aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
| * vici: Optionally check limits when initiating connectionsTobias Brunner2015-08-212-1/+7
| * vici: Add get_bool() convenience getter for VICI messagesTobias Brunner2015-08-213-0/+94
| * controller: Optionally adhere to init limits also when initiating IKE_SAsTobias Brunner2015-08-2115-20/+71
| * ike: Also track initiating IKE_SAs as half-openTobias Brunner2015-08-211-1/+0
|/
* stroke: Allow %any as local addressTobias Brunner2015-08-211-3/+7
* stroke: Add an option to disable side-swapping of configuration optionsTobias Brunner2015-08-212-33/+51
* ikev1: Assign different job priorities for inbound IKEv1 messagesTobias Brunner2015-08-211-2/+12
* testing: Fix typo in p2pnat/behind-same-nat scenarioTobias Brunner2015-08-211-2/+2
* child-rekey: Don't add a REKEY_SA notify if the child-create task is deleting...Tobias Brunner2015-08-211-6/+9
* child-create: Cache proposed IPsec protocolTobias Brunner2015-08-211-10/+13
* child-create: Don't attempt to delete the SA if we don't have all the informa...Tobias Brunner2015-08-211-8/+10
* child-rekey: Remove redundant migrate() call for child-create sub-taskTobias Brunner2015-08-211-2/+1
* child-create: Fix crash when retrying CHILD_SA rekeying due to a DH group mis...Tobias Brunner2015-08-211-0/+1
* auth-cfg: Don't enforce EAP_RADIUSTobias Brunner2015-08-211-1/+2
* testing: Add missing sim_files file to ikev2/rw-eap-sim-radius scenarioTobias Brunner2015-08-211-0/+3
* testing: alice is RADIUS server in the ikev2/rw-eap-sim-radius scenarioTobias Brunner2015-08-211-0/+4
* testing: Print triplets.dat files of clients in EAP-SIM scenariosTobias Brunner2015-08-214-0/+7
* Merge branch 'stroke-ca-sections'Tobias Brunner2015-08-207-168/+446
|\
| * stroke: Change how CA certificates are storedTobias Brunner2015-08-205-58/+285
| * stroke: Combine CA certificate load methodsTobias Brunner2015-08-201-82/+74
| * stroke: Atomically replace CA and AA certificates when reloading themTobias Brunner2015-08-201-34/+45
| * mem-cred: We don't need a write lock when looking for a certificateTobias Brunner2015-08-201-1/+1
| * mem-cred: Add a method to atomically replace all certificatesTobias Brunner2015-08-202-10/+58
|/
* ikev1: Fix handling of overlapping Quick Mode exchangesTobias Brunner2015-08-203-2/+70
* kernel-pfkey: Add support for AES-GCMTobias Brunner2015-08-201-3/+11
* auth-cfg: Don't enforce EAP_DYNAMICTobias Brunner2015-08-201-1/+2
* ikev2: Compare initiator flag again, partially reverts 17ec1c74deTobias Brunner2015-08-202-1/+5
* ikev2: Drop IKE_SA_INIT messages that don't have the initiator flag setTobias Brunner2015-08-201-1/+3
* ikev1: Pass current auth-cfg when looking for key to determine auth methodTobias Brunner2015-08-191-1/+1
* ikev2: Store outer EAP method used to authenticate remote peer in auth-cfgTobias Brunner2015-08-191-0/+9
* imc: get_default_pwd_status(), as it currently is, works on Windows tooTobias Brunner2015-08-191-8/+8
* ike: Use the original port when remote resolves to %anyTobias Brunner2015-08-191-1/+3
* testing: Add ikev2/trap-any scenarioTobias Brunner2015-08-1917-0/+181
* trap-manager: Enable auto=route with right=%any for transport mode connectionsTobias Brunner2015-08-191-27/+118
* Version bump to 5.3.3dr65.3.3dr6Andreas Steffen2015-08-191-1/+1
* Extend HCD attribute data for tnc/tnccs-20-hcd-eap scenarioAndreas Steffen2015-08-182-16/+45
* Added reason string support to HCD IMVAndreas Steffen2015-08-183-8/+88
* Fixed patches format delimited by CR/LFAndreas Steffen2015-08-186-76/+82
* Added imc-hcd attributes to strongswan.confAndreas Steffen2015-08-183-0/+75
* testing: Added tnc/tnccs-20-hcd-eap scenarioAndreas Steffen2015-08-1824-0/+674
* Use PWG HCD PA-TNC subtypes to transport HCD attributesAndreas Steffen2015-08-185-118/+276
* Add default password determination capability to os_infoAndreas Steffen2015-08-182-2/+18
* Reintroduced ietf_attr_fwd_enabled()Andreas Steffen2015-08-185-1/+319
* Defined PWG HCD PA-TNC subtypesAndreas Steffen2015-08-184-96/+217
* Added os_info support to HCD IMCAndreas Steffen2015-08-181-0/+14
* Subscribed Scanner IMC/IMV to IETF_FIREWALL PA subtypeAndreas Steffen2015-08-182-4/+4
* testing: enable HCD IMC and IMVAndreas Steffen2015-08-181-0/+2
* Implemented HCD IMC and IMVAndreas Steffen2015-08-1812-1/+1956
* Defined HCD PA subtype in PWG namespaceAndreas Steffen2015-08-182-2/+32
* Completed implementation of PWG HCD attributesAndreas Steffen2015-08-189-9/+567