summaryrefslogtreecommitdiffstats
path: root/usr.bin/ssh/kexdhs.c (follow)
Commit message (Expand)AuthorAgeFilesLines
* use KEM API for vanilla DH KEXdjm2019-01-211-134/+0
* factor out kex_load_hostkey() - this is duplicated in both the client anddjm2019-01-211-13/+3
* factor out kex_dh_compute_key() - it's shared between plain DH KEX anddjm2019-01-211-42/+12
* factor out DH keygen; it's identical between the client and the serverdjm2019-01-211-30/+5
* save the derived session id in kex_derive_keys() rather than making eachdjm2019-01-211-12/+1
* Make sshpkt_get_bignum2() allocate the bignum it is parsing ratherdjm2019-01-211-7/+3
* remove last references to active_statedjm2019-01-191-3/+3
* move client/server SSH-* banners to buffers under ssh->kex and factordjm2018-12-271-3/+3
* hold our collective noses and use the openssl-1.1.x API in OpenSSH;djm2018-09-131-7/+6
* lots of typos in comments/docs. Patch from Karsten Weiss after checkingdjm2018-04-101-2/+2
* Remove all guards for calls to OpenSSL free functions - all of thesejsing2018-02-071-5/+3
* protocol handlers all get struct ssh passed; ok djm@markus2017-05-301-4/+3
* add support for additional fixed DH groups fromdjm2016-05-021-1/+9
* implement SHA2-{256,512} for RSASSA-PKCS1-v1_5 signatures (user and host auth)markus2015-12-041-3/+3
* correctly match ECDSA subtype (== curve) for offered/recevieddjm2015-01-261-3/+5
* fix hostkeys in agent; ok markus@djm2015-01-201-5/+4
* adapt kex to sshbuf and struct ssh; ok djm@markus2015-01-191-67/+119
* update packet.c & isolate, introduce struct sshmarkus2015-01-191-3/+3
* convert memset of potentially-private data to explicit_bzero()djm2014-02-021-2/+2
* avoid use of OpenSSL BIGNUM type and functions for KEX withdjm2014-01-121-2/+2
* no need to include ssh-gss.hmarkus2013-11-021-4/+1
* no need to include monitor_wrap.hmarkus2013-11-021-2/+1
* add ssh-agent(1) support to sshd(8); allows encrypted hostkeys,markus2013-07-191-7/+3
* bye, bye xfree(); ok markus@djm2013-05-171-4/+4
* use only libcrypto APIs that are retained with OPENSSL_NO_DEPRECATED.djm2010-11-101-1/+3
* Add support for certificate key types for users and hosts.djm2010-02-261-7/+12
* abort if key_sign fails, preventing possible null deref. Based on reportdtucker2009-06-211-2/+4
* add missing checks for openssl return codes; with & ok djm@markus2006-11-061-2/+3
* check DH_compute_key() for -1 even if it should not happen because ofmarkus2006-10-311-4/+5
* almost entirely get rid of the culture of ".h files that include .h files"deraadt2006-08-031-2/+8
* move #include <string.h> out of includes.hstevesk2006-07-221-1/+3
* Put $OpenBSD$ tags back (as comments) to replace the RCSID()s thatdjm2006-03-251-0/+1
* RCSID() can diederaadt2006-03-191-1/+0
* remove hardcoded hash lengths in key exchange code, allowingdjm2005-11-041-9/+8
* implement diffie-hellman-group14-sha1 kex method (trivial extension todjm2004-06-131-2/+11
* split kex into client and server code, no need to linkmarkus2003-02-161-0/+138