aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * | Updated ipsec.conf.5 with multiple left/rightsourceip supportMartin Willi2012-08-301-6/+6
| | |
| * | Added a note to _updown for the new PLUTO_MY_SOURCEIP* variablesMartin Willi2012-08-301-2/+6
| | |
| * | Be less verbose if IP allocation for a single pool failsMartin Willi2012-08-301-4/+0
| | |
| * | DHCP plugin returns virtual IPs for IPv4 requests onlyMartin Willi2012-08-301-2/+2
| | |
| * | Check address family in HA virtual IP backendMartin Willi2012-08-301-0/+6
| | |
| * | Strictly enforce address family match while acquiring mem_pool IPsMartin Willi2012-08-301-3/+1
| | |
| * | Don't parse comma separated pool names in attr-sqlMartin Willi2012-08-301-77/+26
| | | | | | | | | | | | | | | We now handle multiple pools at a deeper level, making that special handling obsolete. Comma separated pools are parsed in stroke.
| * | Handle comma separated pools as multiple pool names in SQL pluginMartin Willi2012-08-301-1/+9
| | |
| * | Request and acquire multiple virtual IPs in IKEv1 Mode ConfigMartin Willi2012-08-301-47/+61
| | |
| * | Request and acquire multiple virtual IPs in IKEv2 configuration payloadMartin Willi2012-08-301-49/+67
| | |
| * | Pass all configured pool names to attribute provider enumeratorMartin Willi2012-08-309-26/+42
| | |
| * | Pass a list instead of a single virtual IP to attribute enumeratorsMartin Willi2012-08-3015-100/+189
| | |
| * | Support multiple addresses/pools in left/rightsourceipMartin Willi2012-08-309-156/+189
| | |
| * | Support multiple address pools configured on a peer_cfgMartin Willi2012-08-3025-55/+151
| | |
| * | Support multiple virtual IPs on peer_cfg and ike_sa classesMartin Willi2012-08-3034-264/+447
| | |
| * | Add a getter for the mem_pool_t base addressMartin Willi2012-08-242-0/+14
| | |
| * | Remove unused ipsec.conf left/rightnatip keywordMartin Willi2012-08-216-34/+0
| | |
| * | Add description about DNS server variables to _updownMartin Willi2012-08-211-0/+6
| | |
| * | Add a DNS attribute handler to updown, passing servers to updown scriptMartin Willi2012-08-216-4/+377
| | |
| * | Add a description of the leftdns option to ipsec.conf.5Martin Willi2012-08-211-0/+10
| | |
| * | Add a stroke attribute_handler requesting DNS servers given with leftdnsMartin Willi2012-08-214-0/+307
| | |
| * | Serve ipsec.conf rightdns servers through stroke attribute providerMartin Willi2012-08-211-10/+143
| | |
| * | Add a left/rightdns keyword to configure connection specific DNS attributesMartin Willi2012-08-217-0/+11
| | |
* | | Merge branch 'eap-client-select'Tobias Brunner2012-08-3120-83/+983
|\ \ \ | | | | | | | | | | | | | | | | | | | | This brings support for EAP-Nak payloads on the client (to select a specific or supported method), and the server (via the eap-dynamic plugin which selects a method supported/requested by the client).
| * | | NEWS about eap-dynamic plugin addedTobias Brunner2012-08-311-0/+9
| | | |
| * | | Documentation for eap-dynamic addedTobias Brunner2012-08-312-0/+11
| | | |
| * | | Log the proper type for virtual EAP methodsTobias Brunner2012-08-311-1/+5
| | | |
| * | | Added an option to prefer types sent by peer in eap-dynamic pluginTobias Brunner2012-08-311-14/+42
| | | |
| * | | eap-dynamic plugin handles EAP-Nak messages and selects a method supported ↵Tobias Brunner2012-08-311-1/+72
| | | | | | | | | | | | | | | | by the peer
| * | | Preferred EAP methods for eap-dynamic can be configuredTobias Brunner2012-08-311-1/+59
| | | |
| * | | The eap-dynamic plugin uses the first supported method as defaultTobias Brunner2012-08-311-1/+91
| | | |
| * | | Added eap-dynamic plugin which can proxy any other EAP methodTobias Brunner2012-08-319-1/+332
| | | |
| * | | Use eap_vendor_type_from_string() in strokeTobias Brunner2012-08-311-38/+7
| | | |
| * | | Function added that parses EAP method strings ([eap-]type[-vendor])Tobias Brunner2012-08-312-0/+86
| | | |
| * | | Added method to enumerate EAP types contained in an EAP-NakTobias Brunner2012-08-312-11/+79
| | | |
| * | | Encode EAP-Naks in expanded format if we got an expanded type requestTobias Brunner2012-08-315-6/+19
| | | | | | | | | | | | | | | | | | | | Since methods defined by the IETF (vendor ID 0) could also be encoded in expanded type format the previous check was insufficient.
| * | | Allow clients to request a configured EAP method via EAP-NakTobias Brunner2012-08-315-8/+37
| | | |
| * | | Virtual EAP methods handle EAP-Naks themselvesTobias Brunner2012-08-311-5/+17
| | | |
| * | | Send EAP-Nak with supported types if requested type is unsupportedTobias Brunner2012-08-315-12/+81
| | | |
| * | | Filter invalid EAP authentication types when enumerating themTobias Brunner2012-08-312-1/+10
| | | | | | | | | | | | | | | | Valid authentication types defined by the IETF are 4-253 and 255.
| * | | Move our pseudo EAP types out of the range of valid EAP methodsTobias Brunner2012-08-312-14/+14
| | | |
| * | | Added a method to enumerate registered EAP methodsTobias Brunner2012-08-212-0/+43
| |/ /
* | | version bump to 5.0.1dr4Andreas Steffen2012-08-311-1/+1
| | |
* | | Ported tun_device de-/initialization to FreeBSDTobias Brunner2012-08-291-5/+47
| | |
* | | struct iphdr is Linux specific use struct ip insteadTobias Brunner2012-08-291-6/+6
| | |
* | | Include stdint.h for UINT32_MAX on FreeBSDTobias Brunner2012-08-291-0/+1
| | |
* | | Ported tun_device initialization to OS X utunMartin Willi2012-08-281-19/+85
| |/ |/|
* | Ewa did the new Polish translationAndreas Steffen2012-08-241-0/+95
| |
* | Log configured IKE_SA proposals as initiatorTobias Brunner2012-08-241-0/+2
| |
* | Log configured CHILD_SA proposals as initiatorTobias Brunner2012-08-241-0/+2
| |