This release adds important security fixes.
Support for Diffie-Hellman
with SHA256 has been added. Several features have
been added to
sshd_config, including support for conditional
directives, forcing use
of a specified command, and restrictions on port
forwarding. Optional
logging has been added to sftp-server. The client
may exit if any
requested port forwarding cannot be established,
and will record any
non-standard ports in the known_hosts file.
Support for SELinux, Solaris
process contracts, and OpenSSL hardware engines
can be built in. Various
other bugs have been fixed and features added.