aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
* proposal: Don't fail DH proposal matching if peer includes NONETobias Brunner2014-03-311-4/+19
* conf: Order settings in man page alphabeticallyTobias Brunner2014-03-311-5/+4
* Merge branch 'acerts'Martin Willi2014-03-3196-1587/+2394
|\
| * NEWS: Add acert and pki changes for 5.1.3Martin Willi2014-03-311-0/+13
| * openac: Remove obsolete openac utilityMartin Willi2014-03-3110-772/+21
| * pki: Document --not-before/after and --dateform options in manpagesMartin Willi2014-03-314-7/+99
| * pki: Support absolute --this/next-update CRL lifetimesMartin Willi2014-03-311-6/+22
| * pki: Support absolute --not-before/after issued certificate lifetimesMartin Willi2014-03-312-7/+22
| * pki: Support absolute --not-before/after self-signed certificate lifetimesMartin Willi2014-03-311-5/+22
| * pki: Support absolute --not-before/after acert lifetimesMartin Willi2014-03-311-7/+26
| * pki: Add a certificate lifetime calculation helper functionMartin Willi2014-03-312-1/+69
| * testing: Add an acert test that forces a fallback connection based on groupsMartin Willi2014-03-3113-0/+199
| * testing: Add an acert test case sending attribute certificates inlineMartin Willi2014-03-3118-0/+291
| * testing: Add an acert test using locally cached attribute certificatesMartin Willi2014-03-3116-0/+239
| * testing: build strongSwan with acert pluginMartin Willi2014-03-311-0/+1
| * ikev2: Cache all received attribute certificates to auth configMartin Willi2014-03-311-1/+27
| * ikev2: Send all known and valid attribute certificates for subject certMartin Willi2014-03-311-0/+46
| * ikev2: Slightly refactor certificate payload construction to separate functionsMartin Willi2014-03-311-37/+56
| * ike: Support encoding of attribute certificates in CERT payloadsMartin Willi2014-03-311-1/+6
| * auth-cfg: Declare an attribute certificate helper type to exchange acertsMartin Willi2014-03-313-2/+15
| * acert: Implement a plugin finding, validating and evaluating attribute certsMartin Willi2014-03-317-0/+367
| * x509: Match acert has_subject() against entityName or holder serialMartin Willi2014-03-311-5/+25
| * pki: Add acert and extend pki/print manpagesMartin Willi2014-03-315-2/+116
| * pki: Implement an acert command to issue attribute certificatesMartin Willi2014-03-313-1/+275
| * pki: Support printing attribute certificatesMartin Willi2014-03-311-1/+89
| * pki: Don't generate negative random serial numbers in X.509 certificatesMartin Willi2014-03-312-0/+2
| * pem: Support encoding of attribute certificatesMartin Willi2014-03-311-1/+6
| * x509: Replace the comma separated string AC group builder with a list based oneMartin Willi2014-03-314-10/+22
| * x509: Integrate IETF attribute handling, and obsolete ietf_attributes_tMartin Willi2014-03-316-639/+186
| * x509: Replace fixed acert group string getter by a more dynamic group enumeratorMartin Willi2014-03-315-69/+131
| * x509: Skip parsing of acert chargingIdentity, as we don't use it anywayMartin Willi2014-03-311-9/+1
| * x509: Fix some whitespaces and do some minor style cleanups in acertMartin Willi2014-03-311-72/+76
| * ac: Remove unimplemented equals_holder() method from ac_tMartin Willi2014-03-311-8/+0
|/
* Added libipsec/net2net-3des scenarioAndreas Steffen2014-03-2811-0/+1521
* Renewed self-signed OCSP signer certificateAndreas Steffen2014-03-274-43/+45
* unit-tests: Fix filtered enumerator tests on 64-bit big-endian platformsTobias Brunner2014-03-271-12/+12
* travis: Run the "all" test case with leak detective enabledTobias Brunner2014-03-272-0/+7
* unit-tests: Fix memory leak in ntru testsTobias Brunner2014-03-271-3/+5
* Version bump to 5.1.3rc1Andreas Steffen2014-03-261-1/+1
* Check that valid OCSP responses are received in the ikev2/ocsp-multi-level sc...Andreas Steffen2014-03-241-0/+4
* Updated expired certificates issued by the Research and Sales Intermediate CAsAndreas Steffen2014-03-2421-185/+295
* Renewed revoked Research CA certificate5.1.3dr1Andreas Steffen2014-03-226-11/+37
* unit-test: added missing TEST_FUNCTION macrosAndreas Steffen2014-03-221-8/+16
* Added openssl-ikev2/net2net-pgp-v3 scenarioAndreas Steffen2014-03-2217-0/+208
* openssl: Add default fallback when calculating fingerprints of RSA keysTobias Brunner2014-03-221-1/+15
* Completed integration of ntru_crypto library into ntru pluginAndreas Steffen2014-03-2230-1711/+1355
* Merge branch 'travis-ci'Tobias Brunner2014-03-2012-216/+492
|\
| * travis: Use parallel buildTobias Brunner2014-03-201-1/+1
| * crypto-tester: Don't fail if key size is not supportedTobias Brunner2014-03-201-6/+3
| * unit-tests: Add an option to increase the verbosity when running testsTobias Brunner2014-03-201-1/+9