* auth-cfg: Add RSA/PSS schemes for pubkey and rsa if enabled in strongswan.confTobias Brunner2017-11-081-0/+6
* man: Fix documentation of inbound mark behavior in ipsec.conf(5)Tobias Brunner2017-11-021-5/+5
* child-sa: Allow requesting different unique marks for in/outEyal Birger2017-08-071-1/+4
* stroke: Make 96-bit truncation for SHA-256 configurableTobias Brunner2017-05-261-0/+7
* Add an option to announce support for IKE fragmentation but not sending fragm...Tobias Brunner2017-05-231-6/+15
* man: Describe the tunneling of several subnets with IKEv1 in more detailNoel Kuntze2017-03-231-1/+3
* man: Add note about modeconfig having to matchNoel Kuntze2017-03-231-0/+1
* man: Describe what happens when a FQDN is specified in left or rightNoel Kuntze2017-03-201-0/+5
* starter: Enable IKE fragmentation by defaultTobias Brunner2016-10-041-4/+5
* man: Update description of the esp keywordTobias Brunner2016-08-311-8/+19
* man: Updated default proposals in ipsec.conf(5)Tobias Brunner2016-03-111-4/+4
* auth-cfg: Make IKE signature schemes configurableTobias Brunner2016-03-041-4/+9
* man: Update description of the actions performed for different dpdaction valuesTobias Brunner2015-11-181-7/+8
* man: Clarify identity parsing and identity type prefixesTobias Brunner2015-08-171-6/+58
* man: Clarification of ah keyword descriptionAdrian-Ken Rueegsegger2015-05-191-1/+1
* man: More accurately describe features of the new parser in ipsec.conf(5)Tobias Brunner2015-03-201-46/+34
* man: Add documentation about IKEv2 signature schemesTobias Brunner2015-03-041-0/+15
* man: Describe trust chain constraints configuration for EAP methodsMartin Willi2015-03-031-1/+3
* ipsec-types: Support the %unique mark valueMartin Willi2015-02-201-1/+3
* man: Document IKEv2 fragmentation in ipsec.conf(5)Tobias Brunner2015-02-101-4/+5
* stroke: Add support for address range definitions of in-memory poolsTobias Brunner2014-10-301-1/+3
* man: Document identification type prefixes in ipsec.conf(5)Martin Willi2014-10-301-2/+27
* man: Document where left|rightsigkey searches for public key filesTobias Brunner2014-07-141-2/+3
* man: Document replay_window ipsec.conf optionTobias Brunner2014-06-301-0/+9
* ike: Restart inactivity counter after doing a CHILD_SA rekeyMartin Willi2014-01-231-1/+3
* ipsec.conf.5: Note about ICMP[v6] message type/code addedTobias Brunner2013-10-171-0/+8
* ipsec.conf: Add a description for the new 'ah' keyword.Martin Willi2013-10-111-0/+41
* Build generated man pages via configure scriptTobias Brunner2013-09-131-1/+1
* man: add support for multiple addresses/ranges/subnets in ipsec.conf left=Martin Willi2013-09-041-3/+10
* man: update ipsec.conf modeconfig keywordMartin Willi2013-09-041-2/+1
* Fix various API doc issues and typosTobias Brunner2013-07-181-1/+1
* ipsec.conf.5: closeaction is now supported for IKEv1Tobias Brunner2013-07-171-2/+1
* stroke: Changed how proto/port are specified in left|rightsubnetTobias Brunner2013-06-281-6/+7
* man: update ipsec.conf.5, describing new proto/port definition within leftsubnetMartin Willi2013-06-191-24/+34
* Load any type (RSA/ECDSA) of public key via left|rightsigkeyTobias Brunner2013-05-071-4/+6
* left|rightrsasigkey accepts SSH keys but the key format has to be specified e...Tobias Brunner2013-05-071-3/+9
* Merge branch 'multi-cert'Martin Willi2013-03-011-0/+4
| * Add ipsec.conf.5 updates regarding multiple certificates in leftcertMartin Willi2013-01-181-0/+4
* | Merge branch 'opaque-ports'Martin Willi2013-03-011-0/+8
|\ \
| * | Document ipsec.conf leftprotoport extensions in manpageMartin Willi2013-02-211-0/+8
| |/
* / Add ikedscp documentation to ipsec.conf.5Martin Willi2013-02-061-0/+5
* Added an option that allows to force IKEv1 fragmentationTobias Brunner2013-01-121-4/+9
* Use a connection specific option to en-/disable IKEv1 fragmentationTobias Brunner2012-12-241-0/+10
* Updated ipsec.conf.5 regarding (CA) certificates loaded from smartcardsMartin Willi2012-10-241-5/+7
* Add leftcert ipsec.conf.5 documentation about smartcard certificatesMartin Willi2012-10-241-0/+12
* Add ipsec.conf.5 documentation for explicit PRFs in IKE proposalsMartin Willi2012-10-241-7/+17
* Update ipsec.conf.5, leftsubnet can handle multiple subnets in IKEv1 with UnityMartin Willi2012-09-181-2/+3
* Set AUTH_RULE_IDENTITY_LOOSE for rightid=%<identity>Tobias Brunner2012-09-181-0/+12
* Some updates to ipsec.conf(5) man pageTobias Brunner2012-09-121-49/+70
* Add uniqueids=never to ignore INITIAL_CONTACT notifiesTobias Brunner2012-09-101-9/+16