aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* Wipe auxiliary key store5.3.0Andreas Steffen2015-03-281-1/+1
* crypto-tester: Explicitly exclude FIPS-PRF from append mode testsMartin Willi2015-03-281-8/+11
* fips-prf: Fail when trying to use append mode on FIPS-PRFMartin Willi2015-03-281-1/+6
* Added PB-TNC test options to strongswan.conf man pageAndreas Steffen2015-03-271-0/+6
* Added tnc/tnccs-20-fail-init and tnc/tnccs-20-fail-resp scenariosAndreas Steffen2015-03-2738-8/+582
* Version bump to 5.3.0Andreas Steffen2015-03-271-1/+1
* Fixed PB-TNC error handlingAndreas Steffen2015-03-274-35/+32
* Added configurations for 3.18 and 3.19 KMV guest kernelsAndreas Steffen2015-03-272-0/+4346
* Fixed strongswan.conf man page entry of imc-attestationAndreas Steffen2015-03-272-18/+18
* Added tnc/tnccs-20-pt-tls scenarioAndreas Steffen2015-03-2724-5/+114
* cmac: Reset state before doing set_key()Martin Willi2015-03-271-0/+3
* af-alg: Reset hmac/xcbc state before doing set_key()Martin Willi2015-03-272-0/+2
* xcbc: Reset XCBC state in set_key()Martin Willi2015-03-271-0/+4
* hmac: Reset the underlying hasher before doing set_key() with longer keysMartin Willi2015-03-271-1/+2
* crypto-tester: Test set_key() after a doing a partial append on prf/signersMartin Willi2015-03-271-2/+20
* stroke: Properly parse bliss key strength in public key constraintTobias Brunner2015-03-251-1/+1
* eap-tnc: Free eap-tnc object if IKE_SA not found to get IPsTobias Brunner2015-03-251-0/+1
* tnccs-20: Fix error handling in build()Tobias Brunner2015-03-251-9/+5
* android: Add messages/ita directory to tnccs-20 pluginTobias Brunner2015-03-251-1/+1
* android: Sync libstrongswan Makefile.am and Android.mkTobias Brunner2015-03-251-0/+1
* libtnccs: Set apidoc category to libtnccs and move pluginsTobias Brunner2015-03-2510-11/+14
* libtnccs: Fix apidoc category for split IF-TNCCS 2.0 header filesTobias Brunner2015-03-253-5/+5
* Fixed some typos, courtesy of codespellTobias Brunner2015-03-253-3/+3
* kernel-netlink: Copy current usage stats to new SA in update_sa()Tobias Brunner2015-03-251-6/+34
* child-sa: Add a new state to track rekeyed IKEv1 CHILD_SAsTobias Brunner2015-03-257-5/+15
* ikev1: Inverse check when applying received KE value during Quick Mode5.3.0rc1Martin Willi2015-03-241-1/+1
* Version bump to 5.3.0rc1Andreas Steffen2015-03-231-1/+1
* testing: added tnc/tnccs-20-mutual scenarioAndreas Steffen2015-03-2311-0/+151
* Implemented PB-TNC mutual half-duplex protocolAndreas Steffen2015-03-236-35/+143
* Optionally announce PB-TNC mutual protocol capabilityAndreas Steffen2015-03-2311-13/+428
* Split IF-TNCCS 2.0 protocol processing into separate TNC client and server ha...Andreas Steffen2015-03-239-799/+1746
* Merge branch 'dh-checks'Martin Willi2015-03-2334-253/+465
|\
| * encoding: Remove DH public value verification from KE payloadMartin Willi2015-03-231-73/+0
| * diffie-hellman: Verify public DH values in backendsMartin Willi2015-03-237-1/+107
| * diffie-hellman: Add a bool return value to set_other_public_value()Martin Willi2015-03-2319-55/+123
| * diffie-hellman: Add a bool return value to get_my_public_value()Martin Willi2015-03-2323-39/+87
| * libimcv: Allow pts_t.set_peer_public_value() to failMartin Willi2015-03-234-7/+11
| * libimcv: Allow pts_t.get_my_public_value() to failMartin Willi2015-03-234-4/+14
| * encoding: Allow ke_payload_create_from_diffie_hellman() to failMartin Willi2015-03-235-13/+59
| * diffie-hellman: Use bool instead of status_t as get_shared_secret() return valueMartin Willi2015-03-2318-43/+41
| * load-tester: Migrate NULL DH implementation to INIT/METHOD macrosMartin Willi2015-03-231-21/+26
|/
* ikev1: Make sure SPIs in an IKEv1 DELETE payload match the current SATobias Brunner2015-03-231-0/+39
* encoding: Add getter for IKE SPIs in IKEv1 DELETE payloadsTobias Brunner2015-03-232-0/+25
* pki: Choose default digest based on the signature keyTobias Brunner2015-03-2312-20/+69
* pki: Use SHA-256 as default for signaturesTobias Brunner2015-03-2310-55/+15
* trap-manager: Add option to ignore traffic selectors from acquire eventsTobias Brunner2015-03-232-1/+19
* unit-tests: Fix settings test after merging multi-line stringsTobias Brunner2015-03-231-2/+2
* swanctl: Append /ESN to proposal for a CHILD_SA using Extended Sequence NumbersMartin Willi2015-03-231-1/+1
* unit-tests: Depend on SHA1/SHA256 features for mgf1 test casesMartin Willi2015-03-232-5/+16
* man: More accurately describe features of the new parser in ipsec.conf(5)Tobias Brunner2015-03-201-46/+34