1. 21 Oct, 2020 2 commits
    • Scott Kuhl's avatar
      whitespace cleanup · 4deee45b
      Scott Kuhl authored
      4deee45b
    • Scott Kuhl's avatar
      Make prefixes in verbose output more consistent. · 7cb30b78
      Scott Kuhl authored
      Use 'c' prefix for client, 's' prefix for server, and 'fw' prefix for
      firewall messages. The 'c' and 's' prefixes were used sometimes but
      not consistently. The firewall printed messages prefixed with
      "firewall manager:" or "firewall:" or ">>" previously.
      
      This patch also fixes a couple of print() calls that should have been
      debug1()---a bug introduced in a recent commit.
      7cb30b78
  2. 20 Oct, 2020 2 commits
  3. 19 Oct, 2020 6 commits
    • Nicolas Stalder's avatar
      Document -s/--subnets option in man page · 9d704b35
      Nicolas Stalder authored
      9d704b35
    • Brian May's avatar
      Merge pull request #545 from skuhl/avoid-touching-etc-hosts · a266e7a8
      Brian May authored
      Only write /etc/hosts when necessary.
      a266e7a8
    • Scott Kuhl's avatar
      Only write /etc/hosts when necessary. · e1106a33
      Scott Kuhl authored
      Without this patch, sshuttle 'restores' /etc/hosts even if it didn't
      make any modifications to it. This can be confirmed by running without
      --auto-hosts and confirming that the modification time of /etc/hosts
      is unchanged while sshuttle is running, but is updated when sshuttle
      exits (and a debug2() message is printed indicating the file is
      written).
      
      I'm not aware of the previous behavior causing problems. However,
      writing an important file unnecessarily as root should be avoided.
      e1106a33
    • Brian May's avatar
      Merge pull request #543 from skuhl/sdnotify-doc · 1dbf2163
      Brian May authored
      sdnotify.py documentation
      1dbf2163
    • Scott Kuhl's avatar
      sdnotify.py documentation · 52558174
      Scott Kuhl authored
      52558174
    • Scott Kuhl's avatar
      Update/document client's handling of IPv4 and IPv6. · b7a29aca
      Scott Kuhl authored
      Additional comments, checks, warning messages, and diagnostic
      information is printed out when the client starts.
      
      We assume IPv4 is always present and enabled. We assume IPv6 is not
      supported when it is disabled at the command line or when it is not
      supported by the firewall method. Warn if IPv6 is disabled but the
      user specified IPv6 subnets, IPv6 DNS servers, or IPv6 excludes that
      are effectively ignored.
      
      Instead of indicating which features are on/off, we also indicate if
      features are available in the verbose output.
      
      We also more clearly print the subnets that we forward, excludes, and
      any redirected DNS servers to the terminal output.
      
      These changes should help handling bug reports and make it clearer to
      users what is happening. It should also make it more graceful when a
      user specifies a subnet/exclude with hostname that resolves to both
      IPv4 and IPv6 (but IPv6 is disabled in sshuttle).
      b7a29aca
  4. 18 Oct, 2020 4 commits
  5. 17 Oct, 2020 1 commit
    • Scott Kuhl's avatar
      When subnets and excludes are specified with hostnames, use all IPs. · 036c49e4
      Scott Kuhl authored
      The list of subnets to route over VPN and the list of subnets to
      exclude are parsed in option.py parse_subnetport(). Hostnames or IP
      addresses are supported. If a hostname was provided, only the first IP
      address was considered. This could result in some traffic not
      traversing the VPN that the user might expect should traverse it from
      the arguments passed to sshuttle.
      
      This patch makes the function handle all of the IPs if a hostname is
      provided. If a user provides a hostname with a CIDR mask, problems can
      occur and we warn the user about the issue.
      
      If the user includes a hostname with both an IPv4 and an IPv6 address,
      and the underlying method doesn't support IPv6, then this patch will
      cause sshuttle to fail. I plan to provide a future patch where failure
      won't occur if the only place IPv6 addresses appear is in the exclude
      list. In that case it should be safe to ignore the IPv6 address.
      
      This patch also changes parse_ipport() which is used by the --to-ns
      option. If the user provides a hostname here, we just use the first IP
      from the hostname and warn the user that only one is being used.
      036c49e4
  6. 10 Oct, 2020 1 commit
  7. 09 Oct, 2020 1 commit
    • Scott Kuhl's avatar
      Include sshuttle version in verbose output. · 84e43d31
      Scott Kuhl authored
      Some bug reports include verbose sshuttle output but lack the version
      that is being used. Including the sshuttle version in the output may
      make it easier to handle future bug reports.
      84e43d31
  8. 08 Oct, 2020 2 commits
  9. 06 Oct, 2020 2 commits
  10. 05 Oct, 2020 2 commits
  11. 29 Sep, 2020 1 commit
  12. 28 Sep, 2020 1 commit
  13. 15 Sep, 2020 1 commit
  14. 14 Sep, 2020 1 commit
  15. 09 Sep, 2020 1 commit
  16. 08 Sep, 2020 4 commits
  17. 07 Sep, 2020 1 commit
  18. 30 Aug, 2020 1 commit
  19. 29 Aug, 2020 1 commit
    • Joseph Barker's avatar
      Fix python2 client compatibility · ec5fb683
      Joseph Barker authored
      Python2 ignores the byte string qualification (b’foo’)  but falls over for the combination rb for this regexp. Switching the qualification to br appears to fix this and works in both python2 and python3.
      ec5fb683
  20. 28 Aug, 2020 5 commits