Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Use wildcards to gather plugin source files. | Tobias Brunner | 2010-03-19 | 3 | -178/+67 | |
| | ||||||
* | Adding support for the build of libcharon (and charon) on Android. | Tobias Brunner | 2010-03-19 | 3 | -6/+30 | |
| | ||||||
* | Do not link libcharon to libstrongswan. | Tobias Brunner | 2010-03-19 | 1 | -1/+1 | |
| | | | | | | Linking to libstrongswan breaks the integrity-tests because libtool relinks libcharon to libstrongswan on install, thus changing the checksum. | |||||
* | Explicitly link charon to libstrongswan. | Tobias Brunner | 2010-03-19 | 1 | -1/+1 | |
| | | | | Also fixed the reference to the pthread library. | |||||
* | Don't indirectly link dependent libraries. | Gerd von Egidy | 2010-03-19 | 3 | -3/+3 | |
| | | | | | | | | | | | | | | | The default behaviour for ld allows users to 'indirectly' link to required objects/libraries through intermediate objects/libraries. While this is convenient, it can also be dangerous because it makes your program's dependencies tied to the dependencies of other objects. Beginning with Fedora 13 this will be changed and you need to explicitly link all dependent libraries. More details can be found here: http://fedoraproject.org/wiki/UnderstandingDSOLinkChange This patch fixes all such cases in strongSwan. | |||||
* | Make integrity tests compatible with libcharon. | Tobias Brunner | 2010-03-19 | 2 | -1/+7 | |
| | | | | | This does currently not work because libtool relinks libcharon on install, thus changing the checksum. | |||||
* | Replacing the original charon with a small wrapper around libcharon. | Tobias Brunner | 2010-03-19 | 2 | -0/+427 | |
| | ||||||
* | Convert charon into libcharon. | Tobias Brunner | 2010-03-19 | 40 | -508/+182 | |
| | ||||||
* | Moving charon to libcharon. | Tobias Brunner | 2010-03-19 | 480 | -0/+0 | |
| | ||||||
* | Removed strayed code fragment | Martin Willi | 2010-03-19 | 1 | -20/+4 | |
| | ||||||
* | ipsec pool --batch command | Heiko Hund | 2010-03-19 | 1 | -60/+200 | |
| | | | | | | | | Introduce the --batch command which reads several ipsec pool commands and their arguments from a file or STDIN. Useful if you need to run serveral commands atomically from a configuration daemon or likewise. Signed-off-by: Heiko Hund <hhund@astaro.com> | |||||
* | ipsec pool error return status | Heiko Hund | 2010-03-19 | 1 | -49/+51 | |
| | | | | | | | Fix the error return status of the ipsec pool command. Also make --del for attributes succeed if no --server option was given. Signed-off-by: Heiko Hund <hhund@astaro.com> | |||||
* | ipsec pool --replace command | Heiko Hund | 2010-03-19 | 1 | -23/+61 | |
| | | | | | | | | | Introduce the pool --replace command as an alternative to --add. Also change the current behavior of allowing duplicate pool names so that, --add with an existing name fails and --replace removes the existing pool before adding the new one. Signed-off-by: Heiko Hund <hhund@astaro.com> | |||||
* | --addresses option for ipsec pool --add command | Heiko Hund | 2010-03-19 | 1 | -5/+187 | |
| | | | | | | | | | Introduce the --addresses option for --add that can be used to add a pool containing non-contiguous addresses. Additionally it allows to preclaim certain addresses for certain roadwarrior IDs. See the second chunk of the patch for a more detailed description. Signed-off-by: Heiko Hund <hhund@astaro.com> | |||||
* | Introduced ipsec.conf NTLM keyword for NT hashes | Martin Willi | 2010-03-17 | 1 | -0/+1 | |
| | ||||||
* | EAP-MSCHAPv2 can use stored NT hashes in addition to plaintext passwords | Martin Willi | 2010-03-17 | 2 | -40/+59 | |
| | ||||||
* | lookup exclusion for several arbitrary routing tables | Thomas Egerer | 2010-03-17 | 1 | -0/+70 | |
| | ||||||
* | Fixing a compiler warning when building with -Wextra. | Tobias Brunner | 2010-03-16 | 1 | -1/+1 | |
| | ||||||
* | setting the two most significant bits assures an RSA modulus of maximum bit size | Andreas Steffen | 2010-03-15 | 1 | -2/+2 | |
| | ||||||
* | we don't accept a serial number with leading zeroes | Andreas Steffen | 2010-03-14 | 2 | -0/+10 | |
| | ||||||
* | Reordered the name and sname construction. | Tobias Brunner | 2010-03-12 | 1 | -4/+4 | |
| | ||||||
* | Fixed a bug in pluto's x509 handling. | Tobias Brunner | 2010-03-12 | 1 | -2/+2 | |
| | | | | | This bug would have lead to a segmentation fault, if no public key could have been extracted from a certificate. | |||||
* | deleted old strongSwan VIDs | Andreas Steffen | 2010-03-12 | 2 | -86/+15 | |
| | ||||||
* | enable build of socket-default plugin | Andreas Steffen | 2010-03-11 | 2 | -0/+6 | |
| | ||||||
* | mixed IKEv1/IKEv2 scenarios require socket-raw | Andreas Steffen | 2010-03-11 | 2 | -2/+2 | |
| | ||||||
* | Added a very minimalistic SMTP client to send mails via a local Exim | Martin Willi | 2010-03-11 | 3 | -1/+241 | |
| | ||||||
* | Do not disable the default-socket if it was enabled explicitly | Martin Willi | 2010-03-11 | 1 | -2/+3 | |
| | ||||||
* | Set a xy_given variable for a --enable/disable-xy option | Martin Willi | 2010-03-11 | 1 | -4/+8 | |
| | | | | | This additional variable allows a check if an option was explicitly given or implicitly set using the default. | |||||
* | Add a getter for the HTTP referer | Martin Willi | 2010-03-10 | 2 | -0/+16 | |
| | ||||||
* | fix 64bit issue with time_t from database | Andreas Steffen | 2010-03-10 | 1 | -2/+8 | |
| | ||||||
* | Adding socket-default to the plugin list in all test cases. | Tobias Brunner | 2010-03-09 | 343 | -343/+343 | |
| | ||||||
* | Provide the Diffie Hellman parameters from a central location, so that we do ↵ | Tobias Brunner | 2010-03-09 | 5 | -733/+380 | |
| | | | | | | | | not have to replicate them in every plugin that implements the DH interface. The main reason for this change is that Android's libcrypto does not include the get_rfcX_prime_Y functions by default. Therefore we would have had to replicate the primes a third time. | |||||
* | Adding the OpenSSL plugin to the Android build. | Tobias Brunner | 2010-03-08 | 3 | -2/+20 | |
| | ||||||
* | Fixing integrity tests after renaming the plugin constructors. | Tobias Brunner | 2010-03-08 | 1 | -2/+12 | |
| | ||||||
* | Adding a helper function that translates single characters in a string. | Tobias Brunner | 2010-03-08 | 3 | -19/+32 | |
| | ||||||
* | Replaced the deprecated RSA_generate_key with RSA_generate_key_ex. | Tobias Brunner | 2010-03-08 | 1 | -2/+25 | |
| | ||||||
* | Implemented the PRF_KEYED_SHA1 algorithm in the openssl plugin | Martin Willi | 2010-03-08 | 6 | -12/+208 | |
| | ||||||
* | Removed accidentally commited files from tree, ignore tarballs and patches | Martin Willi | 2010-03-08 | 3 | -542/+4 | |
| | ||||||
* | removed unwanted commits | Andreas Steffen | 2010-03-07 | 1 | -1/+1 | |
| | ||||||
* | critical keyUsage extension must be parsed | Andreas Steffen | 2010-03-07 | 4 | -1/+546 | |
| | ||||||
* | recognize strongSwan VID | Andreas Steffen | 2010-03-07 | 1 | -47/+53 | |
| | ||||||
* | set Certificate Sign and CRL Sign flags in keyUsage extension if CA is true | Andreas Steffen | 2010-03-07 | 2 | -5/+14 | |
| | ||||||
* | Make Android.mk depend on configure.in, so it gets rebuilt if the version ↵ | Tobias Brunner | 2010-03-05 | 1 | -1/+1 | |
| | | | | number got changed. | |||||
* | parser.l includes y.tab.h, so it must be built first | Tobias Brunner | 2010-03-05 | 1 | -1/+1 | |
| | ||||||
* | Ignore the generated y.output. | Tobias Brunner | 2010-03-05 | 2 | -351/+1 | |
| | ||||||
* | Do not hardcode the path to the strongSwan sources. | Tobias Brunner | 2010-03-05 | 2 | -4/+5 | |
| | ||||||
* | Ignore the generated Android.mk | Tobias Brunner | 2010-03-05 | 1 | -0/+1 | |
| | ||||||
* | Generate the main Android.mk, so the version number is not hardcoded. | Tobias Brunner | 2010-03-05 | 2 | -2/+9 | |
| | | | | | We include the generated file in the distribution, so users won't have run configure if they are building for Android. | |||||
* | Build libstrongswan before building any plugins during the non-monolithic ↵ | Tobias Brunner | 2010-03-05 | 1 | -0/+4 | |
| | | | | build (as it was before). | |||||
* | scepclient still depends on libfreeswan | Martin Willi | 2010-03-05 | 1 | -1/+1 | |
| |