summaryrefslogtreecommitdiffhomepage
path: root/TODO
blob: 7acc8c03a476d6e88ff03ba60144bd9f1cd63106 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
Current:

Things which might need doing:

- Make options.h generated from configure perhaps?

- some sort of warning when blocking on random? (could be difficult,
  investigate alarm() perhaps)

- Improved queueing of unauthed connections

- handle /etc/environment in AIX

- check that there aren't timing issues with valid/invalid user authentication
  feedback.

- Binding to different interfaces

- possible RSA blinding? need to check whether this is vuln to timing attacks
- check PRNG
- CTR mode, SSH_MSG_IGNORE sending to improve CBC security
- DH Group Exchange possibly, or just add group14 (whatever it's called today)

- fix scp.c for IRIX

- Be able to use OpenSSH keys for the client? or at least have some form of 
  encrypted keys.

- Client agent forwarding

- Handle restrictions in ~/.ssh/authorized_keys ?