aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* Silently install route again, even if it did not change.Tobias Brunner2011-11-042-2/+12
| | | | | Address/interface changes can cause the route to disappear. Afterwards the route might look the same but that does not mean it is still installed.
* Compile warning fixed in kernel interfaces.Tobias Brunner2011-11-042-2/+2
|
* Common spelling errors fixed.Tobias Brunner2011-11-034-4/+4
|
* NEWS about pkcs11 plugin added.Tobias Brunner2011-11-031-0/+7
|
* pkcs11: Documented use_pubkey option in strongswan.conf(5).Tobias Brunner2011-11-031-2/+7
|
* pkcs11: Make public key operations on tokens optional.Tobias Brunner2011-11-031-20/+21
|
* pkcs11: Make sure a key can be used for a given signature scheme.Tobias Brunner2011-11-023-16/+31
|
* pkcs11: Register ECDSA feature.Tobias Brunner2011-11-021-1/+10
|
* pkcs11: We have to create our own hashes for some signature schemes.Tobias Brunner2011-11-024-12/+81
|
* pkcs11: Lookup the public key of a private key by CKA_ID.Tobias Brunner2011-11-022-0/+125
| | | | | | Currently this only works if a public key object with the same ID is available, if there isn't one we could search for a certificate with the same ID and extract the key from there.
* pkcs11: Search for private keys in a more generic way.Tobias Brunner2011-11-021-20/+19
| | | | | | Also, don't extract the public key directly from the private key. Some tokens actually do not return the public exponent (it's not required). We have to find a different way to get the public key.
* pkcs11: Added support to encode ECDSA public keys.Tobias Brunner2011-11-021-0/+89
|
* pkcs11: Parse ECDSA public keys and find/create them on tokens.Tobias Brunner2011-11-021-2/+177
|
* pkcs11: Added generic functions to find/create public keys on tokens.Tobias Brunner2011-11-021-40/+75
|
* pkcs11: Store public key length in bits.Tobias Brunner2011-11-021-3/+3
|
* pkcs11: Fix encoding of RSA public keys.Tobias Brunner2011-11-021-0/+4
|
* pkcs11: Use create_object_attr_enumerator to encode RSA public key.Tobias Brunner2011-11-021-17/+7
|
* pkcs11: Instead of a mutex use a new session to do multipart operations.Tobias Brunner2011-11-022-40/+66
|
* pkcs11: Function added to retrieve multiple attributes from a single object.Tobias Brunner2011-11-022-6/+62
|
* pkcs11: Memory leak fixed in DH/ECDH implementation.Tobias Brunner2011-11-021-0/+2
|
* pkcs11: Invalid free fixed in DH/ECDH implementation.Tobias Brunner2011-11-021-1/+4
|
* pkcs11: Changed how pkcs11-manager is initialized.Tobias Brunner2011-11-021-42/+32
| | | | | The manager is now created directly, but events and certificate loading is deferred.
* pkcs11: Add attributes to specify what we use the DH/ECDH keys for.Tobias Brunner2011-11-021-2/+10
|
* version bump to 4.6.0Andreas Steffen2011-11-021-1/+1
|
* enable integrity test in tnc/tnccs-dynamic scenarioAndreas Steffen2011-11-023-0/+12
|
* charon must load libtls if availableAndreas Steffen2011-11-021-0/+4
|
* fixed integrity tests of plugins using libtls or libtnccsAndreas Steffen2011-11-0214-18/+43
|
* removed xcbc plugin from sql scenariosAndreas Steffen2011-11-0148-48/+48
|
* tnc-tnccs plugin is now included in integrity testsAndreas Steffen2011-10-311-3/+3
|
* pkcs11: Allow to build pkcs11 plugin on Android.Tobias Brunner2011-10-311-0/+2
|
* pkcs11: Documented new options in strongswan.conf(5).Tobias Brunner2011-10-311-0/+9
|
* pkcs11: Register the pkcs11 plugin before any other crypto plugins.Tobias Brunner2011-10-311-1/+1
| | | | | This is what most users probably expect when they enable the pkcs11 plugin. All advanced features (like DH/RNG) are disabled by default.
* pkcs11: Use callback registration for pkcs11-manager.Tobias Brunner2011-10-311-25/+73
| | | | | | Otherwise a plugin providing X509 decoding capabilities might be unloaded before the manager which will result in a segmentation fault when certificates in the manager's credential sets are to be destroyed.
* pkcs11: Merged the ECDH into the DH implementation.Tobias Brunner2011-10-316-405/+210
|
* pkcs11: Use get_ck_attribute for ECDH.Tobias Brunner2011-10-311-63/+13
|
* pkcs11: Use get_ck_attribute for DH.Tobias Brunner2011-10-311-28/+6
|
* pkcs11: Method added to library to extract a single attribute from an object.Tobias Brunner2011-10-312-1/+50
|
* pkcs11: Added names for CKA_* constants.Tobias Brunner2011-10-312-1/+123
|
* pkcs11: Added support for ECDH.Tobias Brunner2011-10-314-1/+422
|
* pkcs11: Added definitions needed for ECDH to pkcs11.h.Tobias Brunner2011-10-311-0/+24
|
* pkcs11: Specify object class and key type when deriving DH secrets.Tobias Brunner2011-10-311-0/+4
| | | | pkcs11_softtoken on OpenSolaris requires this (probably others too).
* pkcs11: Add features support.Tobias Brunner2011-10-313-84/+90
|
* pkcs11: Added support for DH.Tobias Brunner2011-10-314-0/+377
|
* pkcs11: Error message fixed.Tobias Brunner2011-10-311-1/+1
|
* pkcs11: Added support to generate random numbers on a token.Tobias Brunner2011-10-314-0/+201
|
* pkcs11: Properly destroy mutex in pkcs11_hasher if no token found.Tobias Brunner2011-10-311-0/+1
|
* Added features support to agent pluginAndreas Steffen2011-10-301-4/+11
|
* Added features support to dnskey pluginAndreas Steffen2011-10-301-7/+14
|
* Added features support to pgp pluginAndreas Steffen2011-10-301-19/+23
|
* Added features support to pkcs1 pluginAndreas Steffen2011-10-301-13/+16
|