Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | define pen_type_t as a vendor-specific type | Andreas Steffen | 2012-08-20 | 35 | -624/+301 | |
| | ||||||
* | Don't use POSIX semaphores if a MONOTONIC clock is available | Martin Willi | 2012-08-20 | 1 | -0/+8 | |
| | | | | | | POSIX semaphores use CLOCK_REALTIME, but our semaphore_t abstraction expects CLOCK_MONOTONIC based times. Use the mutex/condvar based fallback if time_monotonic() actuall returns monotonic times. | |||||
* | Remove the unused second IKE_SA entry match function argument | Martin Willi | 2012-08-20 | 1 | -4/+4 | |
| | | | | LLVMs clang complains about this parameter, so remove it. | |||||
* | Add a mutex/condvar based semaphore implementation if sem_timedwait is ↵ | Martin Willi | 2012-08-20 | 2 | -2/+69 | |
| | | | | | | unavailable Fixes #214. | |||||
* | added IBM and OpenPTS Private Enterprise Numbers | Andreas Steffen | 2012-08-20 | 2 | -2/+8 | |
| | ||||||
* | Add keymat_t constructor registration function | Adrian-Ken Rueegsegger | 2012-08-20 | 2 | -3/+45 | |
| | | | | | | Using the register_constructor function enables custom keymat_t implementations per IKE version. If no constructor is registered the default behavior is preserved. | |||||
* | fixed caption | Andreas Steffen | 2012-08-20 | 1 | -1/+1 | |
| | ||||||
* | implemented IETF Attribute Request attribute | Andreas Steffen | 2012-08-20 | 4 | -3/+383 | |
| | ||||||
* | version bump to 5.0.1dr3 | Andreas Steffen | 2012-08-20 | 1 | -1/+1 | |
| | ||||||
* | openssl: Fix registration of the PUBKEY builder | Tobias Brunner | 2012-08-18 | 1 | -1/+1 | |
| | | | | | libtls drops support for RSA suites if it does not find an RSA backend (final builder for RSA public keys). | |||||
* | Without the ties to PAM we can build eap-gtc on Android | Tobias Brunner | 2012-08-17 | 2 | -2/+2 | |
| | ||||||
* | CAP_AUDIT_WRITE is now required by xauth-pam not eap-gtc plugin | Tobias Brunner | 2012-08-17 | 2 | -7/+7 | |
| | ||||||
* | Removed manual EAP method registration in eap-gtc plugin | Tobias Brunner | 2012-08-17 | 1 | -5/+0 | |
| | ||||||
* | Enable build of eap-tls, eap-ttls and eap-peap on Android | Tobias Brunner | 2012-08-17 | 1 | -0/+20 | |
| | ||||||
* | Add a wrapper around vstr_add_fmt() to avoid having to link libcharon ↵ | Tobias Brunner | 2012-08-17 | 2 | -2/+31 | |
| | | | | | | against libvstr At least on Android the latter would be required. | |||||
* | starter: Restore original config in case also= is used (which reads the same ↵ | Tobias Brunner | 2012-08-16 | 1 | -20/+30 | |
| | | | | values) | |||||
* | Increased log level when listing interfaces and IP addresses during startup | Tobias Brunner | 2012-08-16 | 2 | -6/+6 | |
| | | | | | This avoids confusing log messages in starter and ipsec statusall already lists the available addresses anyway. | |||||
* | Only load kernel plugins in starter when flushing SAD/SPD entries | Tobias Brunner | 2012-08-16 | 2 | -9/+8 | |
| | | | | | | | | This avoids keeping the kernel sockets open when they are not actually needed, which could lead to resource problems (in particular with PF_KEY where all open sockets receive all messages). Fixes #217. | |||||
* | Enable UDP decapsulation for both address families | Tobias Brunner | 2012-08-16 | 2 | -9/+11 | |
| | | | | | | | | Since the 3.5 Linux kernel both UDP implementations have a separate static flag to indicate whether ANY sockets enabled UDP decapsulation. As we only ever enabled it for one address family (in earlier versions IPv4 only, now for IPv6, if supported, and for IPv4 otherwise) UDP decapsulation wouldn't work anymore (at least for one address family). | |||||
* | Correctly transmit EAP-MSCHAPv2 user name if it contains a domain part | Tobias Brunner | 2012-08-16 | 1 | -11/+12 | |
| | ||||||
* | fall through to evidence measurements if no file measurements must be done | Andreas Steffen | 2012-08-16 | 1 | -1/+7 | |
| | ||||||
* | upgraded to Ubuntu 12.04.1 LTS | Andreas Steffen | 2012-08-16 | 2 | -1/+37 | |
| | ||||||
* | added deletion of product/file entries to usage | Andreas Steffen | 2012-08-16 | 1 | -0/+3 | |
| | ||||||
* | New Android release after adding error dialog | Tobias Brunner | 2012-08-15 | 1 | -2/+2 | |
| | | | | Skipped one version due to a rebasing mishap. | |||||
* | Show an error message if VPN is not supported | Tobias Brunner | 2012-08-15 | 3 | -1/+61 | |
| | | | | | | Some devices have Android 4 installed but the system images still seem to lack the components that are required for VPN support. One such component is the dialog used to grant permission to create . | |||||
* | Enable search for certificate lists (via SearchView in ActionBar) | Tobias Brunner | 2012-08-14 | 4 | -1/+50 | |
| | ||||||
* | Added new UI to select a specific CA certificate | Tobias Brunner | 2012-08-14 | 5 | -32/+140 | |
| | | | | | With this change there is no need to wait for all certificates being loaded anymore (this happens only when the user opens the selection activity). | |||||
* | Don't try to save profile ID if there is none | Tobias Brunner | 2012-08-14 | 1 | -1/+4 | |
| | ||||||
* | List fragment for trusted certificates can notify listeners about clicks | Tobias Brunner | 2012-08-14 | 1 | -0/+31 | |
| | ||||||
* | Added an activity that shows lists of CA certificates in two tabs | Tobias Brunner | 2012-08-14 | 5 | -0/+159 | |
| | ||||||
* | Added a ListFragment that lists trusted certificates (loaded via a custom ↵ | Tobias Brunner | 2012-08-14 | 3 | -0/+159 | |
| | | | | Loader) | |||||
* | Changed TrustedCertificateAdapter for use with ListViews and ↵ | Tobias Brunner | 2012-08-14 | 2 | -116/+45 | |
| | | | | TrustedCertificateEntry | |||||
* | Remove certificate spinner from edit view | Tobias Brunner | 2012-08-14 | 4 | -115/+1 | |
| | ||||||
* | Function to get only system-wide CA certificates added to ↵ | Tobias Brunner | 2012-08-14 | 1 | -0/+19 | |
| | | | | TrustedCertificateManager | |||||
* | Added class to store trusted certificate entries for lists | Tobias Brunner | 2012-08-14 | 1 | -0/+119 | |
| | ||||||
* | fixed Makefile for libstrongswan dev headers | Andreas Steffen | 2012-08-14 | 1 | -2/+2 | |
| | ||||||
* | version bump to 5.0.1dr2 | Andreas Steffen | 2012-08-14 | 1 | -1/+1 | |
| | ||||||
* | skip boot aggregate check against database | Andreas Steffen | 2012-08-14 | 1 | -0/+1 | |
| | ||||||
* | Validate netmask in mem_pool_create | Tobias Brunner | 2012-08-13 | 1 | -0/+1 | |
| | ||||||
* | Validate netmask in traffic_selector_create_from_subnet | Tobias Brunner | 2012-08-13 | 1 | -0/+1 | |
| | | | | Fixes #216. | |||||
* | Comment fixed | Tobias Brunner | 2012-08-13 | 1 | -1/+1 | |
| | ||||||
* | Merge branch 'android-app' | Tobias Brunner | 2012-08-13 | 116 | -419/+12088 | |
|\ | | | | | | | | | | | | | | | This branch introduces a userland IPsec implementation (libipsec) and an Android App which targets the VpnService API that is provided by Android 4+. The implementation is based on the bachelor thesis 'Userland IPsec for Android 4' by Giuliano Grassi and Ralf Sager. | |||||
| * | Ensure thread IDs always start with 1 even if the library is reused | Tobias Brunner | 2012-08-13 | 1 | -2/+2 | |
| | | | | | | | | | | | | Within the Android App the library stays loaded in memory and is just initialized/deinitialized with each connection, the static thread counter would continuously increase without this patch. | |||||
| * | Added a button to the error dialog that allows to view the log file | Tobias Brunner | 2012-08-13 | 1 | -4/+19 | |
| | | ||||||
| * | Use major.minor.revision version numbers for Android application | Tobias Brunner | 2012-08-13 | 1 | -1/+1 | |
| | | ||||||
| * | Only allow access to log file via explicitly created URIs | Tobias Brunner | 2012-08-13 | 2 | -2/+37 | |
| | | | | | | | | | | | | Since ContentProviders are public and permissions don't seem to work any other application could access the log file. With this token system only URIs we explicitly created can be accessed. | |||||
| * | Menu option added that allows users to send the log file | Tobias Brunner | 2012-08-13 | 5 | -0/+70 | |
| | | ||||||
| * | Add ContentProvider to access log file from other applications | Tobias Brunner | 2012-08-13 | 2 | -0/+122 | |
| | | ||||||
| * | Watch for changes to the log file so we can reopen it | Tobias Brunner | 2012-08-13 | 1 | -5/+86 | |
| | | | | | | | | | | | | | | If the log fragment is shown while the daemon starts (which is not the case at the moment, but maybe later on tablets) the file reader would not notice that the file got truncated. The same applies if the file is deleted directly on the file system e.g. with adb shell. | |||||
| * | Add an Activity that shows the log fragment | Tobias Brunner | 2012-08-13 | 7 | -3/+111 | |
| | |