Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Removed pluto-specifics from ipsec script | Tobias Brunner | 2012-06-25 | 1 | -75/+1 | |
| | ||||||
* | README file cleaned up and updated | Tobias Brunner | 2012-06-25 | 1 | -2117/+481 | |
| | ||||||
* | Enforce uniqueids=keep based on XAuth identity | Martin Willi | 2012-06-25 | 1 | -0/+6 | |
| | ||||||
* | Don't send XAUTH_OK if a hook prevents SA to establish | Martin Willi | 2012-06-25 | 1 | -4/+14 | |
| | ||||||
* | Enforce uniqueids=keep only for non-XAuth Main/Agressive Modes | Martin Willi | 2012-06-25 | 2 | -28/+28 | |
| | ||||||
* | Show EAP/XAuth identity in "ipsec status", if available | Martin Willi | 2012-06-25 | 1 | -1/+1 | |
| | ||||||
* | Use XAuth/EAP remote identity for uniqueness check | Martin Willi | 2012-06-25 | 3 | -4/+6 | |
| | ||||||
* | Add missing XAuth name variable when complaining about missing XAuth backend | Martin Willi | 2012-06-25 | 1 | -1/+1 | |
| | ||||||
* | removed AUTHORS and CREDITS | Andreas Steffen | 2012-06-25 | 2 | -110/+0 | |
| | ||||||
* | some copyright additions | Andreas Steffen | 2012-06-23 | 1 | -5/+8 | |
| | ||||||
* | update copyright | Andreas Steffen | 2012-06-23 | 1 | -6/+4 | |
| | ||||||
* | version bump to 5.0.0 | Andreas Steffen | 2012-06-23 | 1 | -1/+1 | |
| | ||||||
* | Fix SIGSEGV if kernel install fails during Quick Mode as responder. | Tobias Brunner | 2012-06-22 | 1 | -4/+8 | |
| | ||||||
* | adapted description to IKEv2 | Andreas Steffen | 2012-06-22 | 3 | -6/+5 | |
| | ||||||
* | Fixed compile error because of charon->name in certexpire plugin. | Tobias Brunner | 2012-06-21 | 1 | -0/+1 | |
| | ||||||
* | fixed typo | Andreas Steffen | 2012-06-20 | 1 | -1/+1 | |
| | ||||||
* | added ipv6/rw-ip6-in-ip4-ikev1 scenario | Andreas Steffen | 2012-06-20 | 19 | -0/+504 | |
| | ||||||
* | added ipv6/rw-ip6-in-ip4-ikev2 scenario | Andreas Steffen | 2012-06-20 | 14 | -0/+440 | |
| | ||||||
* | Select requested virtual IP family based on remote TS, if no local TS available | Martin Willi | 2012-06-20 | 1 | -1/+12 | |
| | ||||||
* | upgraded UML options to 5.0.0 | Andreas Steffen | 2012-06-19 | 2 | -8/+9 | |
| | ||||||
* | Doxygen fix in PKCS#7 wrapper | Tobias Brunner | 2012-06-19 | 1 | -1/+1 | |
| | ||||||
* | sleep one second more | Andreas Steffen | 2012-06-19 | 1 | -1/+1 | |
| | ||||||
* | use socket-default in scenario | Andreas Steffen | 2012-06-19 | 2 | -2/+2 | |
| | ||||||
* | added ikev1/xauth-id-rsa-hybrid scenario | Andreas Steffen | 2012-06-18 | 14 | -0/+174 | |
| | ||||||
* | added ikev1/xauth-id-rsa-aggressive scenario | Andreas Steffen | 2012-06-18 | 14 | -0/+180 | |
| | ||||||
* | added secret as valid authby argument | Andreas Steffen | 2012-06-18 | 1 | -1/+1 | |
| | ||||||
* | rsasig is not recognized as authentication method | Andreas Steffen | 2012-06-18 | 11 | -22/+22 | |
| | ||||||
* | enable potentially unsafe aggressive mode | Andreas Steffen | 2012-06-18 | 1 | -0/+2 | |
| | ||||||
* | change ikev1/xauth scenarios to modern notation | Andreas Steffen | 2012-06-18 | 17 | -24/+51 | |
| | ||||||
* | testing: List IPv6 routing table in IPv6 test cases. | Tobias Brunner | 2012-06-15 | 1 | -2/+8 | |
| | ||||||
* | NLM_F_DUMP includes NLM_F_ROOT. | Tobias Brunner | 2012-06-15 | 1 | -1/+1 | |
| | ||||||
* | Don't create roam jobs based on cached/cloned routes. | Tobias Brunner | 2012-06-15 | 1 | -0/+4 | |
| | ||||||
* | Don't compare ports when comparing cached routes. | Tobias Brunner | 2012-06-15 | 3 | -6/+6 | |
| | | | | At least src_ip has a port set sometimes. | |||||
* | starter: Fixed parsing of %defaultroute. | Tobias Brunner | 2012-06-15 | 1 | -6/+12 | |
| | ||||||
* | Adopt children as XAuth initiator (which is IKE responder) | Martin Willi | 2012-06-14 | 1 | -2/+2 | |
| | ||||||
* | Added 5.0 NEWS about IKEv1 in charon | Martin Willi | 2012-06-14 | 1 | -0/+9 | |
| | ||||||
* | Print the kind of *Swan during starter startup | Martin Willi | 2012-06-14 | 1 | -1/+4 | |
| | ||||||
* | Show what kind of *Swan we run in "ipsec status" | Martin Willi | 2012-06-14 | 1 | -3/+16 | |
| | ||||||
* | Require a scary option to respond to Aggressive Mode PSK requests | Martin Willi | 2012-06-14 | 1 | -0/+17 | |
| | | | | | | | | While Aggressive Mode PSK is widely used, it is known to be subject to dictionary attacks by passive attackers. We don't complain as initiator to be compatible with existing (insecure) setups, but require a scary strongswan.conf option if someone wants to use it as responder. | |||||
* | thanks to narrowing treat right|leftsubnetwithin as synonyms for ↵ | Andreas Steffen | 2012-06-14 | 1 | -2/+2 | |
| | | | | right|leftsubnet | |||||
* | removed plutostart parameter | Andreas Steffen | 2012-06-13 | 633 | -633/+0 | |
| | ||||||
* | scepclient: Fixed Makefile after removing enable-smartcard configure option. | Tobias Brunner | 2012-06-13 | 1 | -6/+0 | |
| | ||||||
* | Use proper defines for IPV6_PKTINFO on Mac OS X Lion and newer. | Tobias Brunner | 2012-06-13 | 1 | -0/+2 | |
| | ||||||
* | Some updates to the INSTALL document. | Tobias Brunner | 2012-06-13 | 1 | -85/+58 | |
| | ||||||
* | Removed remaining pluto related configure options. | Tobias Brunner | 2012-06-13 | 1 | -21/+3 | |
| | ||||||
* | starter: Print additional help texts for selected deprecated keywords. | Tobias Brunner | 2012-06-12 | 4 | -6/+25 | |
| | ||||||
* | starter: Improved how deprecated keywords are handled. | Tobias Brunner | 2012-06-12 | 4 | -7/+99 | |
| | | | | We only throw a warning now instead of rejecting the config. | |||||
* | Revert "starter: Don't treat unsupported keywords as fatal errors just ↵ | Tobias Brunner | 2012-06-12 | 1 | -3/+3 | |
| | | | | | | report them." This reverts commit e55876a657ae9d4bbf14320e5a14f86cc5c31c7f. | |||||
* | NEWS about specifying trustchain HASH algorithm requirements | Martin Willi | 2012-06-12 | 1 | -0/+7 | |
| | ||||||
* | Add documentation for signature hash algorithm enforcing to man ipsec.conf | Martin Willi | 2012-06-12 | 1 | -4/+11 | |
| |