- 13 Dec, 2019 1 commit
-
-
William Mantly authored
* added sudoers options to command line arguments * added sudoers options to command line arguments * template for sudoers file * Added option for GUI sudo * added support for GUI sudo * script for auto adding sudo file * sudoers auto add works and validates * small change * Clean up for CI * removed code that belongs in another PR * added path for package bins * added sudoers bin * added sudoers-add to setup file * fixed issue with sudoers bash script * auto sudoers now works * added --sudoers-no-modify option * bin now works with ./run * removed debug print * Updated sudoers-add script * Fixed error passing sudoers config to script * more dynamic building of sudoers file * added option to specify sudoers.d file name * fixed indent issue * fixed indent issue * indent issue * clean up * formating * docs * fix for flags * Update usage.rst * removed shell=true * cleared CI errors * cleared CI errors * removed random * cleared linter issue * cleared linter issue * cleared linter issue * updated sudoers-add script * safer temp file * moved bin directory * moved bin directory * removed print * fixed spacing issue * sudoers commands must only containe upper case latters
-
- 09 Nov, 2019 1 commit
-
-
Ben Wiederhake authored
* Make hostwatch locale-independent See #377: hostwatch used to call netstat and parse the result, without setting the locale. The problem is converting the binary output to a unicode string, as the locale may be utf-8, latin-1, or literally anything. Setting the locale to C avoids this issue, as netstat's source strings to not use non-ASCII characters. * Break line, check all other invocations
-
- 08 Nov, 2019 1 commit
-
-
Joseph Barker authored
This commit resolves #297, allowing the buffers used in the latency control to be changed with a command line option ‘--latency-buffer-size’. We do this by changing a module variable in ssnet.py (similar to the MAX_CHANNEL variable) which seems to be the simplest code change without extensive hacking. Documentation is also updated.
-
- 27 Oct, 2019 1 commit
-
-
Joseph Barker authored
The changes in a765aa32 removed a more complex pieced of code for parsing which sudo command to use. The %(eb)s no longer refers to any variable and is directly printed to the command line. %(eb)s is now replaced with ‘sudo’.
-
- 24 Oct, 2019 1 commit
-
-
Li-Wen Hsu authored
-
- 13 Oct, 2019 1 commit
-
-
Norman Rasmussen authored
-
- 03 Oct, 2019 2 commits
-
-
unl89 authored
-
Brian May authored
Latest version of attrs breaks pytest, see: https://stackoverflow.com/questions/58189683/typeerror-attrib-got-an-unexpected-keyword-argument-convert
-
- 22 Sep, 2019 5 commits
-
-
Nick Sokolov authored
Regression was introduced in #337 that is skipping all local traffic, including DNS. This change makes UDP port 53 (DNS) LOCAL traffic to be treated as special case. Fixes #357
-
unl89 authored
-
Nick Sokolov authored
In certain cases socket.connect fails with ECONNABORTED, which is treated as "unknown" error causing sshuttle to crash. Fixes #356
-
Anthony Cornehl authored
-
Anthony Cornehl authored
-
- 25 Jul, 2019 1 commit
-
-
cptpcrd authored
`pacman -Sy` does a partial upgrade, which is specifically documented as being unsupported.
-
- 21 Jun, 2019 1 commit
-
-
José Augusto authored
Correct the install flag for arch linux installation example.
-
- 08 Jun, 2019 2 commits
-
-
Daniel Jeffery authored
* use addrtype match to return the LOCAL trafik * Add assertion for the new LOCAL firewall rule added in PR 312. * Fix linter complaints
-
Jeremy Eder authored
-
- 04 Apr, 2019 1 commit
-
-
Elijah Lynn authored
-
- 14 Feb, 2019 2 commits
-
-
Thomas Bouve authored
-
Thomas Bouve authored
* assembler import fix. * Added noqa to import statements.
-
- 11 Feb, 2019 1 commit
-
-
Bastian Venthur authored
* re-organized imports according to pep8 * fixed all remaining pep8 issues * moved common config into setup.cfg, additionally test `tests` * removed --select=X -- the errors selected where by default not in flake8's --ignore list so effectively had no effect * update .travis.yml to reflect changes in tox.ini * make travis just use tox in order to avoid code duplaction * replace py.test with pytest * fixed .travis.yml * try different pypy toxenv * hopefully fixed testenv for pypy * added pypy basepython, removed unused python2.6 * install dev package before testing (fixes missing coverage) * fixed empty exception pass blocks with noqa * Added dummy log message on empty try-except-pass blocks to make dodacy happy :( * Replaced Exception with BaseException
-
- 28 Jan, 2019 3 commits
-
-
Brian May authored
-
Brian May authored
-
Vasil Kolev authored
There's a known issue that makes sshuttle crash if there are too many routes on the remote host (that don't fit in 64KB). This patch requests the routes only if auto-nets is specified on the command line.
-
- 23 Jan, 2019 2 commits
-
-
Alex Tomlins authored
This was susceptible to the same deadlock issue that ipt_chain_exists had and was fixed in d43db80d where if the command returned a significant amount of output, it wouldn't all be read in, resulting in the subprocess hanging waiting for the output to be read.
-
Alex Tomlins authored
subprocess.run only exists for python3, and this needs to also support python 2.7
-
- 29 Dec, 2018 1 commit
-
-
André Draszik authored
--ns-hosts is available since commit d2ee34d7 ("dns: Added --ns-hosts to tunnel only some requests") (released as v0.72), but was never documented. --to-ns is available since commit be559fc7 ("Fix case where there is no --dns.") after several bugfixes, released as v0.78.4, but was never documented.
-
- 09 Dec, 2018 1 commit
-
-
Alex Tomlins authored
When running sshuttle with a large list of routes it's failing to clean them up at exit. It returns the following: $ sshuttle -r user@host.example.com -s /tmp/aws-cidrs.txt user@host.example.com's password: client: Connected. ^CAnother app is currently holding the xtables lock; still -9s 0us time ahead to have a chance to grab the lock... Another app is currently holding the xtables lock; still -19s 0us time ahead to have a chance to grab the lock... Another app is currently holding the xtables lock; still -29s 0us time ahead to have a chance to grab the lock... This continues indefinitely. Looking in ps reveals that there are 2 iptables processes running. Killing -9 the first one, allows sshuttle to continue and clean up successfully. The problem lies with the use of Popen here. The function currently returns as soon as it finds a match without consuming everything from stdout. This means that if there's more output from iptables than will fit in the buffer it doesn't exit, and therefore doesn't release the kernel xtables lock.
-
- 03 Dec, 2018 1 commit
-
-
David Landry authored
-
- 29 Nov, 2018 1 commit
-
-
Todor Gaidarov authored
-
- 03 Nov, 2018 1 commit
-
-
João Vieira authored
Before this change, in pf, exclusions used a pass out quick which gave them higher precedence than any other rule independent of subnet width. As reported in #265 this causes exclusion from one instance of sshuttle to also take effect on other instances because quick aborts the evaluation of rules across all anchors. This commit changes the precedence of rules so quick can now be dropped. The new order is defined by the following rule, from subnet_weight: "We need to go from smaller, more specific, port ranges, to larger, less-specific, port ranges. At each level, we order by subnet width, from most-specific subnets (largest swidth) to least-specific. On ties, excludes come first."
-
- 01 Nov, 2018 1 commit
-
-
Brian May authored
* Close stdin, stdout, and stderr when using syslog or forking to daemon Fixes #139 * Ensure we close devnull after use
-
- 23 Oct, 2018 1 commit
-
-
João Vieira authored
* Fixes support for OpenBSD (6.1+) As reported in #219, new versions of OpenBSD ship with a different pfioc_rule struct. This commit adjusts the offset to match the new struct. * Fixes tests for OpenBSD 6.1+
-
- 17 Oct, 2018 5 commits
-
-
Bastian Venthur authored
-
AbbalYouness authored
-
Bastian Venthur authored
-
Bastian Venthur authored
-
Bastian Venthur authored
Having the tests in a `tests` directory in root is the most common approach. Also moved pytest's conftest.py into `tests` making the fixture available for client and server tests.
-
- 07 Oct, 2018 1 commit
-
-
Brian May authored
-
- 22 Sep, 2018 1 commit
-
-
Brian May authored
Add --no-sudo-pythonpath option
-