| Commit message (Collapse) | Author | Age | Files | Lines |
... | |
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
ok deraadt matthew
|
| | | |
| | | |
| | | |
| | | | |
support it) now that scanf is implemented properly.
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | | |
discussed with lots of people, tested by naddy@,
"move fast" deraadt@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | | |
no security, for consistency. use of this option is discouraged. :)
ok deraadt guenther millert
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
DigiCert High Assurance CA-3
Go Daddy Secure Certification Authority/serialNumber=07969287
Equifax Secure Certificate Authority
VeriSign Class 3 Public Primary Certification Authority - G5
Entrust Certification Authority - L1C
Entrust.net Secure Server Certification Authority
ok mikeb@ beck@ fgsch@
constant prodding by marco@
|
| | | | |
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
months since it was introduced so it's safe to assume people have this dir now.
ok deraadt@
|
| | | | |
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
cases.
|
| | | | |
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
the openssl and libz versions:
- use a generic ${lib_version}
- define ${version_file} to look run ${version_re} on to
acquire the library version.
- add license
- remove unused -k flag
no change in generated files
ok sthen@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
position zero, skipping a random number of free slots and then
picking the next free one. This slowed things down, especially if
the number of full slots increases.
This changes the scannning to start at a random position in the
bitmap and then taking the first available free slot, wrapping if
the end of the bitmap is reached. Of course we'll still scan more
if the bitmap becomes more full, but the extra iterations skipping
free slots and then some full slots are avoided.
The random number is derived from a global, which is incremented
by a few random bits every time a chunk is needed (with a small optimization
if only one free slot is left).
Thanks to the testers!
|
| | | |
| | | |
| | | |
| | | | |
ok sthen@
|
| | | | |
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
1UL to 1U.
|
| | | |
| | | |
| | | |
| | | | |
thanks to all testers.
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
tree, no idea where it came from; ok millert@ jmc@
|
| | | |
| | | |
| | | |
| | | | |
ok kettenis espie
|
| | | |
| | | |
| | | |
| | | | |
ok jmc@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
about cert checking in OpenSSH. Man page wording tweaks thanks to
jmc@.
ok henning@, jmc@; positive feedback from djm@, ajacoutat@
Committing now to reuse guenther@'s libc minor bump instead of
cranking it again, as suggested by deraadt@.
|
| | | |
| | | |
| | | |
| | | |
| | | | |
to return -1 in case of an unprintable character.
ok nicm jmc
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
"if you have checked this I am ok with it" does not mean
1) not to pay attention to breaking news after I tell you that and
2) not to get ok's from the others this had been shown to.
I am absolutely not ok with thig going in with only *my* ok. There's a reason why we want more than one ok on important commits
ok deraadt@ for the backout
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
DigiCert High Assurance CA-3
Go Daddy Secure Certification Authority
COMODO High-Assurance Secure Server CA
Equifax Secure Certificate Authority
VeriSign Class 3 Public Primary Certification Authority - G5
Entrust Certification Authority - L1C
Entrust.net Secure Server Certification Authority
cross checked with mozilla
ok beck@
|
| | | |
| | | |
| | | |
| | | | |
Fixes build on NFS src with no root access. ok jasper@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | |
| | | | |
bug, this then found a 2nd bug..
worked on with guenther
|
| | | |
| | | |
| | | |
| | | | |
ok guenther
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
argv and don't suppress the handling of leading '-' in optstring when
POSIXLY_CORRECT is set.
Based on patch from Eric Blake.
ok and manpage update from millert@, manpage ok jmc@
|
| | | |
| | | |
| | | |
| | | | |
ok beck@ fgsch@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
invokes handlers registered with __cxa_atexit().
"seems right" deraadt@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
number of bits when connecting via a SOCKS 5 proxy over ipv6, but we
also need to read the same number depending on the received address
type. this issue is not noticeable with ssh's SOCKS 5 support since it
always set the address type as ipv4. this fixes connections via SOCKS 5
proxies which set their address type as ipv6 when using ipv6.
after review with, and ok, nicm@
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
ok markus@ jasper@ miod@
AFAIK nothing in base uses this, though apache2 from ports may be affected.
|
| | | |
| | | |
| | | |
| | | |
| | | |
| | | |
| | | | |
test -n "`pkg-config --cflags openssl`"
don't assume that OpenSSL isn't available.
ok miod@, sthen@, ajacoutot@, djm@
|
| | | |
| | | |
| | | |
| | | | |
the \: roff escape is an optional line break.
|
| | | |
| | | |
| | | |
| | | | |
prompted by brad
|
| | | |
| | | |
| | | |
| | | | |
ok jmc@
|
| | | | |
|
| | | |
| | | |
| | | |
| | | | |
OK jmc@, nicm@, tedu@
|