Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | testing: Serve images in testresults via mod_rewrite and not a symlink | Tobias Brunner | 2016-08-29 | 3 | -1/+4 | |
| | ||||||
* | conf: Extend description of charon.plugins.kernel-netlink.xfrm_acq_expires | Tobias Brunner | 2016-08-29 | 1 | -5/+9 | |
| | ||||||
* | proposal: Use proper list to get function pointer when adding custom parser | Thomas Egerer | 2016-08-29 | 1 | -1/+1 | |
| | | | | Signed-off-by: Thomas Egerer <thomas.egerer@secunet.com> | |||||
* | android: Add missing xof.c file | Tobias Brunner | 2016-08-29 | 1 | -0/+1 | |
| | | | | Fixes #2093. | |||||
* | xof: Add header to dev headers | Tobias Brunner | 2016-08-29 | 1 | -1/+2 | |
| | ||||||
* | Version bump to 5.5.1dr25.5.1dr2 | Andreas Steffen | 2016-08-26 | 2 | -3/+3 | |
| | ||||||
* | configure: Improve check for built-in __atomic_* functions | Tobias Brunner | 2016-08-26 | 1 | -2/+13 | |
| | | | | | | | | | | | | | | With AC_SEARCH_LIBS() we don't succeed if the searched function is a built-in as the check uses the wrong signature so the built-in will not be applied (the warning issued by GCC is "conflicting types for built-in function '...'"). So even if not required, libatomic will be linked if it is found, which could be problematic if compiling on a separate host and the target host does not have libatomic installed. Also, some tests showed that it's more likely that __atomic_and_fetch() requires linking libatomic than __atomic_load_n() does. References #1533. | |||||
* | travis: Add a workaround for a bug regarding libtool installed via Homebrew | Tobias Brunner | 2016-08-25 | 1 | -0/+2 | |
| | ||||||
* | ikev1: Don't require AH mapping for integrity algorithm when generating proposal | Thomas Egerer | 2016-08-25 | 1 | -6/+9 | |
| | | | | Signed-off-by: Thomas Egerer <thomas.egerer@secunet.com> | |||||
* | libtpmtss: TCTI finalization call changed | Andreas Steffen | 2016-08-25 | 1 | -1/+2 | |
| | ||||||
* | conf: aikpub2.opt added to Makefile.am | Andreas Steffen | 2016-08-25 | 1 | -0/+1 | |
| | ||||||
* | pki: Allow to load CRLs from files in --verify | Tobias Brunner | 2016-08-25 | 2 | -3/+21 | |
| | ||||||
* | ikev1: Ignore the last two bytes of the Cisco Unity vendor ID | Tobias Brunner | 2016-08-24 | 1 | -0/+3 | |
| | | | | | | | | | These seem to indicate the major and minor version of the protocol, like e.g. for the DPD vendor ID. Some implementations seem to send versions other than 1.0 so we just ignore these for now when checking for known vendor IDs. Fixes #2088. | |||||
* | utils: Fix definition of BYTE_ORDER with MinGW | Tobias Brunner | 2016-08-24 | 2 | -2/+6 | |
| | ||||||
* | ikev1: Accept more than one certificate payload in aggressive mode | Tobias Brunner | 2016-08-17 | 1 | -2/+2 | |
| | | | | Fixes #2085. | |||||
* | testing: Virtual IPs went missing | Andreas Steffen | 2016-08-16 | 5 | -15/+17 | |
| | ||||||
* | unit-tests: Removed unused variable | Andreas Steffen | 2016-08-11 | 1 | -2/+0 | |
| | ||||||
* | Version bump to 5.5.1dr15.5.1dr1 | Andreas Steffen | 2016-08-10 | 3 | -4/+2464 | |
| | ||||||
* | Merge branch 'newhope' | Andreas Steffen | 2016-08-10 | 137 | -925/+6559 | |
|\ | ||||||
| * | testing: Added swanctl/rw-newhope-bliss scenario | Andreas Steffen | 2016-08-10 | 20 | -0/+212 | |
| | | ||||||
| * | testing: Add chapoly, ntru and newhope plugins to crypto and integrity tests | Andreas Steffen | 2016-08-10 | 3 | -3/+3 | |
| | | ||||||
| * | testing: Added ikev2/rw-newhope-bliss scenario | Andreas Steffen | 2016-08-10 | 24 | -1/+195 | |
| | | ||||||
| * | unit-tests: Created newhope unit-tests | Andreas Steffen | 2016-08-10 | 10 | -7/+1339 | |
| | | ||||||
| * | Created newhope plugin implementing the New Hope key exchange algorithm | Andreas Steffen | 2016-08-10 | 15 | -2/+1353 | |
| | | ||||||
| * | xof: Added ChaCha20 stream as XOF | Andreas Steffen | 2016-08-06 | 9 | -3/+311 | |
| | | ||||||
| * | utils: Defined uletoh16() and htole16() | Andreas Steffen | 2016-08-06 | 1 | -0/+42 | |
| | | ||||||
| * | integrity-test: Added ntru_param_sets to read-only segment | Andreas Steffen | 2016-07-29 | 7 | -36/+96 | |
| | | ||||||
| * | integrity-test: Added bliss_param_sets to read-only segment | Andreas Steffen | 2016-07-29 | 14 | -63/+68 | |
| | | ||||||
| * | integrity-test: check code and ro segments of libnttfft | Andreas Steffen | 2016-07-29 | 8 | -32/+51 | |
| | | ||||||
| * | Created libnttfft | Andreas Steffen | 2016-07-29 | 20 | -121/+261 | |
| | | | | | | | | | | This makes Number Theoretic Transforms (NTT) based on the efficient Fast-Fourier-Transform (FFT) available to multiple plugins. | |||||
| * | Share twiddle factors table between 512 and 1024 point FFT | Andreas Steffen | 2016-07-29 | 3 | -134/+14 | |
| | | ||||||
| * | Implemented FFT with n = 1024 and q = 11289 using Montgomery arithmetic | Andreas Steffen | 2016-07-29 | 3 | -8/+495 | |
| | | ||||||
| * | bliss: Implemented FFT with fast Montgomery arithmetic | Andreas Steffen | 2016-07-29 | 8 | -102/+294 | |
| | | ||||||
| * | xof: Implemented SHAKE128 and SHAKE256 Extended Output Functions | Andreas Steffen | 2016-07-29 | 11 | -415/+1293 | |
| | | ||||||
| * | xof: Defined Extended Output Functions | Andreas Steffen | 2016-07-29 | 14 | -5/+539 | |
|/ | ||||||
* | vici: Increased various string buffers to BUF_LEN (512 bytes) | Andreas Steffen | 2016-07-29 | 2 | -5/+5 | |
| | ||||||
* | integrity-test: Added charon-systemd | Andreas Steffen | 2016-07-29 | 1 | -0/+4 | |
| | ||||||
* | Added SHA-3 signature OIDs | Andreas Steffen | 2016-07-26 | 1 | -1/+10 | |
| | ||||||
* | libcharon: Add exchange_tests to .gitignore | Tobias Brunner | 2016-07-25 | 1 | -0/+1 | |
| | ||||||
* | unit-tests: Decreased loop count of FFT speed test to 10'000 | Andreas Steffen | 2016-07-22 | 1 | -1/+1 | |
| | ||||||
* | unit-tests: Added bliss_fft_speed test | Andreas Steffen | 2016-07-22 | 1 | -1/+42 | |
| | ||||||
* | Merge branch 'tss2-sapi' | Andreas Steffen | 2016-07-20 | 4 | -7/+11 | |
|\ | ||||||
| * | libtpmtss: Use pkconfig to configure TSS 2.0 includes and libraries | Andreas Steffen | 2016-07-20 | 4 | -7/+11 | |
|/ | ||||||
* | ike1: Flush active queue when queueing a delete of the IKE_SA | Tobias Brunner | 2016-07-19 | 1 | -0/+3 | |
| | | | | | | | | | | | By aborting the active task we don't have to wait for potential retransmits if the other peer does not respond to the current task. Since IKEv1 has no sequential message IDs and INFORMATIONALs are no real exchanges this should not be a problem. Fixes #1537 References #429, #1410 Closes strongswan/strongswan#48 | |||||
* | Version bump to 5.5.05.5.0 | Andreas Steffen | 2016-07-13 | 2 | -2/+2 | |
| | ||||||
* | NEWS: Some updates for the 5.5.0 release | Tobias Brunner | 2016-07-11 | 1 | -4/+28 | |
| | ||||||
* | Fixed some typos, courtesy of codespell | Tobias Brunner | 2016-07-04 | 5 | -5/+5 | |
| | ||||||
* | testing: Remove obsolete openssl-fips recipe | Tobias Brunner | 2016-07-04 | 1 | -23/+0 | |
| | | | | | | This was only required when we initially started and OpenSSL was built from sources, which was changed with b97dd59ba841 ("install FIPS-aware OpenSSL Debian packages"). | |||||
* | Revert "testing: Only load selected plugins in swanctl" | Tobias Brunner | 2016-07-01 | 1 | -4/+0 | |
| | | | | | | | This reverts commit dee01d019ba9743b2784b417155601d10c173a66. Thanks to 505c31870162 ("leak-detective: Try to properly free allocations after deinitialization") this is not required anymore. | |||||
* | Version bump to 5.5.0rc15.5.0rc1 | Andreas Steffen | 2016-06-30 | 2 | -1/+7 | |
| |