aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
* Flush certificate cache on CA deleteMartin Willi2010-06-071-1/+2
* Log non-empty task queues in statusallMartin Willi2010-06-071-0/+31
* Wrap task enumerator in ike_saMartin Willi2010-06-072-1/+16
* Migrated ike_sa_t to INIT/METHOD macrosMartin Willi2010-06-071-407/+239
* Added support for task enumeration in task_manager_tMartin Willi2010-06-072-0/+38
* Migrated task_manager_t to INIT/METHOD macrosMartin Willi2010-06-071-65/+45
* use --addattrAndreas Steffen2010-06-051-3/+3
* use --addattrAndreas Steffen2010-06-051-3/+3
* added ikev2/nat-virtual-ip scenarioAndreas Steffen2010-06-0511-0/+333
* remove stray carolReq.pemAndreas Steffen2010-06-051-17/+0
* share pool in ikev1/mode-config-multiple scenarioAndreas Steffen2010-06-051-2/+4
* use --addattrAndreas Steffen2010-06-051-3/+4
* remove stray scenario filesAndreas Steffen2010-06-0511-333/+0
* Accept ARP requests with an ethernet trailer, but trim itMartin Willi2010-06-031-2/+2
* Added a EAP-SIM/AKA backend reading triplets/quintuplets from a SQL databaseMartin Willi2010-06-0212-0/+685
* fixed configuration attribute type determinationAndreas Steffen2010-06-021-22/+15
* Disable close action for a redundant CHILD_SA resulting from a rekey collisionMartin Willi2010-06-021-0/+5
* Use wrapped getters for close/dpd actionMartin Willi2010-06-022-8/+10
* Wrap getters for dpd/close action into CHILD_SA, allows us to override themMartin Willi2010-06-022-0/+76
* ipsec pool --statusattr [--hexout] outputs attribute values in correct format...Andreas Steffen2010-06-014-41/+117
* added unity_def_domain keyword tip ipsec poolAndreas Steffen2010-05-311-0/+1
* Added generated manpages to .gitignoreMartin Willi2010-05-313-0/+3
* Changed default lifetime of certificates to 3 yearsMartin Willi2010-05-312-4/+4
* Support extendedKeyUsage flags in self-signed certificatesMartin Willi2010-05-311-0/+16
* IPSEC_CONFDIR in ipsec script fixed.Tobias Brunner2010-05-301-1/+1
* Adding the version number to the most relevant manual pages.Tobias Brunner2010-05-306-6/+23
* Updated and corrected the ipsec.secrets(5) manual page.Tobias Brunner2010-05-301-107/+107
* Updated and corrected the ipsec.conf(5) manual page.Tobias Brunner2010-05-301-126/+163
* Updated and corrected the ipsec(8) manual page.Tobias Brunner2010-05-301-206/+167
* added --leases command line option to synopsisAndreas Steffen2010-05-291-1/+1
* added --showattr command line option to synopsysAndreas Steffen2010-05-291-1/+1
* added X.509 support by openssl plugin to NEWSAndreas Steffen2010-05-291-0/+2
* remove x509 plugin from openssl-ikev1 scenariosAndreas Steffen2010-05-2815-21/+21
* Do not install trap policy if remote host is %any.Tobias Brunner2010-05-281-1/+1
* be lenient towards wrong attribute encodingsAndreas Steffen2010-05-281-6/+0
* Send empty SIM/AKA-NOTIFICATION response for non-success codes, tooMartin Willi2010-05-272-2/+0
* Added support for reading raw PUT/POST data from HTTP requestMartin Willi2010-05-272-0/+18
* Unwrap subjectKeyIdentifier from OCTET_STRINGMartin Willi2010-05-261-4/+12
* remove x509 plugin from remaining openssl-ikev2 scenariosAndreas Steffen2010-05-2517-23/+23
* openssl-ikev2/rw-cert scenario doesn't need x509 plugin any moreAndreas Steffen2010-05-253-5/+5
* several subnets can be concatenatedAndreas Steffen2010-05-222-27/+49
* added --showattr command to usage()Andreas Steffen2010-05-221-0/+5
* Fixed compiler warning in invocation of crl_is_newer()Martin Willi2010-05-211-1/+1
* Use CAs subjectKeyIdentifier as CRLs authorityKeyIdentifierMartin Willi2010-05-211-1/+1
* Added a --signcrl command to the pki utilityMartin Willi2010-05-213-1/+377
* Added support for CRL generation to x509 pluginMartin Willi2010-05-215-3/+202
* Removed is_newer() from certificate_t, obsoleting all implementationsMartin Willi2010-05-2110-182/+2
* Added generic implementations for crl_is_newer/certificate_is_newerMartin Willi2010-05-218-11/+78
* Migrated x509_crl_t to INIT/METHOD macrosMartin Willi2010-05-211-95/+70
* Implemented X.509 CRL reading using OpenSSLMartin Willi2010-05-214-1/+606