aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
| * utils: Use chunk_equals_const() for all cryptographic purposesMartin Willi2015-04-1423-38/+33
| * utils: Add a constant time chunk_equals() variant for cryptographic purposesMartin Willi2015-04-143-1/+87
| * utils: Use memeq_const() for all cryptographic purposesMartin Willi2015-04-1412-22/+14
| * utils: Add a constant time memeq() variant for cryptographic purposesMartin Willi2015-04-144-1/+79
| * scripts: Add a tool that tries to guess MAC/ICV values using validation timesMartin Willi2015-04-143-1/+369
|/
* Merge branch 'cpu-features'Martin Willi2015-04-136-134/+244
|\
| * rdrand: Reuse CPU feature detection to check for RDRAND instructionsMartin Willi2015-04-131-51/+4
| * padlock: Reuse common CPU feature detection to check for Padlock featuresMartin Willi2015-04-131-80/+17
| * cpu-feature: Support Via Padlock security featuresMartin Willi2015-04-132-0/+56
| * cpu-feature: Add a common class to query available CPU featuresMartin Willi2015-04-134-3/+167
|/
* sqlite: Use our locking mechanism also when sqlite3_threadsafe() returns 0Martin Willi2015-04-131-7/+20
* sqlite: Show SQLite library version and thread safety flag during startupMartin Willi2015-04-131-1/+8
* vici: Defer read/write error reporting after connection entry has been releasedMartin Willi2015-04-131-12/+34
* aead: Create AEAD using traditional transforms with an explicit IV generatorMartin Willi2015-04-135-12/+34
* iv-gen: Add a generic constructor to create an IV gen from an algorithmMartin Willi2015-04-134-2/+71
* openssl: Don't pre-initialize OpenSSL HMAC with an empty keyMartin Willi2015-04-131-6/+16
* thread: Remove unneeded thread startup synchronizationMartin Willi2015-04-131-13/+4
* libsimaka: Link against Winsock2 on WindowsMartin Willi2015-04-131-0/+4
* fips-prf: Remove superfluous <arpa/inet.h> includeMartin Willi2015-04-131-2/+0
* kernel-netlink: Fix GCC error about uninitialized variable useMartin Willi2015-04-081-1/+1
* asn1: Undefine TIME_UTC, which is used by C11Martin Willi2015-04-081-0/+4
* Wipe auxiliary key store5.3.0Andreas Steffen2015-03-281-1/+1
* crypto-tester: Explicitly exclude FIPS-PRF from append mode testsMartin Willi2015-03-281-8/+11
* fips-prf: Fail when trying to use append mode on FIPS-PRFMartin Willi2015-03-281-1/+6
* Added PB-TNC test options to strongswan.conf man pageAndreas Steffen2015-03-271-0/+6
* Added tnc/tnccs-20-fail-init and tnc/tnccs-20-fail-resp scenariosAndreas Steffen2015-03-2738-8/+582
* Version bump to 5.3.0Andreas Steffen2015-03-271-1/+1
* Fixed PB-TNC error handlingAndreas Steffen2015-03-274-35/+32
* Added configurations for 3.18 and 3.19 KMV guest kernelsAndreas Steffen2015-03-272-0/+4346
* Fixed strongswan.conf man page entry of imc-attestationAndreas Steffen2015-03-272-18/+18
* Added tnc/tnccs-20-pt-tls scenarioAndreas Steffen2015-03-2724-5/+114
* cmac: Reset state before doing set_key()Martin Willi2015-03-271-0/+3
* af-alg: Reset hmac/xcbc state before doing set_key()Martin Willi2015-03-272-0/+2
* xcbc: Reset XCBC state in set_key()Martin Willi2015-03-271-0/+4
* hmac: Reset the underlying hasher before doing set_key() with longer keysMartin Willi2015-03-271-1/+2
* crypto-tester: Test set_key() after a doing a partial append on prf/signersMartin Willi2015-03-271-2/+20
* stroke: Properly parse bliss key strength in public key constraintTobias Brunner2015-03-251-1/+1
* eap-tnc: Free eap-tnc object if IKE_SA not found to get IPsTobias Brunner2015-03-251-0/+1
* tnccs-20: Fix error handling in build()Tobias Brunner2015-03-251-9/+5
* android: Add messages/ita directory to tnccs-20 pluginTobias Brunner2015-03-251-1/+1
* android: Sync libstrongswan Makefile.am and Android.mkTobias Brunner2015-03-251-0/+1
* libtnccs: Set apidoc category to libtnccs and move pluginsTobias Brunner2015-03-2510-11/+14
* libtnccs: Fix apidoc category for split IF-TNCCS 2.0 header filesTobias Brunner2015-03-253-5/+5
* Fixed some typos, courtesy of codespellTobias Brunner2015-03-253-3/+3
* kernel-netlink: Copy current usage stats to new SA in update_sa()Tobias Brunner2015-03-251-6/+34
* child-sa: Add a new state to track rekeyed IKEv1 CHILD_SAsTobias Brunner2015-03-257-5/+15
* ikev1: Inverse check when applying received KE value during Quick Mode5.3.0rc1Martin Willi2015-03-241-1/+1
* Version bump to 5.3.0rc1Andreas Steffen2015-03-231-1/+1
* testing: added tnc/tnccs-20-mutual scenarioAndreas Steffen2015-03-2311-0/+151
* Implemented PB-TNC mutual half-duplex protocolAndreas Steffen2015-03-236-35/+143