9cd70a5
Move digest functions into separate file
...
The external ed25519 requires also the sha512 functions to work.
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit c09b02c573 )
2022-08-02 16:01:42 +02:00
Jakub Jelen
cee5c9f404
Build external override library with all symbols
...
The curve25519 depends on ssh_get_random, which is normally built into libssh.
For the external override tests to build, we need to have them in separate
source file that can be included for this test.
For some reason, this did not happen on CI builds, but it did happen in koji
during RPM builds.
Signed-off-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit 0da54f2908 )
2022-08-02 16:01:35 +02:00
Andreas Schneider
43fb1d7c8d
packet: Check hmac return codes in ssh_packet_hmac_verify()
...
CID #1490530
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit b42e9a19a3 )
2022-07-14 15:03:58 +02:00
Andreas Schneider
5c629f22f6
packet: Use consistent return codes in ssh_packet_hmac_verify()
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit e27ee9d0a4 )
2022-07-14 15:03:57 +02:00
Andreas Schneider
46e0703c6e
packet: Reformat ssh_packet_hmac_verify()
...
Signed-off-by: Andreas Schneider <asn@cryptomilk.org >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 4a7791b784 )
2022-07-14 15:03:55 +02:00
Norbert Pocs
cffa103378
Make it work with openssl3.0
...
The KDF was changed in the new API, fetching the algorithm first
then creating the context using it.
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
(cherry picked from commit 9a4c5203af )
2022-07-13 15:36:07 +02:00
Norbert Pocs
d17c635617
options: Parse hostname by last '@'
...
The login name can have '@' char in it
Signed-off-by: Norbert Pocs <npocs@redhat.com >
Reviewed-by: Jakub Jelen <jjelen@redhat.com >
Reviewed-by: Andreas Schneider <asn@cryptomilk.org >
(cherry picked from commit bb5f7e2707 )
2022-07-12 10:45:34 +02:00