2015-03-20 13:56:04 +00:00
|
|
|
diff -up openssh-6.8p1/servconf.c.sshdt openssh-6.8p1/servconf.c
|
2015-05-28 11:35:59 +00:00
|
|
|
--- openssh-6.8p1/servconf.c.sshdt 2015-05-28 13:32:55.728821389 +0200
|
|
|
|
+++ openssh-6.8p1/servconf.c 2015-05-28 13:34:01.937750270 +0200
|
2015-03-20 13:56:04 +00:00
|
|
|
@@ -2118,6 +2118,8 @@ dump_cfg_strarray_oneline(ServerOpCodes
|
2015-02-03 13:06:59 +00:00
|
|
|
{
|
|
|
|
u_int i;
|
|
|
|
|
|
|
|
+ if (count <= 0)
|
|
|
|
+ return;
|
|
|
|
printf("%s", lookup_opcode_name(code));
|
|
|
|
for (i = 0; i < count; i++)
|
|
|
|
printf(" %s", vals[i]);
|
2015-03-20 13:56:04 +00:00
|
|
|
@@ -2156,7 +2158,7 @@ dump_config(ServerOptions *o)
|
2015-02-03 13:06:59 +00:00
|
|
|
|
|
|
|
/* integer arguments */
|
|
|
|
#ifdef USE_PAM
|
|
|
|
- dump_cfg_int(sUsePAM, o->use_pam);
|
|
|
|
+ dump_cfg_fmtint(sUsePAM, o->use_pam);
|
|
|
|
#endif
|
|
|
|
dump_cfg_int(sServerKeyBits, o->server_key_bits);
|
|
|
|
dump_cfg_int(sLoginGraceTime, o->login_grace_time);
|
2015-03-20 13:56:04 +00:00
|
|
|
@@ -2166,6 +2168,7 @@ dump_config(ServerOptions *o)
|
2015-02-03 13:06:59 +00:00
|
|
|
dump_cfg_int(sMaxSessions, o->max_sessions);
|
|
|
|
dump_cfg_int(sClientAliveInterval, o->client_alive_interval);
|
|
|
|
dump_cfg_int(sClientAliveCountMax, o->client_alive_count_max);
|
|
|
|
+ dump_cfg_int(sStreamLocalBindMask, o->fwd_opts.streamlocal_bind_mask);
|
|
|
|
|
|
|
|
/* formatted integer arguments */
|
|
|
|
dump_cfg_fmtint(sPermitRootLogin, o->permit_root_login);
|
2015-03-20 13:56:04 +00:00
|
|
|
@@ -2213,6 +2216,7 @@ dump_config(ServerOptions *o)
|
2015-02-03 13:06:59 +00:00
|
|
|
dump_cfg_fmtint(sShowPatchLevel, o->show_patchlevel);
|
|
|
|
dump_cfg_fmtint(sUseDNS, o->use_dns);
|
|
|
|
dump_cfg_fmtint(sAllowTcpForwarding, o->allow_tcp_forwarding);
|
|
|
|
+ dump_cfg_fmtint(sAllowAgentForwarding, o->allow_agent_forwarding);
|
|
|
|
dump_cfg_fmtint(sAllowStreamLocalForwarding, o->allow_streamlocal_forwarding);
|
|
|
|
dump_cfg_fmtint(sUsePrivilegeSeparation, use_privsep);
|
|
|
|
dump_cfg_fmtint(sFingerprintHash, o->fingerprint_hash);
|
2015-05-28 11:35:59 +00:00
|
|
|
@@ -2224,14 +2228,15 @@ dump_config(ServerOptions *o)
|
|
|
|
dump_cfg_string(sXAuthLocation, o->xauth_location);
|
|
|
|
dump_cfg_string(sCiphers, o->ciphers ? o->ciphers : KEX_SERVER_ENCRYPT);
|
|
|
|
dump_cfg_string(sMacs, o->macs ? o->macs : KEX_SERVER_MAC);
|
|
|
|
- dump_cfg_string(sBanner, o->banner);
|
|
|
|
+ dump_cfg_string(sBanner, o->banner != NULL ? o->banner : "none");
|
|
|
|
dump_cfg_string(sForceCommand, o->adm_forced_command);
|
|
|
|
dump_cfg_string(sChrootDirectory, o->chroot_directory);
|
|
|
|
dump_cfg_string(sTrustedUserCAKeys, o->trusted_user_ca_keys);
|
2015-02-03 13:06:59 +00:00
|
|
|
dump_cfg_string(sRevokedKeys, o->revoked_keys_file);
|
|
|
|
dump_cfg_string(sAuthorizedPrincipalsFile,
|
|
|
|
o->authorized_principals_file);
|
|
|
|
- dump_cfg_string(sVersionAddendum, o->version_addendum);
|
|
|
|
+ dump_cfg_string(sVersionAddendum, *o->version_addendum == '\0'
|
|
|
|
+ ? "none" : o->version_addendum);
|
|
|
|
dump_cfg_string(sAuthorizedKeysCommand, o->authorized_keys_command);
|
|
|
|
dump_cfg_string(sAuthorizedKeysCommandUser, o->authorized_keys_command_user);
|
|
|
|
dump_cfg_string(sHostKeyAgent, o->host_key_agent);
|
2015-03-20 13:56:04 +00:00
|
|
|
@@ -2251,7 +2256,7 @@ dump_config(ServerOptions *o)
|
2015-02-03 13:06:59 +00:00
|
|
|
o->authorized_keys_files);
|
|
|
|
dump_cfg_strarray(sHostKeyFile, o->num_host_key_files,
|
|
|
|
o->host_key_files);
|
|
|
|
- dump_cfg_strarray(sHostKeyFile, o->num_host_cert_files,
|
|
|
|
+ dump_cfg_strarray(sHostCertificate, o->num_host_cert_files,
|
|
|
|
o->host_cert_files);
|
|
|
|
dump_cfg_strarray(sAllowUsers, o->num_allow_users, o->allow_users);
|
|
|
|
dump_cfg_strarray(sDenyUsers, o->num_deny_users, o->deny_users);
|
2015-05-28 11:43:22 +00:00
|
|
|
diff --git a/ssh.1 b/ssh.1
|
|
|
|
index cf02526..7fddf46 100644
|
|
|
|
--- a/ssh.1
|
|
|
|
+++ b/ssh.1
|
|
|
|
@@ -441,7 +441,11 @@ For full details of the options listed below, and their possible values, see
|
|
|
|
.It GatewayPorts
|
|
|
|
.It GlobalKnownHostsFile
|
|
|
|
.It GSSAPIAuthentication
|
|
|
|
+.It GSSAPIKeyExchange
|
|
|
|
+.It GSSAPIClientIdentity
|
|
|
|
.It GSSAPIDelegateCredentials
|
|
|
|
+.It GSSAPIRenewalForcesRekey
|
|
|
|
+.It GSSAPITrustDNS
|
|
|
|
.It HashKnownHosts
|
|
|
|
.It Host
|
|
|
|
.It HostbasedAuthentication
|