Re: StreamLocal forwarding

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



On Wed, 4 May 2016, Damien Miller wrote:

> On Wed, 4 May 2016, Damien Miller wrote:
> 
> > On Tue, 3 May 2016, Rogan Dawes wrote:
> > 
> > > And, surprisingly, even having set the directive outside the Match block,
> > > the following command still doesn't show streamlocalbindunlink set:
> > > 
> > > sshd -T -C "user=sshvpn,host=196.209.244.243,addr=196.209.244.243" | grep -i
> > > stream
> > > streamlocalbindmask 0177
> > > allowstreamlocalforwarding yes
> > 
> > oh, that's a bug in the config dump support.
> 
> ... and with that fixed the real bug reveals itself:

both fixes committed and in HEAD:

commit cfefbcea1057c2623e76c579174a4107a0b6e6cd
Author: djm@xxxxxxxxxxx <djm@xxxxxxxxxxx>
Date:   Tue May 3 15:57:39 2016 +0000

    upstream commit
    
    fix overriding of StreamLocalBindMask and
    StreamLocalBindUnlink in Match blocks; found the hard way by Rogan Dawes
    
    Upstream-ID: 940bc69ec0249ab428d24ccd0722ce35cb932ee2

commit 771c2f51ffc0c9a2877b7892fada0c77bd1f6549
Author: djm@xxxxxxxxxxx <djm@xxxxxxxxxxx>
Date:   Tue May 3 15:25:06 2016 +0000

    upstream commit
    
    don't forget to include StreamLocalBindUnlink in the
     config dump output
    
    Upstream-ID: 14a6d970b3b45c8e94272e3c661e9a0b2a0ee7cb


_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev



[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux