aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
| * | Reset the encrypted flag when handling IKE messages that contain a fragmentTobias Brunner2012-12-241-0/+6
| * | Payload added to handle IKE fragmentsTobias Brunner2012-12-246-11/+314
* | | Don't use bio_writer_t.skip() to write length field when appending more dataMartin Willi2013-01-112-6/+9
* | | Add rdrand NEWSMartin Willi2013-01-111-0/+3
* | | Use raw opcodes for rdrand to build with older binutilsMartin Willi2013-01-111-6/+6
* | | Provide RNG_TRUE quality in rdrand by mixing reseeded outputs using AESMartin Willi2013-01-112-8/+108
* | | Provide RNG_STRONG quality in rdrand by forcing PRNG reseed after every sampleMartin Willi2013-01-112-1/+69
* | | Provide RNG_WEAK quality random generator in rdrandMartin Willi2013-01-114-2/+342
* | | Add a rdrand plugin stub detecting availability of RDRAND instructionsMartin Willi2013-01-115-0/+187
* | | Add NEWS about improved Windows IKEv1 compatibilityMartin Willi2013-01-111-0/+4
* | | Streamline debug output when receiving intermediate CA certificates in IKEv1Martin Willi2013-01-111-1/+1
* | | Refactored IKEv2 cert/certreq payload processing to multiple functionsMartin Willi2013-01-111-112/+141
* | | Refactored IKEv1 cert payload processing to multiple functionsMartin Willi2013-01-111-73/+102
* | | IKEv1 support for PKCS#7 wrapped certificatesVolker Rümelin2013-01-113-0/+96
* | | Fixed some typos in commentsVolker Rümelin2013-01-114-6/+6
* | | Fixed some typos in Ukrainian translationPavel Kopchyk2013-01-091-15/+16
* | | conftest: Add support for time_format and ike_name options in log sectionsThomas Klute2013-01-081-1/+18
* | | conftest: Fix log level settings for stdoutThomas Klute2013-01-081-0/+3
* | | conftest: Make outgoing sequence number set by reset_seq configurableThomas Klute2013-01-082-8/+70
* | | Include opensslconf.h before checking its definesMartin Willi2013-01-031-0/+2
* | | Don't build OpenSSL PKCS#7 code if OPENSSL_NO_CMS definedMartin Willi2013-01-031-0/+4
* | | make pacman.sh run under cronAndreas Steffen2012-12-261-9/+13
* | | deleted newly constructed attributes in send_assessmentAndreas Steffen2012-12-243-21/+7
* | | Added Russian and Ukrainian strings for Android clientDmitry Korzhevin2012-12-244-0/+252
|/ /
* | Add parantheses to avoid compiler warningMartin Willi2012-12-241-1/+1
* | Send empty CDATA batch if TNC client has no data to sendAndreas Steffen2012-12-231-16/+28
* | Fixed some typos, courtesy of codespellTobias Brunner2012-12-2011-12/+12
* | Raise an alert if IKE SA is keptAdrian-Ken Rueegsegger2012-12-202-0/+3
* | stroke: Drop unneeded [MY|OTHER]_NETBITSReto Buerki2012-12-191-2/+2
* | stroke: Enable install_policy in add_connection()Reto Buerki2012-12-191-0/+1
* | Add support for draft-ietf-ipsec-nat-t-ike-03 and earlierVolker Rümelin2012-12-1914-90/+311
* | NEWS about error-notifyMartin Willi2012-12-191-0/+3
* | Add missing error_notify_msg.h to distribution tarballMartin Willi2012-12-191-1/+2
* | Add an error-notify sample application to listen to error notificationsMartin Willi2012-12-193-0/+66
* | Add an error-notify plugin to send catched alerts to listening applicationsMartin Willi2012-12-1910-0/+747
* | Raise an alert if half-open timeout limit reachedMartin Willi2012-12-192-0/+3
* | Raise an alert if an authorize() hook failsMartin Willi2012-12-192-0/+6
* | Raise an alert if allocating virtual IPs failsMartin Willi2012-12-192-0/+4
* | Raise an alert if kernel policy installation failsMartin Willi2012-12-192-0/+4
* | Raise an alert if kernel SA installation failsMartin Willi2012-12-192-0/+4
* | Raise an alert on traffic selector mismatchMartin Willi2012-12-192-0/+5
* | Raise alerts when enforcing IKE_SA unique policyMartin Willi2012-12-194-0/+7
* | Raise an alert if CHILD_SA proposals mismatchMartin Willi2012-12-192-0/+4
* | Raise an alert if IKE proposals mismatchMartin Willi2012-12-192-0/+7
* | Raise an alert of generating local authentication data failsMartin Willi2012-12-192-6/+12
* | Add NEWS about BER capable OpenSSL PKCS#7 backendMartin Willi2012-12-191-0/+5
* | Free leaking scep attributesMartin Willi2012-12-191-0/+4
* | Corrected error message if enveloped-data decryption failsMartin Willi2012-12-191-1/+1
* | Fix up serialNumber in openssl PKCS#7 if it has a leading MSB setMartin Willi2012-12-191-2/+7
* | Don't handle PKCS#7 containers with infinite length encodings in pkcs7 pluginMartin Willi2012-12-191-0/+6