aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* --options reads command line options from fileAndreas Steffen2009-09-081-81/+81
|
* pki tool supports subjectAltNames in certificatesMartin Willi2009-09-081-8/+53
|
* x509 certificates support encoding of email, DNS and IP subjectAltNamesMartin Willi2009-09-084-13/+58
|
* non self-signed x509 certificates are encoded with authorityKeyIdentifierMartin Willi2009-09-081-5/+18
|
* x509 CA certificates are encoded with a subjectKeyIdentifierMartin Willi2009-09-081-3/+14
|
* pki tool --issue/--verify operations require a CA with CA basicConstraintMartin Willi2009-09-081-3/+11
|
* pki tool can set CA basicConstraint on --self/--issued certificatesMartin Willi2009-09-081-4/+17
|
* x509 plugin supports encoding of CA basicConstraint extensionMartin Willi2009-09-081-0/+22
|
* pki tool can issue certificatesMartin Willi2009-09-071-26/+257
|
* use sysconfdir, no need for an additional confdir variableMartin Willi2009-09-078-8/+7
|
* only add generated m4 files to include pathMartin Willi2009-09-071-1/+1
|
* Use macros to define --with optionsMartin Willi2009-09-0716-127/+69
|
* Use macros to define --enable/--disable optionsMartin Willi2009-09-072-644/+103
|
* Added a .gitignore for generated m4 scriptsMartin Willi2009-09-071-0/+1
|
* use m4/ autoconf subdirectoryMartin Willi2009-09-072-0/+3
|
* Removed trailing whitespaces in configure.in/Makefile.amMartin Willi2009-09-0710-28/+28
|
* Cleaned up some code of the mediation extension.Tobias Brunner2009-09-0410-260/+342
|
* Moved set_state after the DBG0 statement, so that the message gets logged ↵Tobias Brunner2009-09-041-2/+2
| | | | also for mediation connections without CHILD_SA.
* remove spaces before tabs at the beginning of lines (^( )+\t)Martin Willi2009-09-0454-175/+175
|
* remove spaces within tabs (\t( )+\t)Martin Willi2009-09-0445-103/+103
|
* replaces four spaces by tabs, where appropriateMartin Willi2009-09-0481-449/+447
|
* removed trailing spaces ([[:space:]]+$)Martin Willi2009-09-04703-10633/+10633
|
* fixed open failure debug message in load_secretsMarius Tomaschewski2009-09-041-1/+1
|
* fixed memleak in rekey collissionsMartin Willi2009-09-031-0/+3
|
* Convert empty CREATE_CHILD_SA exchange to an INFORMATIONALMartin Willi2009-09-031-1/+3
|
* Use get_notify() to look up single notifiesMartin Willi2009-09-034-104/+35
|
* accept octet strings in is_asn1() checkMartin Willi2009-09-031-1/+1
|
* Use recursive source address lookup if we get a gateway onlyMartin Willi2009-09-031-45/+40
|
* Fixed load_secrets to acquire/release lock in level 0 onlyMarius Tomaschewski2009-09-031-2/+6
| | | | | The write_lock call fails with EDEADLK and unlocks in the next recursion level.
* Complain about rw(un)lock errorsMartin Willi2009-09-031-7/+31
|
* Simplified the search for ME_CONNECTID notifies.Tobias Brunner2009-09-021-42/+5
|
* Fixed some typos; whitespace cleanup.Tobias Brunner2009-09-0218-267/+266
|
* Missing commas added.Tobias Brunner2009-09-022-2/+2
|
* handle plugin loading failuresMartin Willi2009-09-018-21/+44
|
* plugins marked with a '!' are handled as critical: cancel if loading failsMartin Willi2009-09-012-14/+37
|
* use subjectPublicKeyInfo hash for CA certificate lookupMartin Willi2009-09-0125-25/+25
|
* Description of new lifetime limits added to manpage.Tobias Brunner2009-09-011-39/+72
|
* Added lifetime/margintime keywords as alias for keylife/rekeymargin.Tobias Brunner2009-09-011-0/+2
|
* Refactored the lifetime_cfg_t struct to be simpler and more expressive. ↵Tobias Brunner2009-09-0112-124/+104
| | | | Initialization is now static.
* Handling of new lifetime limits added to stroke.Tobias Brunner2009-09-014-3/+27
|
* Added keywords for the new lifetime limits to starter.Tobias Brunner2009-09-014-1/+17
|
* Added parser for unsigned long long ints to starter.Tobias Brunner2009-09-011-0/+26
|
* If no inbound CHILD_SA is found, try to find an outbound SA.Tobias Brunner2009-09-012-4/+18
| | | | | Due to the new lifetime limits in- and outbound SAs may expire individually.
* Set the packet and byte limits in the netlink and pfkey kernel interfaces.Tobias Brunner2009-09-012-5/+16
|
* Terminology and return value of get_lifetime of child_sa_t corrected.Tobias Brunner2009-09-012-5/+5
|
* child_sa_t adapted to the new lifetime configuration.Tobias Brunner2009-09-011-13/+21
|
* Adapted the kernel interfaces to the new lifetime configuration.Tobias Brunner2009-09-017-46/+42
|
* Adapted the config backends to the new lifetime configuration.Tobias Brunner2009-09-016-19/+39
|
* child_cfg_t now takes a lifetime_cfg_t to configure the lifetime limits. ↵Tobias Brunner2009-09-012-51/+47
| | | | Also adjusted the jitter calculation, so it works for values > RAND_MAX.
* lifetime_cfg_t added to configure lifetime limits of a CHILD_SA.Tobias Brunner2009-09-011-1/+50
|