aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* mmap() ipsec.secrets instead malloc(), proper error checkingMartin Willi2010-08-041-18/+30
|
* Splitted up the load_secrets() functionMartin Willi2010-08-041-263/+301
|
* Updated ipsec.secrets.5 regarding IKEv2 smartcard supportMartin Willi2010-08-041-5/+7
|
* %prompt support for smartcard PIN via "ipsec secrets"Martin Willi2010-08-041-28/+95
|
* Implemented callback PIN invocation for PKCS#11 loginMartin Willi2010-08-041-8/+47
|
* Implemented keyid discovery on all modules/slotsMartin Willi2010-08-041-7/+80
|
* Pass the PKCS11 keyid as chunk, not as stringMartin Willi2010-08-044-21/+25
|
* Reuse generic passphrase build part, not a dedicated PIN partMartin Willi2010-08-045-22/+18
|
* Implemented private key on top of a PKCS#11 tokenMartin Willi2010-08-044-0/+427
|
* Extended the PKCS#11 object enumerator by attribute retrievalMartin Willi2010-08-043-69/+111
|
* Use the PKCS#11 object enumeratorMartin Willi2010-08-041-25/+6
|
* Implemented a generic PKCS#11 object enumeratorMartin Willi2010-08-042-1/+78
|
* Unload plugins in reverse orderMartin Willi2010-08-041-3/+3
|
* Support module names in %smartcard specifier, streamlined smartcard buildingMartin Willi2010-08-045-26/+95
|
* Added enumerator for PKCS#11 tokensMartin Willi2010-08-043-15/+140
|
* Handle NOT_SUPPORT return value from WaitForSlotMartin Willi2010-08-041-1/+1
|
* Reenabled dlcloseMartin Willi2010-08-041-1/+1
|
* Implemented a credential set on top of a PKCS#11 tokenMartin Willi2010-08-045-1/+420
|
* Added NSPR PR_CallOnce to leak detective whitelistMartin Willi2010-08-041-0/+2
|
* Added buffer checking variants of syslog functions to leak detectiveMartin Willi2010-08-041-0/+2
|
* Moved gmp plugin before users of itMartin Willi2010-08-041-4/+4
|
* Added a token add/remove callback function to the managerMartin Willi2010-08-043-3/+45
|
* Enumerate tokens and their mechanisms, wait for slot eventsMartin Willi2010-08-041-9/+222
|
* Depend on libcharon until we have a thread pool to useMartin Willi2010-08-041-1/+2
|
* Add enum names for CK_MECHANISM_TYPE constantsMartin Willi2010-08-042-0/+279
|
* Make the PKCS#11 padding string trimming public, add null terminatorMartin Willi2010-08-042-10/+18
|
* Added a getter for the library aliasMartin Willi2010-08-042-0/+20
|
* Moved PKCS#11 library loading to dedicated managerMartin Willi2010-08-044-30/+135
|
* Use locking, prefer our mutex abstraction layerMartin Willi2010-08-041-1/+60
|
* Added enum names for PKCS#11 return valuesMartin Willi2010-08-042-3/+162
|
* Load PKCS#11 modules defined in strongswan.confMartin Willi2010-08-041-0/+33
|
* Implemented an abstraction layer for PKCS#11 module loadingMartin Willi2010-08-043-1/+201
|
* Imported the free pkcs11.h header form the Scute projectMartin Willi2010-08-042-1/+1358
|
* Added PKCS#11 token plugin stubMartin Willi2010-08-045-0/+121
|
* added ikev2/rw-eap-tls-only scenarioAndreas Steffen2010-08-0410-0/+109
|
* --enable eap-tls and --disable-load-warning in uml buildAndreas Steffen2010-08-042-0/+7
|
* test_cert adapted to extended signature of get_encoding().Tobias Brunner2010-08-031-2/+2
|
* Fixed compiler warnings.Tobias Brunner2010-08-032-3/+7
|
* Moved TLS stack to its own libraryMartin Willi2010-08-0328-42/+65
|
* Moved eap-tls plugin to libcharon, updated to 4.4.1 APIsMartin Willi2010-08-0328-34/+57
|
* Implemented EAP-TLS server functionalityMartin Willi2010-08-037-29/+595
|
* TLS stack keeps a copy of server/peer identitiesMartin Willi2010-08-032-18/+17
|
* Limit the number of EAP-TLS packets allowedMartin Willi2010-08-031-0/+13
|
* Use stricter state handling while processing TLS messagesMartin Willi2010-08-031-25/+44
|
* Cleaned up the public TLS interfaceMartin Willi2010-08-034-68/+76
|
* Refactored common used operations into TLS crypto helperMartin Willi2010-08-033-176/+212
|
* Properly send empty EAP-TLS messagesMartin Willi2010-08-031-22/+25
|
* Derive MSK for EAP-TLS authenticationMartin Willi2010-08-035-0/+44
|
* Verify Server Finished messageMartin Willi2010-08-031-1/+59
|
* Implemented input record decryption and verificationMartin Willi2010-08-037-16/+122
|