From owner-cvs-ports@FreeBSD.ORG Sun Jan 25 01:58:49 2004 Return-Path: Delivered-To: cvs-ports@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B1D9616A4CF; Sun, 25 Jan 2004 01:58:49 -0800 (PST) Received: from repoman.freebsd.org (repoman.freebsd.org [216.136.204.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id D03B243D5D; Sun, 25 Jan 2004 01:58:39 -0800 (PST) (envelope-from netchild@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.12.10/8.12.10) with ESMTP id i0P9wd0B099219; Sun, 25 Jan 2004 01:58:39 -0800 (PST) (envelope-from netchild@repoman.freebsd.org) Received: (from netchild@localhost) by repoman.freebsd.org (8.12.10/8.12.10/Submit) id i0P9wdau099218; Sun, 25 Jan 2004 01:58:39 -0800 (PST) (envelope-from netchild) Message-Id: <200401250958.i0P9wdau099218@repoman.freebsd.org> From: Alexander Leidinger Date: Sun, 25 Jan 2004 01:58:39 -0800 (PST) To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org X-FreeBSD-CVS-Branch: HEAD Subject: cvs commit: ports/security/ssh2 Makefile ports/security/ssh2/files kerberos-patch-apps::ssh::sshd2_config X-BeenThere: cvs-ports@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the ports tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 25 Jan 2004 09:58:49 -0000 netchild 2004/01/25 01:58:39 PST FreeBSD ports repository Modified files: security/ssh2 Makefile Added files: security/ssh2/files kerberos-patch-apps::ssh::ssh2_config kerberos-patch-apps::ssh::sshd2_config Log: ---snip--- Improve Kerberos support in ssh2: - Change the WITH_KERBEROS knob into a WITHOUT_KERBEROS knob so kerberized ssh2 automatically is built when MIT Kerberos is installed, unless the WITHOUT_KERBEROS knob is defined. - Check for a library unique to MIT Kerberos to make sure it's not Heimdal that KRB5_HOME accidentally points to. - Add dependency on security/krb5 when built with Kerberos support. - When compiled with Kerberos support also turn it on by default in client and server config files and set "PermitRootLogin" to "nopwd" to only allow those with root tickets declared in ~root/.k5login" to login as root. [1] Ssh2 now should work out of the box in an environment using MIT Kerberos. Submitted by: Peter Losher [1] (kerberos-patch-*) Tested by: Peter Losher ---snip--- Submitted by: maintainer Strange commit log formatting to prevent ambiguous "Submitted by" lines by: committer Revision Changes Path 1.118 +6 -2 ports/security/ssh2/Makefile 1.1 +10 -0 ports/security/ssh2/files/kerberos-patch-apps::ssh::ssh2_config (new) 1.1 +19 -0 ports/security/ssh2/files/kerberos-patch-apps::ssh::sshd2_config (new)