aboutsummaryrefslogtreecommitdiffstats
path: root/src/charon/plugins
Commit message (Collapse)AuthorAgeFilesLines
...
* fixed the strongswan.conf pathAndreas Steffen2008-05-221-1/+3
|
* implement basic listing of attribute certificatesAndreas Steffen2008-05-222-9/+82
|
* suppress listing of integrity algorithm if it is undefinedAndreas Steffen2008-05-172-7/+13
|
* loading default modules depending on configure optionsMartin Willi2008-05-162-3/+3
|
* plugin load configuration in strongswan.confMartin Willi2008-05-1512-38/+39
| | | | | | some components accept a "component.load" option with a space separated list of plugins to load libcharon- plugins are now handled the same way as libstrongswan- plugins
* static leases use 0, not NULL timeoutMartin Willi2008-05-153-4/+4
| | | | fixed static leases
* prototype of mediation client database pluginMartin Willi2008-05-148-0/+867
|
* handle ID_KEY_ID as a ID_PUBKEY_SHA1 for authenticationMartin Willi2008-05-141-2/+10
|
* fixed "pool --purge" on mysqlMartin Willi2008-05-131-1/+1
|
* fixed lookup for expired leasesMartin Willi2008-05-131-3/+9
| | | | initializing database if in inconsistent state
* fixed typosAndreas Steffen2008-05-111-1/+1
|
* added missing ipcomp DB type definitionAndreas Steffen2008-05-111-1/+1
|
* ported IP pool to mysqlMartin Willi2008-05-094-44/+74
|
* usable prototype of "ipsec pool" toolMartin Willi2008-05-091-24/+93
|
* correctly reassigning valid leasesMartin Willi2008-05-091-1/+2
|
* IPComp for IKEv2Tobias Brunner2008-05-084-6/+8
|
* implemented append mode for xcbc, testcaseMartin Willi2008-05-081-1/+60
|
* moved RAW public key support to a separate plugin (pubkey)Martin Willi2008-05-084-268/+11
|
* renamed med_db plugin to medsrv, as we will introduce an additional medcli ↵Martin Willi2008-05-0812-110/+110
| | | | client plugin
* replaced --with-gid/uid by --with-group/user Martin Willi2008-05-082-2/+2
| | | | | using named users, groups fixed capability dropping in pluto
* prototype of sql pool administration utilityMartin Willi2008-05-072-1/+439
|
* providing medation configuration through med_db pluginMartin Willi2008-05-064-1/+215
|
* implemented XCBC algorithms (signer, prf) for IKE on top of a crypterMartin Willi2008-04-302-1/+242
| | | | | | supporting ike=...-aesxcbc-... in ipsec.conf added AUTH_AES_XCBC_96 and PRF_AES128_CBC to default IKE proposal AES XCBC testcase
* supporting multiple comma seperated subnets in left/rightsubnet definitionMartin Willi2008-04-252-30/+56
| | | | | e.g. leftsubnet=10.2.0.0/16,10.4.0.0/16
* added _GNU_SOURCE and limits.h to build against glibc-2.8Martin Willi2008-04-241-0/+1
|
* added missing base64 chunk testMartin Willi2008-04-241-0/+84
|
* replaced freeswan ttodata by own chunk_{to|from}_{hex|base64} functionsMartin Willi2008-04-244-26/+25
|
* fixed AES-128 testMartin Willi2008-04-221-2/+2
|
* added AES-128 unit testMartin Willi2008-04-223-2/+172
|
* Hash and URL cosmeticsAndreas Steffen2008-04-181-8/+8
|
* sql pool prototypeMartin Willi2008-04-181-33/+87
|
* support for hash and URL encoded certificate payloads in charonTobias Brunner2008-04-185-17/+127
|
* changed logging of crl writing to old styleAndreas Steffen2008-04-171-4/+4
|
* fixed compiler warningMartin Willi2008-04-176-2/+331
|
* respecting ipsec.conf cachecrls= optionMartin Willi2008-04-173-1/+37
|
* caching of CRLs to /etc/ipsec.d/crls Martin Willi2008-04-171-10/+41
|
* added missing credential_set method to stroke_caMartin Willi2008-04-171-0/+1
|
* extended credential_set_t interface by a cache_cert() methodMartin Willi2008-04-173-1/+19
| | | | allows persistent or in-memory caching of fetched certificates
* adding rightsourceip=%poolname properly to peer configMartin Willi2008-04-171-1/+2
|
* disable DPD if dpddelay is set but dpdaction=noneMartin Willi2008-04-161-0/+5
|
* updated sql plugin to respect config changesMartin Willi2008-04-153-32/+50
|
* disabled SQL logging by default, as tests scenarios do not have a logging tableMartin Willi2008-04-151-1/+1
|
* fixed build of smp pluginMartin Willi2008-04-151-5/+5
|
* added API for random number generators, served through credential factoryMartin Willi2008-04-154-24/+20
| | | | ported randomizer_t to a rng_t on top of /dev/(u)random (plugin random)
* implemented IKE_SA uniqueness using ipsec.conf uniqueids paramaterMartin Willi2008-04-142-6/+20
| | | | additionally supports a "keep" value to keep the old IKE_SA
* ike_sa_manager enumerable, not iterableMartin Willi2008-04-145-30/+41
|
* added close_action as a seperate config option to dpd_actionMartin Willi2008-04-142-6/+7
|
* fixed rightsourceip=%config scenariosMartin Willi2008-04-142-40/+62
|
* using dpd actions to enforce connection stateMartin Willi2008-04-112-4/+17
| | | | dpd actions a per child-, not peer ike-sa
* implemented a simple attribute provider for strokeMartin Willi2008-04-094-0/+398
|