Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | unit-tests: Generate RSA key with 768 bits not 786 | Tobias Brunner | 2014-01-20 | 1 | -1/+1 | |
| | ||||||
* | ike_sa: Defer task manager destruction after child destruction | Thomas Egerer | 2014-01-16 | 4 | -9/+16 | |
| | | | | | | | | | | This patch exports the task manager's flush to allow flushing of all queues with one function call from ike_sa->destroy. It allows the access of intact children during task destructoin (see git-commit e44ebdcf) and allows the access of the task manager in child_state_change hook. Signed-off-by: Thomas Egerer <thomas.egerer@secunet.com> | |||||
* | Version bump to 5.1.2rc1 | Andreas Steffen | 2014-01-16 | 2 | -1/+4 | |
| | ||||||
* | Added TPMRA workitem support in PTS database | Andreas Steffen | 2014-01-16 | 2 | -0/+120 | |
| | ||||||
* | printf-hook-builtin: Correctly calculate written bytes in print_in_hook() | Martin Willi | 2014-01-15 | 1 | -3/+7 | |
| | | | | | | | | | | The hook data counts remaining buffer bytes, not used ones. Counting them correctly fixes a crash for long hexdumps. Further, print_in_hook() must return the number of bytes that would have been written, not the actually written bytes. This is important, as we allocate a dynamic buffer in bus that relies on the exact byte count. Fixes long hexdumps that got truncated. | |||||
* | Do PTS measurements only if session initialisation was successful5.1.2dr3 | Andreas Steffen | 2014-01-15 | 1 | -7/+22 | |
| | ||||||
* | Starting with 3.1.7 kernel.org replaced bz2 with xz format | Andreas Steffen | 2014-01-15 | 2 | -5/+5 | |
| | ||||||
* | Version bump to 5.1.2dr3 | Andreas Steffen | 2014-01-13 | 1 | -1/+1 | |
| | ||||||
* | Catch AIK errors | Andreas Steffen | 2014-01-13 | 5 | -51/+57 | |
| | ||||||
* | Do TPM measurements only if there is a TPMRA workitem | Andreas Steffen | 2014-01-13 | 7 | -126/+139 | |
| | ||||||
* | Allow reason strings to be used as workitem result string | Andreas Steffen | 2014-01-13 | 9 | -46/+82 | |
| | ||||||
* | Attestation IMV processes TPMRA workitem | Andreas Steffen | 2014-01-13 | 3 | -3/+69 | |
| | ||||||
* | Added TPM Remote Attestation (TPMRA) workitem | Andreas Steffen | 2014-01-10 | 2 | -2/+4 | |
| | ||||||
* | checksum: Set rpath including DESTDIR for checksum_builder | Tobias Brunner | 2014-01-08 | 1 | -0/+1 | |
| | | | | | | | This way libraries to which checksum_builder does not itself link, like libtls and libradius, are found during DESTDIR installs. Fixes #476. | |||||
* | test-asn1: Fix skipping of >2038 tests on i386 | Tobias Brunner | 2014-01-06 | 1 | -35/+35 | |
| | | | | | | | | The two constants overflow time_t on i386 (they also produced a compiler warning without type suffix) so the comparison with TIME_32_BIT_SIGNED_MAX did not work as intended. Fixes #477. | |||||
* | chunk: Fix chunk_mac/hash tests on big-endian systems | Tobias Brunner | 2014-01-06 | 1 | -2/+27 | |
| | | | | | | | | Our SipHash-2-4 implementation returns the result in host order, while the test vectors are little-endian. Use a custom comparison function to account for this. Fixes #478. | |||||
* | utils: Fix %T printf hook on big-endian systems | Tobias Brunner | 2014-01-06 | 1 | -1/+1 | |
| | | | | | | | | The cast to a bool* cut of the actual value on big-endian systems if bool was shorter than int because the bool argument to printf gets promoted to an int. Fixes #479. | |||||
* | checksum: Delay building of checksum_builder until required by make install | Tobias Brunner | 2014-01-06 | 1 | -2/+2 | |
| | | | | This ensures PLUGINDIR includes any DESTDIR set during make install. | |||||
* | checksum: Remove unnecessary pluto symbol | Tobias Brunner | 2014-01-06 | 1 | -3/+0 | |
| | ||||||
* | stroke: Fix error message if parsing leftsourceip fails | Tobias Brunner | 2014-01-06 | 1 | -1/+1 | |
| | ||||||
* | Update PCR even if measurement does not equal reference value | Andreas Steffen | 2013-12-21 | 1 | -3/+3 | |
| | ||||||
* | tun-device: Include system headers before our own | Tobias Brunner | 2013-12-20 | 2 | -3/+5 | |
| | | | | | | | | | | | | | On CentOS 6.5 the sys/capability.h header file defines _LINUX_TYPES_H without actually including that header, preventing its later inclusion here. As library.h (via which the capabilities headers are included) is not actually required in tun_device.[ch], moving the inclusion of tun_device.h would not strictly be necessary. But it's probably a good idea to include our own headers after system headers anyway, for if one of the recursively included files at a later point includes library.h we'd have the same problem again. | |||||
* | aes-test: Fix compiler warnings from older versions of GCC | Tobias Brunner | 2013-12-19 | 1 | -1/+1 | |
| | ||||||
* | Fixed check_file_measurement method in pts_database_t | Andreas Steffen | 2013-12-13 | 1 | -6/+54 | |
| | ||||||
* | unit-tests: NTRU test to check a special branch | Andreas Steffen | 2013-12-08 | 1 | -0/+7 | |
| | ||||||
* | min_MGF_hash_calls parameter is not needed anymore | Andreas Steffen | 2013-12-07 | 2 | -18/+0 | |
| | ||||||
* | Optimized MGF1 implementation | Andreas Steffen | 2013-12-07 | 1 | -8/+13 | |
| | ||||||
* | Implemented ntru_trits class | Andreas Steffen | 2013-12-07 | 9 | -293/+383 | |
| | ||||||
* | Streamlined DRBG and MGF1 debug output | Andreas Steffen | 2013-12-07 | 3 | -14/+20 | |
| | ||||||
* | Version bump to 5.1.2dr25.1.2.dr2 | Andreas Steffen | 2013-12-06 | 1 | -1/+1 | |
| | ||||||
* | unit-tests: Added crypter tests | Andreas Steffen | 2013-12-06 | 4 | -3/+112 | |
| | ||||||
* | Added own MGF1 mask generating function | Andreas Steffen | 2013-12-05 | 11 | -436/+707 | |
| | ||||||
* | unit-tests: Added hasher tests | Andreas Steffen | 2013-12-04 | 3 | -0/+191 | |
| | ||||||
* | Moved test_rng to a test suite of its own | Andreas Steffen | 2013-12-04 | 4 | -26/+58 | |
| | ||||||
* | unit-tests: Don't use priority for destructor that unregisters testable ↵ | Tobias Brunner | 2013-12-04 | 1 | -1/+6 | |
| | | | | | | | | | functions This fixes coverage reports, at least if leak detective is disabled. If it is enabled the plugins are not unloaded so the destructor is not executed until the process is destroyed, which seems not to be covered by gcov. | |||||
* | unit-tests: Export ntru_drbg_create as testable function so no linking is ↵ | Tobias Brunner | 2013-12-04 | 3 | -6/+11 | |
| | | | | | | | | required This way the plugin does not have to be linked explicitly to the test runner, which otherwise would require that the plugin is either always enabled to build the tests or that ifdefs are added to the Makefile. | |||||
* | unit-tests: Add facility to register testable functions | Tobias Brunner | 2013-12-04 | 5 | -3/+169 | |
| | | | | | These can be defined in plugins, or other parts of the tested libraries. They can even be static. | |||||
* | unit-tests: Move ntru_test_rng_t to a utility class in libtest | Tobias Brunner | 2013-12-04 | 6 | -48/+37 | |
| | ||||||
* | unit-tests: Fix apidoc for libtest | Tobias Brunner | 2013-12-04 | 2 | -8/+23 | |
| | ||||||
* | ntru: Fix compiler warning caused by ++/-- on righthand side of an assignment | Tobias Brunner | 2013-12-04 | 1 | -4/+4 | |
| | | | | The behavior of stuff like x = --x; (or x++) is not defined. | |||||
* | testing: Fix status output in build-baseimage script | Reto Buerki | 2013-12-04 | 1 | -1/+1 | |
| | ||||||
* | Remove check library from HACKING document | Reto Buerki | 2013-12-04 | 1 | -1/+0 | |
| | ||||||
* | charon-tkm: Abort if gprbuild binary is not found | Reto Buerki | 2013-12-04 | 1 | -0/+3 | |
| | ||||||
* | charon-tkm: Update integration tests | Reto Buerki | 2013-12-04 | 7 | -1/+49 | |
| | ||||||
* | charon-tkm: Implement IANA DH Id to TKM Id mapping | Adrian-Ken Rueegsegger | 2013-12-03 | 5 | -9/+134 | |
| | | | | | | | | | | | | | | | The TKM Diffie-Hellman plugin now maps IANA DH identifiers to TKM DH algorithm identifiers. The mapping is specified in the daemon's 'dh_mapping' section in the strongswan.conf file: dh_mapping { iana_id1 = tkm_id1 iana_id2 = tkm_id2 iana_id3 = tkm_id3 ... } Only the mapped IANA IDs are registered as supported DH groups. | |||||
* | charon-tkm: Drop unnecessary include | Adrian-Ken Rueegsegger | 2013-12-03 | 1 | -1/+0 | |
| | ||||||
* | Fixed formatting in strongswan.conf | Andreas Steffen | 2013-12-03 | 1 | -3/+7 | |
| | ||||||
* | ike: Log SK_p consistently on level 4 | Tobias Brunner | 2013-11-28 | 1 | -1/+1 | |
| | ||||||
* | Updated NEWS for 5.1.2dr15.1.2dr1 | Andreas Steffen | 2013-11-27 | 1 | -0/+11 | |
| | ||||||
* | Added DRBG automatic reseeding tests | Andreas Steffen | 2013-11-27 | 3 | -170/+220 | |
| |