1. 11 Feb, 2015 2 commits
  2. 10 Feb, 2015 3 commits
  3. 09 Feb, 2015 3 commits
  4. 08 Feb, 2015 1 commit
    • Franco Fichtner's avatar
      crypt: use the proper OpenSSL version when appropriate · 639d0993
      Franco Fichtner authored
      This is not the fix I have been meaning to push, but openssl_encrypt()
      and openssl_decrypt() are too low level.  They do AES-256-CBC, but not
      key derivation as well as salt and IV handling.  Getting this 100%
      compatible with OpenSSL was the blocker then.  Also, experts have said
      that the cipher should not be used anymore, adding more annoyances as
      this config output does not have a version information prefix...
      639d0993
  5. 06 Feb, 2015 2 commits
  6. 05 Feb, 2015 5 commits
  7. 04 Feb, 2015 2 commits
  8. 03 Feb, 2015 1 commit
    • Ad Schellevis's avatar
      Added profile option to check_reload_status (configd), measured framework... · 9519de18
      Ad Schellevis authored
      Added profile option to check_reload_status (configd), measured framework overhead, current max processing for the daemon is about 6200 req/s on my macbook. ( limited by socket.accept, if needed we could implement another dispatch method in the future)
      
      Simple implementation to use the backend service from the frontend implemented.
      9519de18
  9. 01 Feb, 2015 1 commit
  10. 31 Jan, 2015 1 commit
  11. 30 Jan, 2015 2 commits
  12. 29 Jan, 2015 5 commits
  13. 28 Jan, 2015 6 commits
  14. 27 Jan, 2015 2 commits
  15. 26 Jan, 2015 2 commits
  16. 25 Jan, 2015 2 commits
    • Franco Fichtner's avatar
      openssl: fix issues with port version not finding config · 9af57742
      Franco Fichtner authored
      Really don't want to ship this file locally so that others
      might be encouraged to edit it (again).
      9af57742
    • Franco Fichtner's avatar
      rc: rework sshd handling · ab28de2e
      Franco Fichtner authored
      * Prefer the openssh-portable port, but fall back to the base
        version if it is available.
      
      * Refactor the key generation to produce less duplicated code.
      
      * Locking is completely bogus, but I have no clue how to fix
        that short term without doing a full audit of the subsystem-dirty
        mechanic.
      ab28de2e