| Name |
openssh |
| Description |
SSH protocol implementation for remote login, command execution and file transfer |
| Version |
10.2p1-2 |
| Package Base |
openssh |
| Homepage |
https://www.openssh.com/portable.html |
| Maintainers |
['David Runge <dvzrv@archlinux.org>', 'Giancarlo Razzolini <grazzolini@archlinux.org>', 'Levente Polyak <anthraxx[at]archlinux[dot]org>'] |
| Contributors |
['Aaron Griffin <aaron@archlinux.org>', 'Gaetan Bisson <bisson@archlinux.org>', 'judd <jvinet@zeroflux.org>'] |
| Distro-repo |
https://gitlab.archlinux.org/archlinux/packaging/packages/openssh |
| Sources |
['70-openssh-restart-sshd.hook', '99-archlinux.conf', 'LICENSE', 'https://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-10.2p1.tar.gz', 'https://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-10.2p1.tar.gz.asc', 'openssh-10.2p1-error-to-debug-pkcs11_fetch_certs.patch::https://github.com/openssh/openssh-portable/commit/607f337637f2077b34a9f6f96fc24237255fe175.patch', 'openssh-10.2p1-pinentry-pkcs11provider.patch::https://github.com/openssh/openssh-portable/commit/434ba7684054c0637ce8f2486aaacafe65d9b8aa.patch', 'openssh.tmpfiles', 'ssh-agent.service', 'ssh-agent.socket', 'sshd.pam', 'sshd.service', 'sshd@.service', 'sshdgenkeys.service'] |
| Dependencies |
['glibc', 'krb5', 'libcrypt.so', 'libcrypto.so', 'libedit', 'libedit.so', 'libgssapi_krb5.so', 'libkrb5.so', 'libpam.so', 'libxcrypt', 'libz.so', 'openssl', 'pam', 'zlib'] |
| Optional-Dependencies |
['libfido2', 'sh', 'x11-ssh-askpass', 'xorg-xauth'] |
| Build-Dependencies |
['krb5', 'libedit', 'libfido2', 'libxcrypt', 'linux-headers', 'openssl', 'pam', 'zlib'] |
| Provides |
[] |
| Builddate |
25-10-2025 10:36:14 |
| Architecture |
x86_64 |
| Distro-Version |
|
| Licenses |
['0BSD', 'BSD-2-Clause', 'BSD-3-Clause', 'ISC', 'LicenseRef-Public-Domain', 'MIT'] |
| Hash |
7c0b6c7072e8db701486e4f5d4d47ddff2bee530cb966e00e360b5eda87949fd |
# Maintainer: David Runge <dvzrv@archlinux.org>
# Maintainer: Levente Polyak <anthraxx[at]archlinux[dot]org>
# Maintainer: Giancarlo Razzolini <grazzolini@archlinux.org>
# Contributor: Gaetan Bisson <bisson@archlinux.org>
# Contributor: Aaron Griffin <aaron@archlinux.org>
# Contributor: judd <jvinet@zeroflux.org>
pkgname=openssh
pkgver=10.2p1
pkgrel=2
pkgdesc="SSH protocol implementation for remote login, command execution and file transfer"
arch=(x86_64)
url='https://www.openssh.com/portable.html'
license=(
0BSD
BSD-2-Clause
BSD-3-Clause
ISC
LicenseRef-Public-Domain
MIT
)
depends=(
glibc
)
makedepends=(
krb5
libedit
libfido2
libxcrypt
linux-headers
openssl
pam
zlib
)
optdepends=(
'libfido2: FIDO/U2F support'
'sh: for ssh-copy-id and findssl.sh'
'x11-ssh-askpass: input passphrase in X'
'xorg-xauth: X11 forwarding'
)
backup=(
etc/pam.d/sshd
etc/ssh/ssh_config
etc/ssh/sshd_config
)
source=(
https://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/$pkgname-$pkgver.tar.gz{,.asc}
99-archlinux.conf
$pkgname.tmpfiles
sshdgenkeys.service
70-openssh-restart-sshd.hook
sshd.service
sshd@.service
ssh-agent.service
ssh-agent.socket
sshd.pam
LICENSE
$pkgname-10.2p1-error-to-debug-pkcs11_fetch_certs.patch::https://github.com/openssh/openssh-portable/commit/607f337637f2077b34a9f6f96fc24237255fe175.patch?full_index=1
$pkgname-10.2p1-pinentry-pkcs11provider.patch::https://github.com/openssh/openssh-portable/commit/434ba7684054c0637ce8f2486aaacafe65d9b8aa.patch?full_index=1
)
sha256sums=('ccc42c0419937959263fa1dbd16dafc18c56b984c03562d2937ce56a60f798b2'
'SKIP'
'78b806c38bc1e246daaa941bfe7880e6eb6f53f093bea5d5868525ae6d223d30'
'fadd31c107aee3fc6b501ca046aeb5e6fb1b0256cc5cdcade4e2c95205823a28'
'e4dbff8e04a363a557c19d150e7e3a4317126a0371375771ae800bddf26860a7'
'1d55162a0a35ecbbad9deb0e6108510bcb9cb9e4c6b5813217816bf2be3b8f7e'
'25aea12c4c7fcc3636cae75b3b3cdb1c1bf513659b1e62b8ed67e02afeefc1b4'
'048c07e2085147a7626c2d3f82c9523b1bec6890c1173486de44b2b70624d3e3'
'824bf888ad0cb20ff3c2e13292389eb355ab91c3d9cc2fe0c8c5c60365d4a9c7'
'a16492e1eb9219d47a9053f0c83cdc323bff3c6f5b573bc6509ec40e40e4d04b'
'633e24cbfcb045ba777d3e06d5f85dfaa06d44f4727d38c7fb2187c57498221d'
'7056c04df17a4e0f0bac9f787f347c9cd892cee6323d1c89528090afd0b934a3'
'b13d736aaabe2e427150ae20afb89008c4eb9e04482ab6725651013362fbc7fe'
'18d311b5819538c235aa48b2e4da9b518e4a82cc4570bff6dae116af28396fb1')
b2sums=('8c031b10b1642e21b46f7d1db84ba42692e378a54af3d8e5b5c8706c3a0a06d442a02ed8803063121e7ff325ea275cad4432b9eaa6a7f47a4d7cfad504953ab6'
'SKIP'
'1ff8cd4ae22efed2b4260f1e518de919c4b290be4e0b5edbc8e2225ffe63788678d1961e6f863b85974c4697428ee827bcbabad371cfc91cc8b36eae9402eb97'
'57e77e55fcbd9d7b9951adbafe11ba62e4b8b7338c2a6fe3f163afe5b84458db042024cefbc55f9393cf17d97d067f1c2d9c61880516501bfa4e5c92371e494a'
'2031e10746edb77c190fb762ab82ff9dae2ad801d06d4c5eff2a8fcc459b873cf7c653e320c289f075f440d2079dd2430e0996a87511d3c8587903c622e8b44c'
'2073efe002a178670920a68a43eb16430de6c8921efde0dc272c6c5e4b9b6f7ea06186f7ceec8b3d94af226ffd00f96c8212d9873741e5305b8e94ebc8e15ee7'
'f0687d2acfbe81af6b26f93d5fa507f4a4566a79e7c5e27796698b81d2b5aaf56be54a3a519680f9df076adff2455ecce9ffb789a05af9fd353b69c17742b362'
'8c843c40bf98703fb1eb6280ce1fb4aee7bd3c8632aaaa8598afc02921c4aa9906fde97850e150fd7c67e91a562c7578b17250589be5ad592ac89ccff9da9d99'
'6a80552260bc016757725602638478345565e1466335da8a70e0b4e49fe2e9d3b863df83764696cd91637c17dd137ed7c26188a1d795af3d024d89c9c229829b'
'f161cdb54609bd4521d9517c5c9d97a87f7de5c7504bf46d870ee814624817050ca9f68d42a1e661ecc7c3ede1a440b5b159df18f3b16b3c2e90ecfbd0dfd258'
'1d24cc029eccf71cee54dda84371cf9aa8d805433e751575ab237df654055dd869024b50facd8b73390717e63100c76bca28b493e0c8be9791c76a2e0d60990a'
'a29664104e1ee73ca0aee1d633e9095d92a57c92787f8d8740bdb7211ba3205782ed8677f539bdb8cae3dd75a3694be3132e185fa3fc4b3f401e1f88eb776101'
'237db1bdcdbdbabf564f217e52b965d5f808356101d5754d46ef2b662f7833b52e0fcde4d18b30d41a03415a05fd3d5a147d5042d1435d37fa30ca817771b0ee'
'63d41f71bc1e92b157dd51c2fbb29960b09822e9f599e4a6291b715991f0045f870afafba14bcae226d49dc5080b42f7e014332fbcfea389125f32107eac35bb')
validpgpkeys=('7168B983815A5EEF59A4ADFD2A3F414E736060BA') # Damien Miller <djm@mindrot.org>
prepare() {
# Fix an issue with PKCS#11 provided keys: https://gitlab.archlinux.org/archlinux/packaging/packages/openssh/-/issues/23
patch -Np1 -d $pkgname-$pkgver -i ../$pkgname-10.2p1-error-to-debug-pkcs11_fetch_certs.patch
patch -Np1 -d $pkgname-$pkgver -i ../$pkgname-10.2p1-pinentry-pkcs11provider.patch
cd $pkgname-$pkgver
# remove variable (but useless) first line in config (related to upstream VCS)
sed '/^#.*\$.*\$$/d' -i ssh{,d}_config
# prepend configuration option to include drop-in configuration files for sshd_config
printf "# Include drop-in configurations\nInclude /etc/ssh/sshd_config.d/*.conf\n" | cat - sshd_config > sshd_config.tmp
mv -v sshd_config.tmp sshd_config
# prepend configuration option to include drop-in configuration files for ssh_config
printf "# Include drop-in configurations\nInclude /etc/ssh/ssh_config.d/*.conf\n" | cat - ssh_config > ssh_config.tmp
mv -v ssh_config.tmp ssh_config
# extract separate licenses
sed -n '89,113p' LICENCE > ../rijndael.Public-Domain.txt
sed -n '116,145p' LICENCE > ../ssh.BSD-3-Clause.txt
sed -n '148,209p' LICENCE > ../BSD-2-Clause.txt
sed -n '213,218p' LICENCE > ../snprintf.Public-Domain.txt
sed -n '222,258p' LICENCE > ../openbsd-compat.BSD-3-Clause.txt
sed -n '260,278p' LICENCE > ../openbsd-compat.ISC.txt
sed -n '280,308p' LICENCE > ../openbsd-compat.MIT.txt
sed -n '280,308p' LICENCE > ../openbsd-compat.MIT.txt
sed -n '310,338p' LICENCE > ../blowfish.BSD-3-Clause.txt
sed -n '340,368p' LICENCE > ../replacement.BSD-2-Clause.txt
}
build() {
local configure_options=(
--disable-lastlog
--disable-strip
--libexecdir=/usr/lib/ssh
--prefix=/usr
--sbindir=/usr/bin
--sysconfdir=/etc/ssh
--with-default-path='/usr/local/sbin:/usr/local/bin:/usr/bin'
--with-kerberos5=/usr
--with-libedit
--with-pam
--with-pid-dir=/run
--with-privsep-path=/usr/share/empty.sshd
--with-privsep-user=nobody
--with-security-key-builtin
--with-ssl-engine
--with-xauth=/usr/bin/xauth
--without-zlib-version-check
)
cd $pkgname-$pkgver
./configure "${configure_options[@]}"
make
}
check() {
# NOTE: make t-exec does not work in our build environment
make file-tests interop-tests unit -C $pkgname-$pkgver
}
package() {
depends+=(
krb5 libkrb5.so libgssapi_krb5.so
libedit libedit.so
libxcrypt libcrypt.so
openssl libcrypto.so
pam libpam.so
zlib libz.so
)
cd $pkgname-$pkgver
make DESTDIR="$pkgdir" install
install -vDm 644 ../99-archlinux.conf -t "$pkgdir/etc/ssh/sshd_config.d/"
install -vdm 755 "$pkgdir/etc/ssh/ssh_config.d"
install -Dm644 LICENCE -t "$pkgdir/usr/share/licenses/$pkgname/"
install -Dm644 ../*.txt -t "$pkgdir/usr/share/licenses/$pkgname/"
install -Dm644 ../sshdgenkeys.service -t "$pkgdir"/usr/lib/systemd/system/
install -Dm644 ../sshd.service -t "$pkgdir"/usr/lib/systemd/system/
install -Dm644 ../sshd@.service -t "$pkgdir"/usr/lib/systemd/system/
install -Dm644 ../ssh-agent.{service,socket} -t "$pkgdir"/usr/lib/systemd/user/
install -Dm644 ../sshd.pam "$pkgdir"/etc/pam.d/sshd
install -vDm 644 ../70-openssh-restart-sshd.hook -t "$pkgdir/usr/share/libalpm/hooks/"
# factory files
install -Dm644 ../sshd.pam "$pkgdir"/usr/share/factory/etc/pam.d/sshd
install -Dm644 "$pkgdir/etc/ssh/moduli" -t "$pkgdir"/usr/share/factory/etc/ssh/
install -Dm644 "$pkgdir/etc/ssh/ssh_config" -t "$pkgdir"/usr/share/factory/etc/ssh/
install -Dm644 "$pkgdir/etc/ssh/sshd_config" -t "$pkgdir"/usr/share/factory/etc/ssh/
install -vDm 644 ../99-archlinux.conf -t "$pkgdir/usr/share/factory/etc/ssh/sshd_config.d/"
install -vDm 644 ../$pkgname.tmpfiles "$pkgdir/usr/lib/tmpfiles.d/$pkgname.conf"
install -vDm 644 ../LICENSE "$pkgdir/usr/share/licenses/$pkgname/0BSD.txt"
install -Dm755 contrib/findssl.sh -t "$pkgdir"/usr/bin/
install -Dm755 contrib/ssh-copy-id -t "$pkgdir"/usr/bin/
install -Dm644 contrib/ssh-copy-id.1 -t "$pkgdir"/usr/share/man/man1/
}
# vim: ts=2 sw=2 et: