aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
...
| * signature-params: Optionally pass a specific salt value when signingTobias Brunner2017-11-081-0/+2
| * unit-tests: Warn if we skip RSA tests due to dependenciesTobias Brunner2017-11-081-0/+11
| * unit-tests: Add ability to issue a warning message for a test caseTobias Brunner2017-11-083-6/+116
| * mgf1: Add support for SHA-224/384 based MGF1Tobias Brunner2017-11-082-1/+11
| * xof: Add identifiers for MGF1 XOFs based on SHA-224/384Tobias Brunner2017-11-082-5/+13
| * gmp: Use helper to determine XOF typeTobias Brunner2017-11-082-28/+10
| * xof: Add helper to determine MGF1 XOF type from hash algorithmTobias Brunner2017-11-082-0/+38
| * gcrypt: Add support for RSA-PSS signaturesTobias Brunner2017-11-083-31/+127
| * gcrypt: Register supported RSA signature/verification schemesTobias Brunner2017-11-081-0/+16
| * configure: Enable mgf1 plugin if gmp plugin is enabledTobias Brunner2017-11-081-1/+1
| * gmp: Add support for RSASSA-PSS signature verificationTobias Brunner2017-11-082-2/+140
| * gmp: Add support for RSASSA-PSS signature creationTobias Brunner2017-11-082-0/+130
| * unit-tests: Add FIPS 186-4 RSASSA-PSS test vectorsTobias Brunner2017-11-081-0/+1629
| * unit-tests: Create and verify some RSA PSS signaturesTobias Brunner2017-11-081-3/+25
| * openssl: Add support for verifying RSASSA-PSS signaturesTobias Brunner2017-11-082-3/+142
| * openssl: Add support for creating RSASSA-PSS signaturesTobias Brunner2017-11-082-5/+132
| * openssl: Add helper to determine EVP_MD from hash_algorithm_tTobias Brunner2017-11-082-9/+27
| * unit-tests: Add FIPS 186-4 RSA test vectorsTobias Brunner2017-11-081-5/+2428
| * gcrypt: Determine missing RSA private key parametersTobias Brunner2017-11-081-4/+133
| * gmp: Determine missing RSA private key parametersTobias Brunner2017-11-081-4/+109
| * openssl: Add functions to determine missing RSA private key parametersTobias Brunner2017-11-081-9/+223
| * signature-params: Add functions to parse/build ASN.1 RSASSA-PSS paramsTobias Brunner2017-11-087-1/+421
| * hasher: Add function to determine length of hashesTobias Brunner2017-11-082-0/+46
| * asn1: Add function to generate an ASN.1 integer from an uint64_tTobias Brunner2017-11-083-6/+63
| * asn1: Add OID for MGF1Tobias Brunner2017-11-081-1/+1
| * signature-params: Add struct for RSASSA-PSS parametersTobias Brunner2017-11-082-0/+42
| * private-key: Add optional parameters argument to sign() methodTobias Brunner2017-11-0829-50/+50
| * public-key: Add optional parameters argument to verify() methodTobias Brunner2017-11-0828-46/+60
| * public-key: Add RSASSA-PSS signature scheme identifierTobias Brunner2017-11-083-0/+9
| * asn1: Add OID for RSASSA-PSSTobias Brunner2017-11-081-0/+1
|/
* ikev2: Don't use SHA-1 for RFC 7427 signature authenticationTobias Brunner2017-11-083-7/+5
* proposal: Remove MODP-1024 from default IKE proposalTobias Brunner2017-11-081-2/+2
* proposal: Remove MD5 from default IKE proposalTobias Brunner2017-11-081-2/+5
* proposal: Remove deprecated algorithms from default ESP and AH proposalsTobias Brunner2017-11-081-4/+0
* configure: Fix check for libtpmtss to build it only when neededMartin Willi2017-11-081-1/+1
* pool: Destroy enumerator before deleting existing poolTobias Brunner2017-11-081-4/+6
* kernel-pfkey: Support anti-replay windows > 2kTobias Brunner2017-11-081-1/+14
* kernel-pfkey: Don't include keys in SADB_UPDATE message to update IPs on FreeBSDTobias Brunner2017-11-081-0/+3
* Merge branch 'vici-counters'Tobias Brunner2017-11-0820-389/+1211
|\
| * swanctl: Add --counters commandTobias Brunner2017-11-083-1/+156
| * vici: Add 'get|reset-counters' commandsTobias Brunner2017-11-084-1/+191
| * counters: Move IKE event counter collection from stroke to a separate pluginTobias Brunner2017-11-0813-387/+864
|/
* systime-fix: Add timeout option to stop waiting for valid system timeTobias Brunner2017-11-082-10/+46
* android: Add log message if failed to retrieve user certificate encodingTobias Brunner2017-11-021-0/+1
* testing: Fix output matching of lease time in ipsec pool utilityTobias Brunner2017-11-021-2/+2
* shunt-mananger: Make outbound FWD shunt policies optionalTobias Brunner2017-11-021-6/+15
* ike: Do not send initial contact only for UNIQUE_NEVERThomas Egerer2017-11-023-4/+2
* pkcs11: Call C_Finalize() to cancel jobs waiting in C_WaitForSlotEvent()Tobias Brunner2017-11-021-9/+14
* pool: Make pool timeout configurable in other units than hoursTobias Brunner2017-11-022-11/+25
* utils: Add helper function to parse time spans from stringsTobias Brunner2017-11-024-42/+132