<feed xmlns='http://www.w3.org/2005/Atom'>
<title>tteras/strongswan/src/libcharon/plugins, branch tteras-release</title>
<subtitle>tteras' strongSwan tree
</subtitle>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/'/>
<entry>
<title>vici: add support for individual sa state changes</title>
<updated>2017-11-20T08:45:02+00:00</updated>
<author>
<name>Timo Teräs</name>
<email>timo.teras@iki.fi</email>
</author>
<published>2015-09-21T10:42:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=b08bc3334aa09841438123ce3ddd7f535350cb24'/>
<id>b08bc3334aa09841438123ce3ddd7f535350cb24</id>
<content type='text'>
Useful for monitoring and tracking full SA.

Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Useful for monitoring and tracking full SA.

Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</pre>
</div>
</content>
</entry>
<entry>
<title>vici: send certificates for ike-sa events</title>
<updated>2017-11-20T08:45:02+00:00</updated>
<author>
<name>Timo Teräs</name>
<email>timo.teras@iki.fi</email>
</author>
<published>2015-09-21T10:42:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=40790461360e930ffda5dce9e020e15d9ccfdd7a'/>
<id>40790461360e930ffda5dce9e020e15d9ccfdd7a</id>
<content type='text'>
Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</pre>
</div>
</content>
</entry>
<entry>
<title>charon: add optional source and remote overrides for initiate</title>
<updated>2017-11-20T08:45:02+00:00</updated>
<author>
<name>Timo Teräs</name>
<email>timo.teras@iki.fi</email>
</author>
<published>2015-09-21T10:41:58+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=ea546194df7e5d181cdfc1b236e21f973080be51'/>
<id>ea546194df7e5d181cdfc1b236e21f973080be51</id>
<content type='text'>
This introduces support for specifying optional IKE SA specific
source and remote address for child sa initiation. This allows
to initiate wildcard connection for known address via vici.

In addition this allows impler implementation of trap-any patches
and is a prerequisite for dmvpn support.

Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
This introduces support for specifying optional IKE SA specific
source and remote address for child sa initiation. This allows
to initiate wildcard connection for known address via vici.

In addition this allows impler implementation of trap-any patches
and is a prerequisite for dmvpn support.

Signed-off-by: Timo Teräs &lt;timo.teras@iki.fi&gt;
</pre>
</div>
</content>
</entry>
<entry>
<title>Fixed some typos, courtesy of codespell</title>
<updated>2017-11-15T09:21:13+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-11-15T09:21:13+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=527b3f0ca5a1cc17306ebb7a5c5f3375f3d812aa'/>
<id>527b3f0ca5a1cc17306ebb7a5c5f3375f3d812aa</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>unit-tests: Rename targets for libstrongswan and kernel-netlink</title>
<updated>2017-11-09T08:11:42+00:00</updated>
<author>
<name>Thomas Egerer</name>
<email>thomas.egerer@secunet.com</email>
</author>
<published>2017-11-08T17:16:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=9cc61baaf592b126cde2dfeab3fbb8961970c1d6'/>
<id>9cc61baaf592b126cde2dfeab3fbb8961970c1d6</id>
<content type='text'>
libstrongswan and kernel-netlink are the only two components which do
not adhere to the naming scheme used for all other tests. If the tests
are run by an external application this imposes problems due to clashing
names.

Signed-off-by: Thomas Egerer &lt;thomas.egerer@secunet.com&gt;
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
libstrongswan and kernel-netlink are the only two components which do
not adhere to the naming scheme used for all other tests. If the tests
are run by an external application this imposes problems due to clashing
names.

Signed-off-by: Thomas Egerer &lt;thomas.egerer@secunet.com&gt;
</pre>
</div>
</content>
</entry>
<entry>
<title>kernel-pfkey: Support anti-replay windows &gt; 2k</title>
<updated>2017-11-08T15:35:38+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-11-07T13:26:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=88a8fba1c76eda1c39dce4d0b2038c760f6d6140'/>
<id>88a8fba1c76eda1c39dce4d0b2038c760f6d6140</id>
<content type='text'>
FreeBSD 11.1 supports a new extension to configure larger anti-replay
windows, now configured as number of packets.

Fixes #2461.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
FreeBSD 11.1 supports a new extension to configure larger anti-replay
windows, now configured as number of packets.

Fixes #2461.
</pre>
</div>
</content>
</entry>
<entry>
<title>kernel-pfkey: Don't include keys in SADB_UPDATE message to update IPs on FreeBSD</title>
<updated>2017-11-08T15:34:12+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-11-03T08:37:44+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=21a500a092e4a2a0f91118846fede5f445d59d31'/>
<id>21a500a092e4a2a0f91118846fede5f445d59d31</id>
<content type='text'>
The FreeBSD kernel explicitly rejects messages containing keys for mature SAs.

Fixes #2457.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The FreeBSD kernel explicitly rejects messages containing keys for mature SAs.

Fixes #2457.
</pre>
</div>
</content>
</entry>
<entry>
<title>vici: Add 'get|reset-counters' commands</title>
<updated>2017-11-08T15:28:28+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-08-24T15:41:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=fdf33b0f1cf41b4b47d541411b03d60e678754aa'/>
<id>fdf33b0f1cf41b4b47d541411b03d60e678754aa</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>counters: Move IKE event counter collection from stroke to a separate plugin</title>
<updated>2017-11-08T15:28:28+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-08-24T15:02:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=6f74b8748a2d9835deb0779868969d52081e10e1'/>
<id>6f74b8748a2d9835deb0779868969d52081e10e1</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>systime-fix: Add timeout option to stop waiting for valid system time</title>
<updated>2017-11-08T15:20:35+00:00</updated>
<author>
<name>Tobias Brunner</name>
<email>tobias@strongswan.org</email>
</author>
<published>2017-09-26T08:32:04+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/user/tteras/strongswan/commit/?id=c81b87ac265eaf234e1122c424096ef56f934a7f'/>
<id>c81b87ac265eaf234e1122c424096ef56f934a7f</id>
<content type='text'>
A certificate check is forced once the timeout is reached even if the
system time appears to be invalid.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A certificate check is forced once the timeout is reached even if the
system time appears to be invalid.
</pre>
</div>
</content>
</entry>
</feed>
