summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* net-misc/openssh: Stabilize 9.8_p1-r3 sparc, #940876Sam James2024-11-221-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 arm, #940876Arthur Zamarin2024-10-301-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 arm64, #940876Arthur Zamarin2024-10-301-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 x86, #940876Sam James2024-10-291-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 amd64, #940876Sam James2024-10-291-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 ppc, #940876Sam James2024-10-291-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r3 ppc64, #940876Sam James2024-10-291-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: drop 9.6_p1-r3, 9.6_p1-r5Sam James2024-10-295-860/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: backport USE=legacy-ciphers for DSA to 9.8_p1-r3Sam James2024-10-291-1/+2
| | | | | Closes: https://bugs.gentoo.org/941255 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: add 9.9_p1Sam James2024-10-2912-0/+1192
| | | | | | | | | | | | | | | | | * Add a patch from master for slow X forwarding (bug #929191) with the default-on ObscureKeystrokeTiming feature. * Pull in various patches from upstream's stable branch (V_9_9) and add a note to the ebuild about checking it, see https://marc.info/?l=openssh-unix-dev&m=172723798122122&w=2. * Add USE=legacy-ciphers (bug #941255) to support DSA keys. I'll probably backport this to 9.8 too. Bug: https://bugs.gentoo.org/929191 Closes: https://bugs.gentoo.org/940250 Closes: https://bugs.gentoo.org/941255 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: fix compat w/ xinetdSam James2024-10-142-0/+461
| | | | | | | | | Backport upstream fix from OpenSSH to fix compat w/ xinetd. Bug: https://bugzilla.mindrot.org/show_bug.cgi?id=3717 Bug: https://github.com/openSUSE/xinetd/issues/46 Closes: https://bugs.gentoo.org/936041 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 sparc, #940876Sam James2024-10-131-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 arm64, #940876Arthur Zamarin2024-10-101-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 ppc, #940876Jakov Smolić2024-10-081-1/+1
| | | | Signed-off-by: Jakov Smolić <jsmolic@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 arm, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 x86, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 amd64, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 ppc64, #940876Sam James2024-10-051-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* */*: unkeyword ~ia64Arthur Zamarin2024-09-124-4/+4
| | | | | | | | Change was created by running the following command:: ekeyword ^ia64 */*/*.ebuild Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: stable 9.7_p1-r6 for hppa, bug #935275Rolf Eike Beer2024-07-081-1/+1
| | | | | Signed-off-by: Rolf Eike Beer <eike@sf-mail.de> Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: switch to upstream variant of patchSam James2024-07-071-4/+5
| | | | | Bug: https://bugs.gentoo.org/935353 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Fix compile error on muslQuincy Fleming2024-07-072-0/+14
| | | | | | | Closes: https://github.com/gentoo/gentoo/pull/37440 Closes: https://bugs.gentoo.org/935353 Signed-off-by: Quincy Fleming <quincyf467@protonmail.com> Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: sshd.service: set Type=notify-reloadMike Gilbert2024-07-062-1/+16
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 ppc64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 ppc, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 sparc, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 amd64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 x86, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 arm, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 arm64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: drop 9.6_p1-r4, 9.7_p1-r2, 9.7_p1-r3, 9.7_p1-r5Sam James2024-07-014-1595/+0
| | | | | Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 sparc, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 x86, #935272Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 amd64, #935272Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 ppc, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 ppc64, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 arm64, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 arm, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: explain why we don't need to do `sshd -t` for the OpenRC caseSam James2024-07-011-0/+3
| | | | | | ago pointed out that it's confusing. Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: restart sshd on major version upgradesSam James2024-07-011-0/+33
| | | | | | | | | | | | | | | | | | | | | | | | | | openssh-9.8_p1 again breaks cross-version compatibility, meaning that a running sshd with 9.7_p1 will no longer be able to accept connections after upgrading to 9.8_p1. We tried doing a news item on this in the past (bug #709748) and it ended up being insufficient and poorly coordinated (as you really need it again when stabling). Nobody is going to thank us for leaving their sshd broken, so pick the lesser evil and attempt to restart sshd on major version upgrades. This is especially important as people may be racing to upgrade to 9.8_p1 for the CVE-2024-6387 fix (although we have backported a fix to older versions). I also note there's precedent here with e.g. the systemd rebuild where it's done to avoid immediate breakage of user sessions. Thanks to kerframil who proposed a snippet for this some time ago whose work I've lifted here. Bug: https://bugs.gentoo.org/709748 Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: backport CVE-2024-6387 fix to 9.6_p1-r5, 9.7_p1-r6Sam James2024-07-014-0/+827
| | | | | | | | This applies upstream's backport suggestions from https://marc.info/?l=oss-security&m=171982317624594&w=2 for both CVE-2024-6387 and a "minor logic error in ObscureKeystrokeTiming". Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: add 9.8_p1Sam James2024-07-012-0/+400
| | | | | | | | | This fixes CVE-2024-6387 but I'm going to backport a fix to 9.7 shortly as 9.8_p1 isn't a good stable candidate given it's only just been released and has many other changes. Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh*: Fix sftp-server path in config drop-inJames Le Cuirot2024-06-121-1/+1
| | | | | | | OpenSSH itself automatically adjusts the paths in sshd_config but not in our drop-ins, so I missed this. Sorry! Signed-off-by: James Le Cuirot <chewi@gentoo.org>
* net-misc/openssh*: Use patch to fix Include and move Subsystem configJames Le Cuirot2024-06-102-0/+425
| | | | | | | | | | | | | | | | | | | - Put the Include option before options that introduce conditional blocks to avoid having the drop-in files to be included conditionally. For client configs the options that introduce such blocks are Match and Host options, for daemon configs it is the Match option. - Move the Subsystem option out of the top-level daemon config into a separate drop-in. That way we can add the drop-in into INSTALL_MASK if we want to provide custom drop-in with a different settings for subsystems. This is necessary as there is no way to override a once-specified subsystem - doing so results in daemon printing an error and quitting. Closes: https://bugs.gentoo.org/907068 Closes: https://github.com/gentoo/gentoo/pull/31615 Signed-off-by: James Le Cuirot <chewi@gentoo.org>
* net-misc/openssh: fix implicit function declaraions with USE=xmssGabi Falk2024-05-213-0/+814
| | | | | | | | Link: https://bugzilla.mindrot.org/show_bug.cgi?id=3689 Closes: https://bugs.gentoo.org/919685 Signed-off-by: Gabi Falk <gabifalk@gmx.com> Closes: https://github.com/gentoo/gentoo/pull/36623 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: remove useless patchDavid Seifert2024-05-173-20/+0
| | | | | | | | Patch has long been upstreamed: - https://github.com/openssh/openssh-portable/pull/148 - https://github.com/openssh/openssh-portable/commit/3ef92a657444f172b61f92d5da66d94fa8265602 Signed-off-by: David Seifert <soap@gentoo.org>
* net-misc/openssh: drop 9.6_p1-r1, 9.6_p1-r2Sam James2024-04-152-793/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 hppa, #926795Matoro Mahri2024-04-131-1/+1
| | | | | Signed-off-by: Matoro Mahri <matoro_gentoo@matoro.tk> Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: restore /etc/ssh/ssh_revoked_hostsMike Gilbert2024-03-251-0/+1
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: simplify mkdir expressionMike Gilbert2024-03-251-1/+1
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>