tinyssh (20240101-3) unstable; urgency=medium * d/p/0001-packet_put.c-include-global.h.patch, fix FTBFS (Closes: #1066418) -- Jan Mojžíš Wed, 13 Mar 2024 20:07:05 +0100 tinyssh (20240101-2) unstable; urgency=medium [ Chris Hofstaedtler ] * Install systemd units into /usr, update hard-coded paths. (Closes: #1060081) [ Jan Mojžíš ] * d/copyright: use link to the CC0 file * d/copyright: bump my copyright year -- Jan Mojžíš Mon, 08 Jan 2024 09:56:58 +0100 tinyssh (20240101-1) unstable; urgency=medium * New upstream version 20240101 * d/p/0001-channel_forkpty.c-fix-race-condition-79.patch removed * d/p/0003-channel.c-ignore-SSH_MSG_CHANNEL_EOF-in-terminal-mod.patch removed * d/p/0004-implementation-kex-strict-s-v00-openssh.com-82.patch removed * d/watch: remove filenamemangle and use characters @ANY_VERSION@@ARCHIVE_EXT@ * d/gbp.conf: add upstream-signatures = on, track-missing = True -- Jan Mojžíš Mon, 01 Jan 2024 10:58:09 +0100 tinyssh (20230101-4) unstable; urgency=medium * d/p/0004-implementation-kex-strict-s-v00-openssh.com-82.patch: backported key exchange protocol extension kex-strict-s-v00@openssh.com from the upstream. Mitigates CVE-2023-48795 "Terrapin attack". (Closes: 1059058) * d/t/10rekey added, tests SSH connection rekeying -- Jan Mojžíš Wed, 20 Dec 2023 23:10:12 +0100 tinyssh (20230101-3) unstable; urgency=medium * Fix terminal connection if stdin is redirected to /dev/null (ssh -tt -n): * d/p/0001-channel_forkpty.c-fix-race-condition-79.patch add * d/p/0003-channel.c-ignore-SSH_MSG_CHANNEL_EOF-in-terminal-mod.patch add * d/t/09termexec add -- Jan Mojžíš Sun, 17 Dec 2023 23:02:51 +0100 tinyssh (20230101-2) unstable; urgency=medium * d/t/05authorizedkeys fixed permissions when creating authorized_keys, tnx Lukas Mardian (Closes: 1034513) * d/t/{04sftp,05authorizedkeys,06transfer,07kex,08badauth} fixed tests, added short sleep to give tcpserver time to start, tnx Lukas Mardian (Closes: 1034512) * d/control: bump Standards-Version to 4.6.2, no changes -- Jan Mojžíš Sun, 11 Jun 2023 09:12:38 +0200 tinyssh (20230101-1) unstable; urgency=medium * New upstream version 20230101 * d/copyright: updated, generated using 'cme update dpkg-copyright' * d/copyright: update to CC0 * d/gbp.conf: debian-branch = main -- Jan Mojžíš Sun, 01 Jan 2023 09:33:58 +0100 tinyssh (20220801-2) unstable; urgency=medium * d/watch fixed url -- Jan Mojžíš Tue, 25 Oct 2022 17:08:45 +0200 tinyssh (20220801-1) unstable; urgency=medium * New upstream version 20220801 * d/gbp.conf added new gbp.conf configuration file * d/control: bump Standards-Version to 4.6.1, no changes -- Jan Mojžíš Mon, 01 Aug 2022 08:28:20 +0200 tinyssh (20220311-2) unstable; urgency=medium [ Colin Watson ] * d/rules: ensure non-zero exit status when dh_auto_build fails [ Jan Mojžíš ] * debian/systemd/tinysshd: update systemd service to accept status code 111 -- Jan Mojžíš Wed, 16 Mar 2022 17:19:43 +0100 tinyssh (20220311-1) unstable; urgency=medium * New upstream version 20220311 - fixed build on big-endian platforms -- Jan Mojžíš Sat, 12 Mar 2022 12:55:53 +0000 tinyssh (20220305-1) unstable; urgency=medium * d/watch - fixed github perl regexp * d/control - bump debhelper compat level to 13 * d/control - bump to standards version 4.6.0 (no modifications) * d/control - added Rules-Requires-Root: no * d/tests - added 07kex test, tests supported KEX including new sntrup761x25519-sha512@openssh.com * d/tests - removed unnecessary restrictions allow-stderr, needs-root * d/tests - added 08badauth test, it tests if tinysshd rejects login when authorized_keys are stored in directory with group/other writable permitions * d/rules - fixed cross-compile build * d/tinysshd.manpages man/tinysshd-{make,print}key.1 renamed to man/tinysshd-{make,print}key.8 * d/rules - disable some case tests to allow reproducible build * New upstream version 20220305 - removed sntrup4591761x25519-sha512@tinyssh.org - added sntrup761x25519-sha512@openssh.com - fixed error message when second channel is requested (Closes: 995146) - man/tinysshd-{make,print}key.1 -> man/tinysshd-{make,print}key.8 - added tinysshnoneauthd binary - workaround for incoming packets that doesn't honor the max. packet length (Closes: 1006801) * d/watch - fixed regexp -- Jan Mojžíš Thu, 10 Mar 2022 17:43:02 +0000 tinyssh (20190101-1) unstable; urgency=medium * d/tests - added 03exitcodes test, it creates ssh connection, exits with status 0-255 and checks if tinyssh server sends the status code to the client * d/tests - added 04sftp test, it tests sftp subsystem * d/tests - added 05authorizedkeys, it tests if tinyssh rejects login using malformed authorized_keys * d/upstream - updated minimal signing-key.asc, removed extra signatures * d/tests - fixed 02handshake tests. Runs and tests tinyssh on port 222, because default port 22 in autopkgtest environment is used by OpenSSH. * d/tests - added 06transfer, tries to send random data to tinyssh server, than tries to receive data from tinyssh server and compares checksums. * New upstream version 20190101: - tinysshd binary optimized for smaller size - created multi-call tinysshd binary - removed aes256,nistp256,hmacsha256 - added postquantum KEX sntrup4591761x25519-sha512@tinyssh.org * d/.links - tinysshd-{printkey,makekey} is symbolic link to tinysshd binary * d/control - bump to standards version 4.3.0 (no modifications) * d/tinysshd.default - removed aes256,nistp256,hmacsha256 options * d/control - removed info about aes256,nistp256,hmacsha256 * d/compat - bump debhelper compat level to 12 and use debhelper-compat -- Jan Mojžíš Wed, 02 Jan 2019 06:01:58 +0100 tinyssh (20180201-2) unstable; urgency=medium * d/copyright - fixed url http->https * d/control - bump to standards version 4.2.1 * d/control - Vcs-* moved to salsa.debian.org * Convert git repository from git-dpm to gbp layout * d/upstream/metadata - added * d/TODO - removed * d/control - removed dependency on systemd (Closes: #911539) * d/tinysshd.lintian-overrides removed * d/tests/control - added restrictions isolation-container and added dependency on systemd-sysv, systemd -- Jan Mojžíš Tue, 23 Oct 2018 14:49:24 +0200 tinyssh (20180201-1) unstable; urgency=medium * d/tests/01makekeyprintkey - added test for tinysshd-makekey and tinysshd-printkey tools * d/tests/02handshake - added simple python3 tests which connects to local tinysshd server and checks if TinySSH supports chacha20poly1305 and also checks if TinySSH rejects bad (zero) public-key * autopkgtests - removed autopkgtest written in C * autopkgtests - switched env. variable ADTTMP to AUTOPKGTEST_TMP * d/control - dependency on systemd instead of systemd-sysv * New upstream version 20180201: - removed little-endian detection/optimization and added full processor independent implementation of poly1305,chacha20 - cleanups - added KEX curve25519-sha256 - minor fixes -- Jan Mojžíš Thu, 01 Feb 2018 06:59:37 +0100 tinyssh (20180101-1) unstable; urgency=medium [ Jan Mojžíš ] * d/systemd/tinysshd.socket - changed ConditionPathExists /etc/tinyssh/disable_tinysshd_tcp -> /etc/tinyssh/disable_tinysshd * d/systemd/tinysshd@.service - removed Restart=on-failure * d/rules - print debug log when compilation fails * d/rules - switched from dh_systemd_enable to dh_installsystemd * d/upstream/signing-key.asc - added * d/watch - added gpg signature checking * d/compat - switched to debhelper 11 * d/control - bump to standards version 4.1.3 * d/control - removed useless 'Conflicts: tinyssh-run' * d/tinysshd.lintian-overrides - added no-upstream-changelog * New upstream version 20180101: - crypto library speedup - setting close-on-exec for /dev/urandom filedescriptor - cleanup in code * Moved to unstable [ Ondřej Nový ] * Move source of test into separate file: debian/tests/checksshstring.c -- Jan Mojžíš Wed, 03 Jan 2018 07:42:15 +0100 tinyssh (20160812-1) experimental; urgency=medium * Initial release. (Closes: #832611) -- Jan Mojžíš Fri, 12 Aug 2016 06:03:38 +0200