index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
Commit message (
Collapse
)
Author
Age
Files
Lines
...
*
Do not execute the callback job if it has been cancelled since registration
Martin Willi
2009-12-03
1
-2
/
+8
|
*
Cleanup library if daemon initialization fails
Martin Willi
2009-12-03
1
-0
/
+2
|
*
To build strongSwan from git sources, gettext is required
Martin Willi
2009-12-02
1
-1
/
+4
|
*
Do not install invalid 0.0.0.0 DNS servers
Martin Willi
2009-12-01
1
-9
/
+14
|
*
Prefer EAP-Identity for provider attribute/address lookup
Martin Willi
2009-12-01
1
-4
/
+37
|
*
Save EAP-Identity on auth config
Martin Willi
2009-12-01
1
-3
/
+26
|
*
Store completed authentication rounds permanently on IKE_SA, with flush option
Martin Willi
2009-12-01
6
-50
/
+110
|
*
Removed obsolete and unused [gs]et_eap_identity() methods
Martin Willi
2009-11-30
2
-42
/
+0
|
*
Do not propose transport mode as initiator if connection is NATed
Martin Willi
2009-11-30
1
-0
/
+6
|
*
Verify EAP-SIM/AKA AT_MAC before processing any attributes
Martin Willi
2009-11-30
4
-36
/
+24
|
*
SIM/AKA/Request/Reauthentication AT_MAC does not include NONCE_S, only the ↵
Martin Willi
2009-11-30
4
-6
/
+4
|
|
|
|
response
*
Invoke attribute/key hooks from libsimaka
Martin Willi
2009-11-30
2
-5
/
+13
|
*
Extended SIM manager by hooks, currently featuring attribute and key hooks
Martin Willi
2009-11-30
2
-1
/
+134
|
*
Added a get_sa() method to the bus, allowing a thread to lookup its IKE_SA
Martin Willi
2009-11-30
2
-0
/
+19
|
*
Handle NOT_SUPPORTED or other errors properly in get_quintuplet
Martin Willi
2009-11-30
1
-4
/
+10
|
*
added RFC-conforming ikev2/sha2 scenarios
Andreas Steffen
2009-11-26
27
-0
/
+315
|
*
adapted ikev2/alg-aes-xcbc scenario
Andreas Steffen
2009-11-26
5
-12
/
+14
|
*
Use transport mode ESP SA if IPcomp is used, IPcomp already applies outer IP ↵
Martin Willi
2009-11-26
2
-4
/
+16
|
|
|
|
header
*
Added NEWS about SHA2 changes
Martin Willi
2009-11-26
1
-0
/
+5
|
*
Use full algorithm name for SHA384/512 HMACs
Martin Willi
2009-11-26
1
-2
/
+2
|
*
Support the Linux specific SHA256 96 bit truncation HMAC via "sha256_96" keyword
Martin Willi
2009-11-26
5
-5
/
+11
|
*
Install SHA256_128 auth algorithm with specified 128 bit truncation
Martin Willi
2009-11-26
1
-1
/
+25
|
*
Updated XFRM linux header, includes specified truncations for auth algos
Martin Willi
2009-11-26
1
-1
/
+9
|
*
Added support for IPv6 source route installation
Martin Willi
2009-11-26
2
-17
/
+44
|
*
Check existing path in mobike probing only if we still have a route
Martin Willi
2009-11-26
2
-8
/
+6
|
*
put identities in single quotes
Andreas Steffen
2009-11-25
1
-2
/
+2
|
*
added more debugging in configuration attribute handling
Andreas Steffen
2009-11-24
1
-0
/
+4
|
*
changed error messages in the case of faulty esp and ike strings
Andreas Steffen
2009-11-24
1
-8
/
+6
|
*
do not send all available kernel algorithms if esp string is faulty
Andreas Steffen
2009-11-24
1
-28
/
+0
|
*
check if alg_info_esp exists
Elmar Vonlanthen
2009-11-24
1
-1
/
+1
|
*
added some parentheses
Andreas Steffen
2009-11-24
1
-0
/
+16
|
*
allow ECP DH groups in pfsgroup definition
Andreas Steffen
2009-11-24
1
-0
/
+5
|
*
renewed OCSP Signing certificate
Andreas Steffen
2009-11-24
7
-45
/
+71
|
*
issue error message for expired certificates in OCSP trust chain checking
Andreas Steffen
2009-11-24
1
-1
/
+5
|
*
updated IKEv2 notification messages assigned by IANA
Andreas Steffen
2009-11-24
2
-12
/
+48
|
*
updated NEWS for 4.3.6dr2
Andreas Steffen
2009-11-24
1
-0
/
+4
|
*
Do not recreate existing create_child subtask when retrying with different ↵
Martin Willi
2009-11-23
1
-2
/
+5
|
|
|
|
DH group
*
Avoid potentially unaligned half-word read
Martin Willi
2009-11-23
1
-5
/
+8
|
*
Correctly set host number to zero when computing traffic selector range
Eric Mertens
2009-11-23
1
-0
/
+1
|
*
Use abort() instead of raising SIGKILL, gives us proper core dumps if enabled
Martin Willi
2009-11-20
1
-1
/
+1
|
*
Use status_t return value for get_quintuplet() dummy implementations
Martin Willi
2009-11-20
3
-3
/
+3
|
*
Move comment out of register_printf_function test
Martin Willi
2009-11-19
1
-2
/
+2
|
*
Message stringification supports more detailed EAP payload information
Martin Willi
2009-11-18
3
-0
/
+65
|
*
Correctly enumerate attributes to request as initiator with the actually ↵
Martin Willi
2009-11-17
1
-12
/
+61
|
|
|
|
requesting handler
*
Fixed memleak in attribute handling
Martin Willi
2009-11-17
1
-0
/
+1
|
*
attr plugin supports any custom attribute type having a v4/v6 IP under the ↵
Martin Willi
2009-11-17
1
-4
/
+82
|
|
|
|
charon.plugins.attr namespace
*
Support enumeration of key/value pairs in a section of strongswan.conf
Martin Willi
2009-11-17
2
-0
/
+45
|
*
Whitelist register_printf_specifier in leak detective
Martin Willi
2009-11-17
1
-0
/
+1
|
*
Give plugins more control of which configuration attributes to request, and ↵
Martin Willi
2009-11-17
16
-302
/
+503
|
|
|
|
pass received attributes back to the requesting handler
*
Encrypt payloads with missing rule, fix insertion of non-encrypted payloads
Martin Willi
2009-11-12
1
-30
/
+23
|
[prev]
[next]