aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* extended changeset [4753]Andreas Steffen2008-12-041-1/+2
|
* implemented the policy cache in kernel_netlink_ipsec_t with a hash table ↵Tobias Brunner2008-12-041-41/+54
| | | | instead of a linked list.
* fixed off by one errorTobias Brunner2008-12-041-1/+1
|
* fixed copy-paste bug (double-free)Martin Willi2008-12-041-1/+0
|
* reset pointer for a clean destructionMartin Willi2008-12-041-0/+1
|
* handling peer_match with higher priority tan ike_match to select correct ↵Martin Willi2008-12-041-1/+1
| | | | config if IPs are equal
* leak whitelisting of OPENSSL_config()Martin Willi2008-12-041-0/+1
|
* suppress output from leak-detective in openacAndreas Steffen2008-12-041-2/+2
|
* load openac plugins explicitlyAndreas Steffen2008-12-041-0/+3
|
* fixed refactoring error in openacAndreas Steffen2008-12-042-2/+3
|
* suppress leak-detective stderr output in ipsec poolAndreas Steffen2008-12-0416-26/+46
|
* fixed double free of host in sadb_address2tsAndreas Steffen2008-12-041-1/+0
|
* enable leak-detective and integrity-test in UML tests by defaultAndreas Steffen2008-12-041-3/+3
|
* add support for smartcards in charon by using the ENGINE API provided by ↵Tobias Brunner2008-12-036-10/+187
| | | | OpenSSL, based on patches by Michael Roßberg.
* enable quoted tokens in the token enumeratorTobias Brunner2008-12-032-18/+42
|
* fixed compiler warningTobias Brunner2008-12-031-1/+1
|
* added memstr and extract_token_str helper functionsTobias Brunner2008-12-034-2/+57
|
* adding general purpose hash tableTobias Brunner2008-12-033-0/+543
|
* fixed double free of host in selector2tsMartin Willi2008-12-031-27/+24
|
* ref_get()/ref_put() use atomic gcc operations if supported, thanks to Thomas ↵Martin Willi2008-12-023-13/+32
| | | | Jarosch for the patch
* added a --disable-threads ./configure option for plutoMartin Willi2008-12-022-1/+16
|
* use DBG_ANY to set all loglevelsMartin Willi2008-12-021-5/+2
|
* added time.h include for struct tmMartin Willi2008-12-021-0/+1
|
* some task queueing improvements:Martin Willi2008-12-018-63/+186
| | | | | | | | - do not pass CHILD_SAs to task constructor, might not be valid anymore during execution (late lookup) - use sub-tasks to delete CHILD/IKE_SA after rekeying, as we want to execute the delete before additional queued tasks
* re-established lost default auth sys_loggerAndreas Steffen2008-12-011-3/+15
|
* schedule rekeying when activating passive IKE_SAsMartin Willi2008-11-281-1/+2
|
* do not delete passive IKE_SAsMartin Willi2008-11-281-0/+5
|
* added a PASSIVE IKE_SA state to manage it externallyMartin Willi2008-11-282-4/+25
|
* pass SKd to derive_ike_keys() to have a more interoperable APIMartin Willi2008-11-283-38/+93
|
* fixed a double-unlock bug, showed up when using rwlocks in backend managerMartin Willi2008-11-281-22/+4
|
* use rwlocks in backend manager to allow simultaneous accessMartin Willi2008-11-271-19/+19
|
* use a rwlock in attribute manager to allow simultaneous accessMartin Willi2008-11-271-12/+12
|
* remove attribute provider in SQL plugin destructionMartin Willi2008-11-271-0/+1
|
* added an include hack to build starter without gmp.hMartin Willi2008-11-273-2/+15
|
* fixed pluto out-of-tree builds Martin Willi2008-11-271-2/+2
|
* token enumerator missed the last token if it contains only a single charMartin Willi2008-11-272-6/+46
|
* checkin of non-existing IKE_SAsMartin Willi2008-11-263-78/+71
| | | | removed unneeded checkin() return values
* removed private parser function pointers, allows compiler to inlineMartin Willi2008-11-261-200/+48
|
* removed private generator function pointers, allows compiler to inlineMartin Willi2008-11-262-276/+154
|
* inlined some short chunk functions, showed up in the profilerMartin Willi2008-11-262-56/+30
|
* memxor() tweaks, as it is heavily used in xcbcMartin Willi2008-11-261-2/+10
|
* allow to globally disable DOS protection by setting charon.dos_protection to no.Tobias Brunner2008-11-261-0/+5
|
* optimized the scheduler for performance by replacing the linked list with a ↵Tobias Brunner2008-11-251-47/+109
| | | | heap.
* replacing the pthread_mutex in scheduler_t with the wrapped implementation.Tobias Brunner2008-11-253-38/+62
| | | | added a method to condvar_t which allows to wait for an absolute timeout.
* performance optimization for the DOS protection.Tobias Brunner2008-11-255-41/+322
| | | | | | * half-open SAs per peer are tracked in a hash table * charon.dos_protection setting replaced with charon.cookie_threshold and charon.block_threshold * chunk_hash function added
* fixed crash due to missing function call parameterAndreas Steffen2008-11-251-1/+13
|
* use static IPsec policy iptables rule for alice in mobike scenarioAndreas Steffen2008-11-252-1/+4
|
* fixed set_message_id() on IKE_SAMartin Willi2008-11-242-129/+132
| | | | | added missing bus->message() hook invocation whitespace cleanups
* set message IDs on IKE_SAsMartin Willi2008-11-244-9/+47
|
* moved the IPV6_IPSEC_POLICY definition to the ipsec plugins, fixes uClibc buildMartin Willi2008-11-243-5/+10
|