index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
Commit message (
Expand
)
Author
Age
Files
Lines
*
Version bump to 5.5.2dr1
5.5.2dr1
Andreas Steffen
2016-10-30
3
-3
/
+10
*
Fixed in-place update of cached base and delta CRLs
Andreas Steffen
2016-10-30
1
-4
/
+4
*
Newer CRLs replace older versions of the CRL in the cache
Andreas Steffen
2016-10-26
1
-0
/
+39
*
connmark: Add CAP_NET_RAW to capabilities keep list
Tim Kent
2016-10-25
1
-0
/
+6
*
Version bump to 5.5.1
5.5.1
Andreas Steffen
2016-10-20
4
-3
/
+13
*
nm: Enable IKE fragmentation
Tobias Brunner
2016-10-20
1
-1
/
+1
*
Version bump to 5.5.1rc2
5.5.1rc2
Andreas Steffen
2016-10-18
2
-3
/
+3
*
testing: Renewed expired certificates
Andreas Steffen
2016-10-18
13
-140
/
+221
*
added XOF dependencies of bliss and ntru plugins
Andreas Steffen
2016-10-18
2
-4
/
+26
*
testing: enable MACsec in guest kernel
Andreas Steffen
2016-10-18
1
-1
/
+1
*
configure: Reorder mgf1 in list of crypto plugins
Tobias Brunner
2016-10-18
1
-1
/
+1
*
newhope: Fix Doxygen group name
Tobias Brunner
2016-10-14
1
-1
/
+1
*
libnttfft: Fix Doxygen group
Tobias Brunner
2016-10-14
1
-1
/
+3
*
Fixed some typos, courtesy of codespell
Tobias Brunner
2016-10-14
2
-3
/
+3
*
newhope: Properly release allocated arrays if RNG can't be created
Tobias Brunner
2016-10-14
1
-8
/
+8
*
nm: Add D-Bus policy to the distribution
Tobias Brunner
2016-10-14
1
-0
/
+2
*
nm: Version bump to 1.4.1
Tobias Brunner
2016-10-14
2
-1
/
+6
*
kernel-netlink: Fix get_route() interface determination
Christophe Gouault
2016-10-12
1
-2
/
+2
*
Version bump to 5.5.1rc1
5.5.1rc1
Andreas Steffen
2016-10-11
4
-4
/
+2491
*
Merge branch 'cache-crls'
Andreas Steffen
2016-10-11
26
-32
/
+342
|
\
|
*
Save both base and delta CRLs to disk
Andreas Steffen
2016-10-11
8
-11
/
+73
|
*
vici: strongswan.conf cache_crls = yes saves fetched CRLs to disk
Andreas Steffen
2016-10-11
20
-6
/
+213
|
*
mem-cred: Support storing a delta CRL together with its base
Tobias Brunner
2016-10-11
1
-8
/
+30
|
*
revocation: Cache valid CRL also if certificate is revoked
Tobias Brunner
2016-10-11
1
-10
/
+25
|
*
pki: Don't remove zero bytes in CRL serials anymore
Tobias Brunner
2016-10-11
1
-6
/
+7
|
*
pki: Use serial of base CRL for delta CRLs
Tobias Brunner
2016-10-11
1
-1
/
+4
|
/
*
openssl: Fix AES-GCM with BoringSSL
Tobias Brunner
2016-10-11
1
-3
/
+3
*
android: Identifiers for SHA2-base RSA signature schemes got renamed
Tobias Brunner
2016-10-11
1
-4
/
+4
*
android: MGF1 implementation was moved to a plugin
Tobias Brunner
2016-10-11
1
-2
/
+1
*
ldap: Fix crash in case of empty LDAP response for CRL fetch
Yannick CANN
2016-10-06
1
-2
/
+1
*
libimcv: Add Debian 8.6 to database
Tobias Brunner
2016-10-05
1
-0
/
+18
*
task-manager: Only trigger retransmit cleared alert if there was at least one...
Tobias Brunner
2016-10-05
2
-2
/
+2
*
Merge branch 'proposal-checks'
Tobias Brunner
2016-10-05
4
-43
/
+201
|
\
|
*
unit-tests: Enable optional logging in libcharon unit tests
Tobias Brunner
2016-10-05
1
-0
/
+17
|
*
unit-tests: Add more tests for proposal creation
Tobias Brunner
2016-10-05
1
-8
/
+62
|
*
proposal: Correctly add AES-GMAC for AH proposals
Tobias Brunner
2016-10-05
1
-0
/
+41
|
*
proposal: Enforce separate proposals for AEAD and classic encryption algorithms
Tobias Brunner
2016-10-05
1
-16
/
+22
|
*
proposal: Make sure there is a PRF defined in IKE proposals
Tobias Brunner
2016-10-05
1
-14
/
+34
|
*
proposal: Make DH groups mandatory in IKE proposals parsed from strings
Tobias Brunner
2016-10-05
2
-21
/
+40
|
*
ikev2: Respond with NO_PROPOSAL_CHOSEN if proposal without DH group was selected
Tobias Brunner
2016-10-05
1
-0
/
+1
|
/
*
testing: Remove ikev2/default-keys scenario
Tobias Brunner
2016-10-05
10
-156
/
+0
*
kernel-netlink: Consider RTA_SRC when looking for a source address
Tobias Brunner
2016-10-05
1
-52
/
+134
*
Merge branch 'priv-key-any'
Tobias Brunner
2016-10-05
25
-63
/
+301
|
\
|
*
swanctl: Add 'private' directory/section to load any type of private key
Tobias Brunner
2016-10-05
4
-5
/
+26
|
*
pki: Add generic 'priv' key type that loads any type of private key
Tobias Brunner
2016-10-05
12
-28
/
+59
|
*
openssl: Add a generic private key loader
Tobias Brunner
2016-10-05
7
-18
/
+129
|
*
pkcs1: Support building of KEY_ANY private keys
Tobias Brunner
2016-10-05
2
-5
/
+73
|
*
pki: Drop -priv suffix to specify private key types
Tobias Brunner
2016-10-05
4
-16
/
+23
|
/
*
ikev2: Only add NAT-D notifies to DPDs as initiator
Tobias Brunner
2016-10-04
1
-8
/
+15
*
pkcs11: Look for the CKA_ID of the cert if it doesn't match the subjectKeyId
Raphael Geissert
2016-10-04
1
-4
/
+152
[next]