Changelog for
python39-paramiko-2.11.0-qubes.2.7.noarch.rpm :
* Thu May 26 2022 Michael Ströder
- update to 2.11.0
* [Feature] #1951: Add SSH config token expansion (eg %h, %p) when parsing ProxyJump directives.
* [Support] #2004: (via #2011) Apply unittest skipIf to tests currently using SHA1 in their critical path, to avoid failures on systems starting to disable SHA1 outright in their crypto backends (eg RHEL 9).
* [Support] #1838: (via #1870/#2028) Update camelCase method calls against the threading module to be snake_case; this and related tweaks should fix some deprecation warnings under Python 3.10.
* [Support] #2038: (via #2039) Recent versions of Cryptography have deprecated Blowfish algorithm support; in lieu of an easy method for users to remove it from the list of algorithms Paramiko tries to import and use, we’ve decided to remove it from our “preferred algorithms” list. This will both discourage use of a weak algorithm, and avoid warnings.- update to 2.10.5
* [Bug] #2008: (via #2010) Windows-native SSH agent support as merged in 2.10 could encounter Errno 22 OSError exceptions in some scenarios (eg server not cleanly closing a relevant named pipe). This has been worked around and should be less problematic.
* [Bug] #2017: OpenSSH 7.7 and older has a bug preventing it from understanding how to perform SHA2 signature verification for RSA certificates (specifically certs - not keys), so when we added SHA2 support it broke all clients using RSA certificates with these servers. This has been fixed in a manner similar to what OpenSSH’s own client does: a version check is performed and the algorithm used is downgraded if needed.
* [Bug] #1933: Align signature verification algorithm with OpenSSH re: zero-padding signatures which don’t match their nominal size/length. This shouldn’t affect most users, but will help Paramiko-implemented SSH servers handle poorly behaved clients such as PuTTY.
* Thu Apr 28 2022 Dirk Müller - update to 2.10.4:
* Servers offering certificate variants of hostkey algorithms (eg ssh-rsa-cert-v01AATTopenssh.com) could not have their host keys verified by Paramiko clients, as it only ever considered non-cert key types for that part of connection handshaking. This has been fixed.
* gq PKey instances’ __eq__ did not have the usual safety guard in place to ensure they were being compared to another PKey object, causing occasional spurious BadHostKeyException (among other things). This has been fixed.
* Update camelCase method calls against the threading module to be snake_case; this and related tweaks should fix some deprecation warnings under Python 3.10.
* Fri Apr 08 2022 pgajdosAATTsuse.com- do not require python-mock for build
* Fri Mar 18 2022 Michael Ströder - Update to 2.10.3 Too many changes to be listed here: https://www.paramiko.org/changelog.html
* Tue Oct 12 2021 ecsos - Update to 2.8.0 - [Feature] #1846: Add a prefetch keyword argument to SFTPClient.get/SFTPClient.getfo so users who need to skip SFTP prefetching are able to conditionally turn it off. - [Bug] #1462: (via #1882) Newer server-side key exchange algorithms not intended to use SHA1 (diffie-hellman-group14-sha256, diffie-hellman-group16-sha512) were incorrectly using SHA1 after all, due to a bug causing them to ignore the hash_algo class attribute. This has been corrected. - [Support] #1722: Remove leading whitespace from OpenSSH RSA test suite static key fixture, to conform better to spec. - [Support] #1727: Add missing test suite fixtures directory to MANIFEST.in, reinstating the ability to run Paramiko’s tests from an sdist tarball. - [Support]: Update our CI to catch issues with sdist generation, installation and testing. - [Support]: Administrivia overhaul, including but not limited to: - Migrate CI to CircleCI - Primary dev branch is now main (renamed) - Many README edits for clarity, modernization etc; including a bunch more (and consistent) status badges & unification with main project site index - PyPI page much more fleshed out (long_description is now filled in with the README; sidebar links expanded; etc) - flake8, pytest configs split out of setup.cfg into their own files - Invoke/invocations (used by maintainers/contributors) upgraded to modern versions- Skip python2 to fix build errors for Leap.- Rebase paramiko-pr1655-remove-pytest-relaxed.patch.
* Mon Dec 07 2020 Steve Kowalik - Set environment to utf-8 to allow tests to pass on Python 2. (bsc#1178341)
* Tue Oct 13 2020 Benjamin Greiner - remove dependency on pytest-relaxed
* paramiko-pr1655-remove-pytest-relaxed.patch
* gh#paramiko/paramiko#1655
* Fri Sep 04 2020 Ondřej Súkup - update to 2.7.2- drop configs.tar.gz
* Add missing test suite fixtures directory to MANIFEST.in
* Remove leading whitespace from OpenSSH RSA test suite static key fixture,
* Fix incorrect string formatting causing unhelpful error message annotation when using Kerberos/GSSAPI.
* Fix incorrectly swapped order of p and q numbers when loading OpenSSH-format RSA private keys.
* Sat Dec 21 2019 Ondřej Súkup - update to 2.7.1- add configs.tar.gz with missing test data
* full changelog at http://www.paramiko.org/changelog.html
* Tue Jun 25 2019 Ondřej Súkup - update to 2.6.0- drop relaxed.patch and 1311.patch
* add a new keyword argument to SSHClient.connect and paramiko.transport.Transport -> disabled_algorithms
* Fix Ed25519 key handling so certain key comment lengths don\'t cause SSHException(\"Invalid key\")
* Add backwards-compatible support for the gssapi
* Tue Jun 11 2019 Ondřej Súkup - update to 2.5.0- dropped 1379.patch- refreshed patches: paramiko-test_extend_timeout.patch relaxed.patch 1311.patch
* Add support for encrypt-then-MAC (ETM) schemes (hmac-sha2-256-etmAATTopenssh.com, hmac-sha2-512-etmAATTopenssh.com) and two newer Diffie-Hellman group key exchange algorithms (group14, using SHA256; and group16, using SHA512).
* Add support for Curve25519 key exchange.
* Raise Cryptography dependency requirement to version 2.5
* Add support for the modern (as of Python 3.3) import location of MutableMapping
* Wed Mar 13 2019 Tomáš Chvátal - Run tests verbosely- Drop cert_support.tar.gz as it is currently properly in the release
* Thu Feb 14 2019 Hans-Peter Jansen - add empty line after %autopatch: build fails up to 42.3 otherwise
* Thu Feb 14 2019 Ondřej Súkup - drop python-pytest_relaxed dependency- add patches: 1311.patch - fix warnings 1379.patch - fix support for gssapi relaxed.patch - remove unnecessary pytest_relaxed dep- remove patch: disable-gssapi.patch - supersseded