I've posted the patch as a PR up at
https://github.com/openssh/openssh-portable/pull/346
Is there a better way to get this moving forward?
Pat
On Wed, 2022-09-21 at 12:00 -0500, Pat Riehecky wrote:> The patch attached to
> https://bugzilla.mindrot.org/show_bug.cgi?id=2950
> applies to the current portable OpenSSH source.
>
> How can I help get the patch in that bug applied?
>
> I'm starting to hear rumblings about storing authentication tokens on
> persistent filesystems (like /tmp, when it isn't tmpfs).? The patch
> itself is fairly tiny, but would pay off for ensuring any forwarded
> credentials are destroyed on reboot and not waiting on disk for
> someone
> with rescue media to borrow.
>
> Pat