summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* net-misc/openssh: Stabilize 9.8_p1-r2 arm64, #940876Arthur Zamarin2024-10-101-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 ppc, #940876Jakov Smolić2024-10-081-1/+1
| | | | Signed-off-by: Jakov Smolić <jsmolic@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 arm, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 x86, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 amd64, #940876Arthur Zamarin2024-10-051-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.8_p1-r2 ppc64, #940876Sam James2024-10-051-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* */*: unkeyword ~ia64Arthur Zamarin2024-09-124-4/+4
| | | | | | | | Change was created by running the following command:: ekeyword ^ia64 */*/*.ebuild Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: stable 9.7_p1-r6 for hppa, bug #935275Rolf Eike Beer2024-07-081-1/+1
| | | | | Signed-off-by: Rolf Eike Beer <eike@sf-mail.de> Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: switch to upstream variant of patchSam James2024-07-071-4/+5
| | | | | Bug: https://bugs.gentoo.org/935353 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Fix compile error on muslQuincy Fleming2024-07-072-0/+14
| | | | | | | Closes: https://github.com/gentoo/gentoo/pull/37440 Closes: https://bugs.gentoo.org/935353 Signed-off-by: Quincy Fleming <quincyf467@protonmail.com> Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: sshd.service: set Type=notify-reloadMike Gilbert2024-07-062-1/+16
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 ppc64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 ppc, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 sparc, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 amd64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 x86, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 arm, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.7_p1-r6 arm64, #935275Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: drop 9.6_p1-r4, 9.7_p1-r2, 9.7_p1-r3, 9.7_p1-r5Sam James2024-07-014-1595/+0
| | | | | Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 sparc, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 x86, #935272Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 amd64, #935272Sam James2024-07-011-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 ppc, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 ppc64, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 arm64, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r5 arm, #935272Arthur Zamarin2024-07-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: explain why we don't need to do `sshd -t` for the OpenRC caseSam James2024-07-011-0/+3
| | | | | | ago pointed out that it's confusing. Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: restart sshd on major version upgradesSam James2024-07-011-0/+33
| | | | | | | | | | | | | | | | | | | | | | | | | | openssh-9.8_p1 again breaks cross-version compatibility, meaning that a running sshd with 9.7_p1 will no longer be able to accept connections after upgrading to 9.8_p1. We tried doing a news item on this in the past (bug #709748) and it ended up being insufficient and poorly coordinated (as you really need it again when stabling). Nobody is going to thank us for leaving their sshd broken, so pick the lesser evil and attempt to restart sshd on major version upgrades. This is especially important as people may be racing to upgrade to 9.8_p1 for the CVE-2024-6387 fix (although we have backported a fix to older versions). I also note there's precedent here with e.g. the systemd rebuild where it's done to avoid immediate breakage of user sessions. Thanks to kerframil who proposed a snippet for this some time ago whose work I've lifted here. Bug: https://bugs.gentoo.org/709748 Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: backport CVE-2024-6387 fix to 9.6_p1-r5, 9.7_p1-r6Sam James2024-07-014-0/+827
| | | | | | | | This applies upstream's backport suggestions from https://marc.info/?l=oss-security&m=171982317624594&w=2 for both CVE-2024-6387 and a "minor logic error in ObscureKeystrokeTiming". Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: add 9.8_p1Sam James2024-07-012-0/+400
| | | | | | | | | This fixes CVE-2024-6387 but I'm going to backport a fix to 9.7 shortly as 9.8_p1 isn't a good stable candidate given it's only just been released and has many other changes. Bug: https://bugs.gentoo.org/935271 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh*: Fix sftp-server path in config drop-inJames Le Cuirot2024-06-121-1/+1
| | | | | | | OpenSSH itself automatically adjusts the paths in sshd_config but not in our drop-ins, so I missed this. Sorry! Signed-off-by: James Le Cuirot <chewi@gentoo.org>
* net-misc/openssh*: Use patch to fix Include and move Subsystem configJames Le Cuirot2024-06-102-0/+425
| | | | | | | | | | | | | | | | | | | - Put the Include option before options that introduce conditional blocks to avoid having the drop-in files to be included conditionally. For client configs the options that introduce such blocks are Match and Host options, for daemon configs it is the Match option. - Move the Subsystem option out of the top-level daemon config into a separate drop-in. That way we can add the drop-in into INSTALL_MASK if we want to provide custom drop-in with a different settings for subsystems. This is necessary as there is no way to override a once-specified subsystem - doing so results in daemon printing an error and quitting. Closes: https://bugs.gentoo.org/907068 Closes: https://github.com/gentoo/gentoo/pull/31615 Signed-off-by: James Le Cuirot <chewi@gentoo.org>
* net-misc/openssh: fix implicit function declaraions with USE=xmssGabi Falk2024-05-213-0/+814
| | | | | | | | Link: https://bugzilla.mindrot.org/show_bug.cgi?id=3689 Closes: https://bugs.gentoo.org/919685 Signed-off-by: Gabi Falk <gabifalk@gmx.com> Closes: https://github.com/gentoo/gentoo/pull/36623 Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: remove useless patchDavid Seifert2024-05-173-20/+0
| | | | | | | | Patch has long been upstreamed: - https://github.com/openssh/openssh-portable/pull/148 - https://github.com/openssh/openssh-portable/commit/3ef92a657444f172b61f92d5da66d94fa8265602 Signed-off-by: David Seifert <soap@gentoo.org>
* net-misc/openssh: drop 9.6_p1-r1, 9.6_p1-r2Sam James2024-04-152-793/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 hppa, #926795Matoro Mahri2024-04-131-1/+1
| | | | | Signed-off-by: Matoro Mahri <matoro_gentoo@matoro.tk> Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-misc/openssh: restore /etc/ssh/ssh_revoked_hostsMike Gilbert2024-03-251-0/+1
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: simplify mkdir expressionMike Gilbert2024-03-251-1/+1
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: drop empty lineMike Gilbert2024-03-251-1/+0
| | | | Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: do no create empty /etc/skel/.sshMike Gilbert2024-03-251-2/+0
| | | | | | Portage refuses to install empty directories. Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: fix install mode for config dropinsMike Gilbert2024-03-251-30/+48
| | | | | | Closes: https://bugs.gentoo.org/906639 Closes: https://bugs.gentoo.org/915840 Signed-off-by: Mike Gilbert <floppym@gentoo.org>
* net-misc/openssh: stable 9.6_p1-r3 for sparc, bug #926795Rolf Eike Beer2024-03-151-1/+1
| | | | | Signed-off-by: Rolf Eike Beer <eike@sf-mail.de> Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 x86, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 amd64, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 arm64, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 ppc64, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 arm, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: Stabilize 9.6_p1-r3 ppc, #926795Sam James2024-03-121-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: add 9.7_p1Sam James2024-03-122-0/+390
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-misc/openssh: drop old gcc-config workaroundSam James2024-02-191-7/+0
| | | | | | | This shouldn't be needed anymore since 0b22d07f89b16ac3400e45077702ac4c4492e5a4 anyway. Bug: https://bugs.gentoo.org/872416 Signed-off-by: Sam James <sam@gentoo.org>