aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* fixed cert_validator_t:validate interfaceAndreas Steffen2011-01-071-5/+4
|
* implemented TNCCS 1.1 without libtncAndreas Steffen2011-01-0720-185/+2189
|
* compute memory requirement for PEM-encoding correctlyAndreas Steffen2011-01-071-1/+1
|
* Added delta CRL NEWSMartin Willi2011-01-051-0/+3
|
* Added constraints plugin NEWSMartin Willi2011-01-051-0/+6
|
* Added conftest NEWSMartin Willi2011-01-051-0/+6
|
* Added NEWS about INITIAL_CONTACT supportMartin Willi2011-01-051-0/+4
|
* Destroy existing IKE_SAs with same identities when receiving INITIAL_CONTACTMartin Willi2011-01-053-4/+33
|
* Send INITIAL_CONTACT for the first IKE_SA if it has a unique policyMartin Willi2011-01-053-16/+66
|
* Migrated ike_sa_manager_t to INIT/METHOD macros, some cleanupsMartin Willi2011-01-051-189/+180
|
* Added option to use a different key when rebuilding AUTHMartin Willi2011-01-051-2/+16
|
* Do not print empty DN identities as invalidMartin Willi2011-01-051-2/+8
|
* Added support for empty subjects DNs to pki --issueMartin Willi2011-01-051-8/+7
|
* Added support for OCSP responder URIs to conftestMartin Willi2011-01-051-2/+11
|
* Added support for delta CRL checking to revocation pluginMartin Willi2011-01-051-12/+109
|
* Use incremented serial of base CRL when signing delta CRLMartin Willi2011-01-051-0/+2
|
* Show base CRL of delta CRLs in listcrlsMartin Willi2011-01-051-0/+4
|
* Verify trustchain for each candidate certificate only onceMartin Willi2011-01-051-0/+19
|
* Provide CRLs received in CERT payloads to trustchain verificationMartin Willi2011-01-052-6/+22
|
* Added an AUTH_HELPER for revocation certificatesMartin Willi2011-01-053-1/+12
|
* Added support for CDPs to conftestMartin Willi2011-01-051-0/+44
|
* Added CDP support to mem_credMartin Willi2011-01-052-1/+106
|
* Check for issuer only if we actually got a CRLMartin Willi2011-01-051-7/+7
|
* Updated conftest READMEMartin Willi2011-01-051-31/+122
|
* Added support for custom file loggers, loglevel settingsMartin Willi2011-01-051-0/+52
|
* Check inhibitAnyPolicy in constraints pluginMartin Willi2011-01-051-8/+53
|
* Slightly renamed different policyConstraints to distinguish them betterMartin Willi2011-01-055-44/+44
|
* Added inhibitAnyPolicy constraint support to pki toolMartin Willi2011-01-053-5/+21
|
* Added support for inhibitAnyPolicy constraint to x509 pluginMartin Willi2011-01-054-33/+62
|
* Use a generic getter for all numerical X.509 constraintsMartin Willi2011-01-058-52/+56
|
* Check inhibitPolicyMapping in constraints pluginMartin Willi2011-01-051-3/+53
|
* Check requireExplicitPolicy in constraints pluginMartin Willi2011-01-051-19/+109
|
* Include subject cert to temporary auth info before completing trustchainMartin Willi2011-01-051-4/+1
|
* Fail silently when trying to convert IPv6 address to v4 family hostMartin Willi2011-01-051-0/+4
|
* Pass an additional anchor flag to validate() hook if we reach the root CAMartin Willi2011-01-054-8/+12
|
* Always pass auth info to validate(), use pathlen to check for user certificateMartin Willi2011-01-053-7/+9
|
* Merge test config into suite config, instead of having two distinct configsMartin Willi2011-01-052-24/+6
|
* Added support for delta CRLs to pki toolMartin Willi2011-01-053-18/+91
|
* Added support for delta CRLs to x509 pluginMartin Willi2011-01-055-7/+130
|
* Moved CRL distribution point building to an exportable functionMartin Willi2011-01-051-29/+43
|
* Simplified format of x509 CRL URI parsing/enumeratorMartin Willi2011-01-059-231/+179
|
* Fail on critical extensions in openssl CRLsMartin Willi2011-01-051-1/+6
|
* Respect enforce_critical setting in x509 plugin CRLsMartin Willi2011-01-051-0/+8
|
* Parse CRL extensions in a switch statementMartin Willi2011-01-051-18/+24
|
* Respect policy mappings in certificatePolicy validationMartin Willi2011-01-051-24/+64
|
* Added a cert_policy option to conftest configurationsMartin Willi2011-01-051-1/+6
|
* Validate simple certificatePolicy inheritanceMartin Willi2011-01-051-0/+54
|
* Added a certificate policy OID auth_cfg constraintMartin Willi2011-01-052-0/+31
|
* Added policyConstraints support to pki toolMartin Willi2011-01-054-46/+87
|
* Added support for policyConstraints to x509 pluginMartin Willi2011-01-056-8/+147
|