aboutsummaryrefslogtreecommitdiffstats
path: root/src/charon/config/peer_cfg.c
Commit message (Collapse)AuthorAgeFilesLines
* Moving charon to libcharon.Tobias Brunner2010-03-191-699/+0
|
* Separated the public interfaces of the threading primitives.Tobias Brunner2009-12-231-1/+1
|
* Moved mutex.c to a separate folder in order to cleanly wrap other threading ↵Tobias Brunner2009-12-231-1/+1
| | | | primitives (and utils/mutex.h is now threading.h).
* removed trailing spaces ([[:space:]]+$)Martin Willi2009-09-041-40/+40
|
* Fixed some typos; whitespace cleanup.Tobias Brunner2009-09-021-4/+4
|
* OpenSolaris defines MUTEX_DEFAULT therefore we rename the members of the ↵Tobias Brunner2009-08-141-1/+1
| | | | enums mutex/condvar/rwlock_type_t.
* child_cfg matching code prefers a config containing the first proposed TSMartin Willi2009-07-071-21/+47
|
* fixed remove_child_cfg(), use correct enumerator for remove_atMartin Willi2009-05-061-8/+37
|
* removing svn keyword $Id$ from all filesTobias Brunner2009-04-301-2/+0
|
* merged multi-auth branch back into trunkMartin Willi2009-04-141-48/+99
|
* preliminary support of Mobile IPv6Andreas Steffen2008-11-111-9/+30
|
* replaced most pthread_mutex/cond_t by wrapped mutex/condvar_t variantMartin Willi2008-11-051-9/+10
|
* ported parts of two-sim branchMartin Willi2008-08-221-49/+1
| | | | | | eap_identity parameter to exchange in eap_identity some auth_info/peer_cfg refactorings fixed some bugs, introduced new ones
* show authentication method in ipsec statusallAndreas Steffen2008-06-301-3/+3
|
* ECDSA with OpenSSLTobias Brunner2008-06-101-9/+21
|
* returning reference pointer on get_ref()Martin Willi2008-05-061-4/+4
|
* fixed peer config equality checkMartin Willi2008-04-181-1/+2
|
* implemented IKE_SA uniqueness using ipsec.conf uniqueids paramaterMartin Willi2008-04-141-1/+17
| | | | additionally supports a "keep" value to keep the old IKE_SA
* using dpd actions to enforce connection stateMartin Willi2008-04-111-33/+9
| | | | dpd actions a per child-, not peer ike-sa
* implementation of an CFG attribute framework, currently supporting virtual IPsMartin Willi2008-04-091-39/+21
| | | | | | updated ipsec.conf sourceip parameter to support CIDR notatation to serve from a pool %poolname to query a separate (database?) pool
* fixed two other memory leaksTobias Brunner2008-04-031-5/+1
|
* mediation extension adapted to the naming convention of the current version ↵Tobias Brunner2008-03-261-26/+26
| | | | of the draft. note: the external interface (config, autotools) has not yet been changed
* added equals() method to peer_cfg, ike_cfg, proposals, auth_infoMartin Willi2008-03-261-0/+48
| | | | | | allows easier merging of ipsec.conf connections replaced some iterators through enumerators made proposals algorithm_t private using enumerator
* merged the modularization branch (credentials) back to trunkMartin Willi2008-03-131-67/+46
|
* implemented Expanded EAP types to support vendor specific methodsMartin Willi2007-12-131-2/+10
|
* implemented RFC4478 (repeated authentication)Martin Willi2007-11-201-34/+58
| | | | | changed %V printf handler to take a time delta, %#V now takes two arguments
* experimental P2P-NAT-T for IKEv2 merged back from branchTobias Brunner2007-10-031-1/+66
|
* moved force_encap to ike_config, enables responder to enforce udp encapsulationMartin Willi2007-10-011-16/+1
| | | | fixed bugs in force_encap code
* implemented IKEv2 force_encap connection parameterMartin Willi2007-10-011-1/+16
| | | | | enforces UDP encapsulation by faking NAT detection payloads to hurdle restrictive firewalls
* peer_cfg now knows about group membershipsAndreas Steffen2007-09-131-6/+26
|
* added mobike=yes|no connection optionMartin Willi2007-08-291-2/+17
| | | | | | | yes: include mobike support notifies as initiator no: only enable mobike as responder when initiator supports it default: yes
* support for virtual IP definition on client side:Martin Willi2007-05-221-11/+20
| | | | | | | if leftsourceip is defined, it is requested. server may define rightsourceip=%config to accept any, or it may overwrite it using rightsourceip. if server does not return an IP, client enforces its configured leftsourceip.
* fixed DPD delay in peer_cfgMartin Willi2007-04-121-1/+1
|
* restructured file layoutMartin Willi2007-04-101-0/+470
new configuration structure: peer_cfg: configuration related to a peer (authenitcation, ...= ike_cfg: config to use for IKE setup (proposals) child_Cfg: config for CHILD_SA (proposals, traffic selectors) a peer_cfg has one ike_cfg and multiple child_cfg's stroke now uses fixed count of threads