From owner-freebsd-ports@FreeBSD.ORG Thu May 31 06:09:14 2012 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id B403E106564A for ; Thu, 31 May 2012 06:09:14 +0000 (UTC) (envelope-from jhellenthal@dataix.net) Received: from mail-yw0-f54.google.com (mail-yw0-f54.google.com [209.85.213.54]) by mx1.freebsd.org (Postfix) with ESMTP id 5A3038FC0A for ; Thu, 31 May 2012 06:08:51 +0000 (UTC) Received: by yhgm50 with SMTP id m50so480573yhg.13 for ; Wed, 30 May 2012 23:08:45 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=dataix.net; s=rsa; h=date:from:to:cc:subject:message-id:references:mime-version :content-type:content-disposition:in-reply-to; bh=i54AqKV1oCRb7j1k75yY9SXTXR/2Xnmk5MaZaH1JYf8=; b=YR6y1zdryT3m8TLuZ2/qEbcdKA3WyTCgiCbtuNMz9KYnyLF5qhNUmmtEbucS40wdKO f/lti49pHdyt4acTgs/ZYCibn4qmoO29e5LO88SdV4F1X4VQAO/5LVz4fmoDJI/IniE2 Pnq3ggFvAPszYYIgZe6FmFSztAsrVXj4Vys1U= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=date:from:to:cc:subject:message-id:references:mime-version :content-type:content-disposition:in-reply-to:x-gm-message-state; bh=i54AqKV1oCRb7j1k75yY9SXTXR/2Xnmk5MaZaH1JYf8=; b=JYxCX/dscYUBXolMCdl1DoAAxKHVxRkokTELK5/JUQNXie1l4U9Y7h5i5K50zCKgfT /Nuq37GV0rnFa9Pn1SNdJmX0x2DO/Fw4QfGl/K7b0ka1th4CkZG4e1FlrZZATUyzxD4d 4Zu5VilY9Zr4PNBSM7zn0kKokvgju3uR/QInjFzgOXd1/xlc8+Om4nTxEJ2TDI5GOnUg NEYLyRuxMZxD2GagwNQ5SiHOmIeR4AdYovEGB7SUyp0nNh9lvq1wKVjhGmGckSJ9O1WG vLkOJ/M2G56HTDaPHRlvTjc0zPHFpB+jgiH04qnLqg1DJELd06lOSvdpCfnfkSkfl/VP 4j+Q== Received: by 10.50.46.232 with SMTP id y8mr240599igm.57.1338444524377; Wed, 30 May 2012 23:08:44 -0700 (PDT) Received: from DataIX.net (24-247-238-117.dhcp.aldl.mi.charter.com. [24.247.238.117]) by mx.google.com with ESMTPS id va9sm732221igb.17.2012.05.30.23.08.43 (version=TLSv1/SSLv3 cipher=OTHER); Wed, 30 May 2012 23:08:44 -0700 (PDT) Received: from DataIX.net (localhost [127.0.0.1]) by DataIX.net (8.14.5/8.14.5) with ESMTP id q4V68fZ1068133 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Thu, 31 May 2012 02:08:41 -0400 (EDT) (envelope-from jhellenthal@DataIX.net) Received: (from jh@localhost) by DataIX.net (8.14.5/8.14.5/Submit) id q4V68eoC068132; Thu, 31 May 2012 02:08:40 -0400 (EDT) (envelope-from jhellenthal@DataIX.net) Date: Thu, 31 May 2012 02:08:40 -0400 From: Jason Hellenthal To: Michael Scheidell Message-ID: <20120531060840.GB25330@DataIX.net> References: <550a9cfe-26cb-4da4-9770-4febf9c5edac@blur> <1e5f96d0-c79f-43bd-90ba-75e998f68ea9@blur> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <1e5f96d0-c79f-43bd-90ba-75e998f68ea9@blur> X-Gm-Message-State: ALoCoQmr6kwA0g7DpOw1WX4ro/3uxnfsQucmiZnB5j8uuf/594/L5yV6StnMa6XUeSeLVEoaHcrf Cc: Michael Scheidell , "freebsd-ports@freebsd.org" Subject: Re: security/openssh-portable HPN 404 X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 31 May 2012 06:09:15 -0000 Yeah I was told about that earlier on today. This version is closer to 5.8 so its an easy patch to fix multiple vulns. Not really meant as an end solution. On Thu, May 31, 2012 at 05:51:19AM +0000, Michael Scheidell wrote: > There is a pr already for 6.0 that needs submitter fixes. Search gnats for prs owned by scheidell. > > -- > Michael Scheidell, CTO > >|SECNAP Network Security > > > -----Original message----- > From: Jason Hellenthal > To: Michael Scheidell > Cc: "freebsd-ports@freebsd.org" > Sent: Thu, May 31, 2012 03:38:32 GMT+00:00 > Subject: Re: security/openssh-portable HPN 404 > > > You guys may want to try these out... > > This updates to openssh-portable-5.9p1_2,1 > > See the attached config file for the options I tested with. If you want > something else and it does not work feel free to email me directly and > I will see what I can do. > > I don't have time to put this up publicly yet but will soon. > > On Wed, May 30, 2012 at 09:44:13PM -0400, Michael Scheidell wrote: > > > > > > On 5/30/12 9:25 PM, Bryan Drewery wrote: > > > cd /usr/ports/security/openssh-portable > > > fetchhttp://www.freebsd.org/cgi/query-pr.cgi?pr=ports%2F168306&getpatch=1 > > > patch< patch-openssh-hpn-mirror.txt > > > > > actually, the & in the command line mucks things up. > > > > this should work: > > cd /usr/ports/security/openssh-portable > > fetch -o - > > 'http://www.freebsd.org/cgi/query-pr.cgi?pr=ports%2F168306&getpatch=1' > > | patch > > > > (-o is output file.. unless you want a strange file hanging around, - > > means stdout, | patch just pipes standard out to in and to patch. > > > > -- > > Michael Scheidell, CTO > > >*| * SECNAP Network Security Corporation > > d: +1.561.948.2259 > > w: http://people.freebsd.org/~scheidell > > _______________________________________________ > > freebsd-ports@freebsd.org mailing list > > http://lists.freebsd.org/mailman/listinfo/freebsd-ports > > To unsubscribe, send any mail to "freebsd-ports-unsubscribe@freebsd.org" > > -- > > - (2^(N-1)) -- - (2^(N-1))