Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
| * | | Updated ipsec.conf.5 with multiple left/rightsourceip support | Martin Willi | 2012-08-30 | 1 | -6/+6 | |
| | | | ||||||
| * | | Added a note to _updown for the new PLUTO_MY_SOURCEIP* variables | Martin Willi | 2012-08-30 | 1 | -2/+6 | |
| | | | ||||||
| * | | Be less verbose if IP allocation for a single pool fails | Martin Willi | 2012-08-30 | 1 | -4/+0 | |
| | | | ||||||
| * | | DHCP plugin returns virtual IPs for IPv4 requests only | Martin Willi | 2012-08-30 | 1 | -2/+2 | |
| | | | ||||||
| * | | Check address family in HA virtual IP backend | Martin Willi | 2012-08-30 | 1 | -0/+6 | |
| | | | ||||||
| * | | Strictly enforce address family match while acquiring mem_pool IPs | Martin Willi | 2012-08-30 | 1 | -3/+1 | |
| | | | ||||||
| * | | Don't parse comma separated pool names in attr-sql | Martin Willi | 2012-08-30 | 1 | -77/+26 | |
| | | | | | | | | | | | | | | | We now handle multiple pools at a deeper level, making that special handling obsolete. Comma separated pools are parsed in stroke. | |||||
| * | | Handle comma separated pools as multiple pool names in SQL plugin | Martin Willi | 2012-08-30 | 1 | -1/+9 | |
| | | | ||||||
| * | | Request and acquire multiple virtual IPs in IKEv1 Mode Config | Martin Willi | 2012-08-30 | 1 | -47/+61 | |
| | | | ||||||
| * | | Request and acquire multiple virtual IPs in IKEv2 configuration payload | Martin Willi | 2012-08-30 | 1 | -49/+67 | |
| | | | ||||||
| * | | Pass all configured pool names to attribute provider enumerator | Martin Willi | 2012-08-30 | 9 | -26/+42 | |
| | | | ||||||
| * | | Pass a list instead of a single virtual IP to attribute enumerators | Martin Willi | 2012-08-30 | 15 | -100/+189 | |
| | | | ||||||
| * | | Support multiple addresses/pools in left/rightsourceip | Martin Willi | 2012-08-30 | 9 | -156/+189 | |
| | | | ||||||
| * | | Support multiple address pools configured on a peer_cfg | Martin Willi | 2012-08-30 | 25 | -55/+151 | |
| | | | ||||||
| * | | Support multiple virtual IPs on peer_cfg and ike_sa classes | Martin Willi | 2012-08-30 | 34 | -264/+447 | |
| | | | ||||||
| * | | Add a getter for the mem_pool_t base address | Martin Willi | 2012-08-24 | 2 | -0/+14 | |
| | | | ||||||
| * | | Remove unused ipsec.conf left/rightnatip keyword | Martin Willi | 2012-08-21 | 6 | -34/+0 | |
| | | | ||||||
| * | | Add description about DNS server variables to _updown | Martin Willi | 2012-08-21 | 1 | -0/+6 | |
| | | | ||||||
| * | | Add a DNS attribute handler to updown, passing servers to updown script | Martin Willi | 2012-08-21 | 6 | -4/+377 | |
| | | | ||||||
| * | | Add a description of the leftdns option to ipsec.conf.5 | Martin Willi | 2012-08-21 | 1 | -0/+10 | |
| | | | ||||||
| * | | Add a stroke attribute_handler requesting DNS servers given with leftdns | Martin Willi | 2012-08-21 | 4 | -0/+307 | |
| | | | ||||||
| * | | Serve ipsec.conf rightdns servers through stroke attribute provider | Martin Willi | 2012-08-21 | 1 | -10/+143 | |
| | | | ||||||
| * | | Add a left/rightdns keyword to configure connection specific DNS attributes | Martin Willi | 2012-08-21 | 7 | -0/+11 | |
| | | | ||||||
* | | | Merge branch 'eap-client-select' | Tobias Brunner | 2012-08-31 | 20 | -83/+983 | |
|\ \ \ | | | | | | | | | | | | | | | | | | | | | This brings support for EAP-Nak payloads on the client (to select a specific or supported method), and the server (via the eap-dynamic plugin which selects a method supported/requested by the client). | |||||
| * | | | NEWS about eap-dynamic plugin added | Tobias Brunner | 2012-08-31 | 1 | -0/+9 | |
| | | | | ||||||
| * | | | Documentation for eap-dynamic added | Tobias Brunner | 2012-08-31 | 2 | -0/+11 | |
| | | | | ||||||
| * | | | Log the proper type for virtual EAP methods | Tobias Brunner | 2012-08-31 | 1 | -1/+5 | |
| | | | | ||||||
| * | | | Added an option to prefer types sent by peer in eap-dynamic plugin | Tobias Brunner | 2012-08-31 | 1 | -14/+42 | |
| | | | | ||||||
| * | | | eap-dynamic plugin handles EAP-Nak messages and selects a method supported ↵ | Tobias Brunner | 2012-08-31 | 1 | -1/+72 | |
| | | | | | | | | | | | | | | | | by the peer | |||||
| * | | | Preferred EAP methods for eap-dynamic can be configured | Tobias Brunner | 2012-08-31 | 1 | -1/+59 | |
| | | | | ||||||
| * | | | The eap-dynamic plugin uses the first supported method as default | Tobias Brunner | 2012-08-31 | 1 | -1/+91 | |
| | | | | ||||||
| * | | | Added eap-dynamic plugin which can proxy any other EAP method | Tobias Brunner | 2012-08-31 | 9 | -1/+332 | |
| | | | | ||||||
| * | | | Use eap_vendor_type_from_string() in stroke | Tobias Brunner | 2012-08-31 | 1 | -38/+7 | |
| | | | | ||||||
| * | | | Function added that parses EAP method strings ([eap-]type[-vendor]) | Tobias Brunner | 2012-08-31 | 2 | -0/+86 | |
| | | | | ||||||
| * | | | Added method to enumerate EAP types contained in an EAP-Nak | Tobias Brunner | 2012-08-31 | 2 | -11/+79 | |
| | | | | ||||||
| * | | | Encode EAP-Naks in expanded format if we got an expanded type request | Tobias Brunner | 2012-08-31 | 5 | -6/+19 | |
| | | | | | | | | | | | | | | | | | | | | Since methods defined by the IETF (vendor ID 0) could also be encoded in expanded type format the previous check was insufficient. | |||||
| * | | | Allow clients to request a configured EAP method via EAP-Nak | Tobias Brunner | 2012-08-31 | 5 | -8/+37 | |
| | | | | ||||||
| * | | | Virtual EAP methods handle EAP-Naks themselves | Tobias Brunner | 2012-08-31 | 1 | -5/+17 | |
| | | | | ||||||
| * | | | Send EAP-Nak with supported types if requested type is unsupported | Tobias Brunner | 2012-08-31 | 5 | -12/+81 | |
| | | | | ||||||
| * | | | Filter invalid EAP authentication types when enumerating them | Tobias Brunner | 2012-08-31 | 2 | -1/+10 | |
| | | | | | | | | | | | | | | | | Valid authentication types defined by the IETF are 4-253 and 255. | |||||
| * | | | Move our pseudo EAP types out of the range of valid EAP methods | Tobias Brunner | 2012-08-31 | 2 | -14/+14 | |
| | | | | ||||||
| * | | | Added a method to enumerate registered EAP methods | Tobias Brunner | 2012-08-21 | 2 | -0/+43 | |
| |/ / | ||||||
* | | | version bump to 5.0.1dr4 | Andreas Steffen | 2012-08-31 | 1 | -1/+1 | |
| | | | ||||||
* | | | Ported tun_device de-/initialization to FreeBSD | Tobias Brunner | 2012-08-29 | 1 | -5/+47 | |
| | | | ||||||
* | | | struct iphdr is Linux specific use struct ip instead | Tobias Brunner | 2012-08-29 | 1 | -6/+6 | |
| | | | ||||||
* | | | Include stdint.h for UINT32_MAX on FreeBSD | Tobias Brunner | 2012-08-29 | 1 | -0/+1 | |
| | | | ||||||
* | | | Ported tun_device initialization to OS X utun | Martin Willi | 2012-08-28 | 1 | -19/+85 | |
| |/ |/| | ||||||
* | | Ewa did the new Polish translation | Andreas Steffen | 2012-08-24 | 1 | -0/+95 | |
| | | ||||||
* | | Log configured IKE_SA proposals as initiator | Tobias Brunner | 2012-08-24 | 1 | -0/+2 | |
| | | ||||||
* | | Log configured CHILD_SA proposals as initiator | Tobias Brunner | 2012-08-24 | 1 | -0/+2 | |
| | |