Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | main/ipsec-tools: cherry-pick fixes from upstream | Timo Teräs | 2013-02-05 | 4 | -3/+55 |
| | |||||
* | main/ipsec-tools: apply a security fix from upstream commit | Timo Teräs | 2013-01-24 | 2 | -1/+15 |
| | |||||
* | main/ipsec-tools: upgrade to 0.8.1 | Timo Teräs | 2013-01-08 | 6 | -244/+3 |
| | | | | remove patches present upstream | ||||
* | main/ipsec-tools: cherry-pick fixes from upstream CVS | Timo Teräs | 2012-08-23 | 6 | -1/+242 |
| | |||||
* | main/ipsec-tools: add patch to execute phase1 dead hook on initial-contact | Timo Teräs | 2011-12-13 | 2 | -2/+15 |
| | |||||
* | main/ipsec-tools: remove *.la files | William Pitcock | 2011-06-29 | 1 | -2/+3 |
| | |||||
* | main/ipsec-tools: one more fix for grekey support | Timo Teräs | 2011-03-30 | 2 | -25/+85 |
| | | | | sainfo matching needs to allow wildcard matching. | ||||
* | main/ipsec-tools: refresh gre-support patch | Timo Teräs | 2011-03-30 | 2 | -60/+178 |
| | | | | | It was missing some ulport swaps that caused isakmp quick mode as responder to fail under certain cases. | ||||
* | main/ipsec-tools: update to 0.8.0 | Timo Teräs | 2011-03-19 | 2 | -428/+4 |
| | | | | Remove one patch merged upstream. | ||||
* | main/ipsec-tools: update to 0.8.0 RC, and include additional patches | Timo Teräs | 2011-03-04 | 4 | -44/+1067 |
| | | | | | | * improve handling of setups where single node participates to multiple dmvpn networks. enable using of grekey in setkey, SPD and sainfo; also match remoteconfs using sainfo ph1id | ||||
* | Set all packages with arch="x86 x86_64" to arch="all". | William Pitcock | 2011-01-13 | 1 | -1/+1 |
| | |||||
* | main/*: add arch | Natanael Copa | 2010-12-13 | 1 | -0/+1 |
| | |||||
* | main/ipsec-tools: upgrade to snapshot 2010-12-08 | Timo Teräs | 2010-12-08 | 5 | -388/+5 |
| | | | | * remove patches merged upstream | ||||
* | main/ipsec-tools: fix for improving delete notify handling | Timo Teräs | 2010-11-15 | 2 | -2/+114 |
| | | | | | the old one could crash under some rare circumstances (deleting responder mode ph1 in very early state). | ||||
* | main/ipsec-tools: add a patch to improve delete notify handling | Timo Teräs | 2010-11-04 | 2 | -2/+61 |
| | | | | | | | if phase1 rekeying is enabled, remote side deleting the last phase1 will result in deletion of all the ipsec-sa's and will execute the phase1_dead script hook too (so every one knows the traffic between the two nodes has ceased). | ||||
* | main/ipsec-tools: two new fixes | Timo Teräs | 2010-10-29 | 4 | -36/+307 |
| | | | | | | | | * update adminport to work with huge replies * defer handling of DH calculations for isakmp identity reponse (this helps to handle things in right order if we are getting multiple simultaneous connection requests; this also makes the previous receive buffer size change mostly irrelevant) | ||||
* | main/ipsec-tools: update to 2010-10-22 snapshot | Timo Teräs | 2010-10-27 | 6 | -790/+91 |
| | | | | | remove patches committed upstream. and add a patch for dpd related minor fix. | ||||
* | main/ipsec-tools: racoonctl socket buffer size patch | Timo Teräs | 2010-10-14 | 2 | -1/+36 |
| | | | | | will fix certain racoonctl errors if there are multiple simultaneous connections and the system socket buffer size is set low. | ||||
* | main/ipsec-tools: add a patch to modify receive buffer size | Timo Teräs | 2010-08-20 | 2 | -1/+36 |
| | | | | | this fixing behaviour on long backbuffer of packets to start dropping packets instead of processing them late. | ||||
* | main/ipsec-tools: use openssl in oneshot mode | Timo Teräs | 2010-06-04 | 2 | -2/+214 |
| | | | | | | Use the highlevel EVP and HMAC functions to calculate oneshot digest and HMAC. This enable the use of crypto accelerators for these operations. | ||||
* | main/[various]: rebuild against openssl-1.0 | Natanael Copa | 2010-05-14 | 1 | -1/+1 |
| | |||||
* | main/[various]: bump pkgrel to force rebuild against nptl | Natanael Copa | 2010-05-04 | 1 | -1/+1 |
| | |||||
* | main/ipsec-tools: add patch for fd priorities | Timo Teras | 2010-03-09 | 2 | -2/+289 |
| | | | | it improves admin port responsiveness under high load. | ||||
* | main/ipsec-tools: start after ntp-client | Natanael Copa | 2010-02-08 | 2 | -5/+13 |
| | | | | fixes #261 | ||||
* | main/ipsec-tools: fix a memleak in the initial-contact patch | Natanael Copa | 2009-12-10 | 2 | -6/+8 |
| | | | | | the patch should fix reconnection on unstable lines but contained a memory leak. This is an update of the same patch. | ||||
* | main/ipsec-tools: initial contact fix | Natanael Copa | 2009-12-09 | 2 | -2/+75 |
| | | | | | | | Reset remote node contacted state if all related security associates are purged. Fixes issues with unstable internet connections. | ||||
* | main/ipsec-tools: provide ipsec | Natanael Copa | 2009-09-25 | 2 | -2/+3 |
| | | | | so opennhrp start after racoon. | ||||
* | main/ipsec-tools: start service after firewall | Natanael Copa | 2009-09-15 | 2 | -2/+3 |
| | |||||
* | main/ipsec-tools: update to 20090903 snapshot | Timo Teras | 2009-09-03 | 2 | -1232/+3 |
| | | | | remove the patch merged upstream. | ||||
* | main/ipsec-tools: bump up to 20080820 snapshot | Timo Teras | 2009-08-20 | 7 | -1855/+1236 |
| | | | | | | remove patches merged upstream, minor fix to reverse-connect patch and add new "phase1 hints when rekeying" patch to help rekeying in some nat scenarios. | ||||
* | main/ipsec-tools: update checksum and bump pkgrel | Natanael Copa | 2009-08-05 | 1 | -4/+4 |
| | |||||
* | Adding SETKEY_OPTS parameter to init.d and conf.d files This helps users to ↵ | Mika Havela | 2009-08-05 | 2 | -1/+2 |
| | | | | append e.g. '-k' option to the setkey command by modifying their /etc/conf.d/racoon file | ||||
* | moved extra/* to main/ | Natanael Copa | 2009-07-24 | 9 | -0/+2394 |
and fixed misc build issues |