aboutsummaryrefslogtreecommitdiffstats
path: root/man/strongswan.conf.5.in
Commit message (Collapse)AuthorAgeFilesLines
* Added an option to reload certificates from PKCS#11 tokens on SIGHUPTobias Brunner2012-10-181-0/+3
|
* Terminate unused resolver threads after a timeoutTobias Brunner2012-10-181-0/+6
|
* implemented os_info_t classAndreas Steffen2012-10-101-6/+6
|
* Added description for flush_auth_cfg and acct_port plus some minor editorial ↵Tobias Brunner2012-09-251-6/+16
| | | | changes
* Documentation about some time values clarifiedTobias Brunner2012-09-241-2/+2
|
* Added an option to configure the interface on which virtual IP addresses are ↵Tobias Brunner2012-09-211-0/+4
| | | | installed
* Added options and a lookup function that will allow filtering of network ↵Tobias Brunner2012-09-211-1/+9
| | | | interfaces
* Option added to enforce a configured destination address for DHCP packetsTobias Brunner2012-09-131-0/+8
|
* Updates to strongswan.conf(5) man page (added several missing options)Tobias Brunner2012-09-121-39/+82
|
* Add random plugin options to strongswan.conf.5Martin Willi2012-09-101-0/+6
|
* added libimcv.assessment_result to strongswan.conf man pageAndreas Steffen2012-09-091-0/+3
|
* Documentation for eap-dynamic addedTobias Brunner2012-08-311-0/+10
|
* Merge branch 'android-ndk'Tobias Brunner2012-08-131-1/+16
|\ | | | | | | | | | | | | | | | | | | | | | | This branch comes with some preliminary changes for the user-land IPsec implementation and the Android App. One important change is that the UDP ports used by the socket-default plugin were made configurable (either via ./configure or strongswan.conf). Also, the plugin does randomly allocate a port if it is configured to 0, which is useful for client implementations. A consequence of these changes is that the local UDP port used when creating ike_cfg_t objects has to be fetched from the socket.
| * Added option to prevent socket-default from setting the source address on ↵Tobias Brunner2012-08-081-0/+3
| | | | | | | | outbound packets
| * socket-default plugin allocates random ports if configured to 0.Tobias Brunner2012-08-081-0/+9
| | | | | | | | Also added strongswan.conf options to change the ports.
| * Added ESP log group for libipsec log messages.Tobias Brunner2012-08-081-0/+3
| |
| * Moved Android specific logger to separate plugin.Tobias Brunner2012-08-081-1/+1
| | | | | | | | | | | | This is mainly because the other parts of the existing android plugin can not be built in the NDK (access to keystore and system properties are not part of the stable NDK libraries).
* | Documentation fixes regarding xauth-pam/eap-gtc pluginsTobias Brunner2012-08-111-3/+5
| |
* | make max_message_size parameter consistent with similar optionsAndreas Steffen2012-08-091-2/+2
|/
* added PA-TNC max_msg_len option to man pageAndreas Steffen2012-07-131-0/+6
|
* make maximum PB-TNC batch size configurableAndreas Steffen2012-07-111-0/+3
|
* added charon.plugins.eap-tnc.protocol optionAndreas Steffen2012-07-111-0/+3
|
* EAP-TNC does not support fragmentationAndreas Steffen2012-07-111-6/+0
|
* configure size of ITA Dummy PA-TNC attributeAndreas Steffen2012-07-111-0/+3
|
* max_message_count = 0 disables limitAndreas Steffen2012-07-111-4/+4
|
* added charon.cisco_unity to strongswan.conf.5 man pageAndreas Steffen2012-06-251-0/+3
|
* Retry IKE_SA initiation if DNS resolution failed.Tobias Brunner2012-05-301-0/+4
| | | | | This is disabled by default and can be enabled with the charon.retry_initiate_interval option in strongswan.conf.
* Documented strongswan.conf options for radattr plugin.Tobias Brunner2012-05-011-1/+8
|
* Option added to set identifier for syslog(3) logging.Tobias Brunner2012-04-201-0/+8
| | | | This identifier is added to each log message by syslog.
* Make resolvconf interface prefix configurable.Tobias Brunner2012-03-271-0/+6
|
* added the strongswan.conf options of the tnc-pdp pluginAndreas Steffen2012-03-161-0/+12
|
* completed imc/imv-attestation settingsAndreas Steffen2012-02-071-1/+20
|
* Added an option to load CA certificates without CA basic constraint.Tobias Brunner2012-02-011-0/+4
| | | | | | Enabling this option treats all certificates in ipsec.d/cacerts and ipsec.conf ca sections as CA certificates even if they do not contain a CA basic constraint.
* Added RADIUS accounting option to strongswan.conf manualMartin Willi2012-02-011-0/+3
|
* Make number of concurrently handled stroke messages configurable.Tobias Brunner2011-12-291-0/+3
|
* Added ASN debug group to log low-level encoding/decoding (ASN.1, X.509).Tobias Brunner2011-12-161-0/+3
| | | | | This will allow us to remove quite some clutter from the LIB debug group for higher debug levels.
* added libimcv.plugins.imc-attestation.aik_blob parameterAndreas Steffen2011-12-111-0/+3
|
* upgraded Test IMC/IMV pair to fully support multple IMC IDsAndreas Steffen2011-12-111-0/+3
|
* pkcs11: Documented use_pubkey option in strongswan.conf(5).Tobias Brunner2011-11-031-2/+7
|
* pkcs11: Documented new options in strongswan.conf(5).Tobias Brunner2011-10-311-0/+9
|
* refactored TNC frameworkAndreas Steffen2011-10-251-6/+4
|
* starter.load documented in strongswan.conf(5) man page.Tobias Brunner2011-10-211-0/+3
|
* PTS log group documented in man pages.Tobias Brunner2011-09-121-1/+4
|
* added strongswan.conf attributes for attestation IMC/IMVAndreas Steffen2011-09-081-11/+32
|
* added tnc-ifmap.ssl_passphrase to strongswan.confAndreas Steffen2011-09-021-0/+3
|
* updated strongswan.confAndreas Steffen2011-08-121-3/+3
|
* added tnc-ifmap attributes to manpageAndreas Steffen2011-08-101-0/+15
|
* Added tnc, imc, imv debug message groups to man page.Tobias Brunner2011-07-261-1/+10
|
* Documentation about job priorities added to man page.Tobias Brunner2011-07-211-1/+159
| | | | Also includes docs about IKE_SA_INIT dropping.
* Added missing load-tester options to man page.Tobias Brunner2011-07-181-0/+18
|