aboutsummaryrefslogtreecommitdiffstats
path: root/src/charon/plugins
Commit message (Collapse)AuthorAgeFilesLines
...
* ike_sa_manager enumerable, not iterableMartin Willi2008-04-145-30/+41
|
* added close_action as a seperate config option to dpd_actionMartin Willi2008-04-142-6/+7
|
* fixed rightsourceip=%config scenariosMartin Willi2008-04-142-40/+62
|
* using dpd actions to enforce connection stateMartin Willi2008-04-112-4/+17
| | | | dpd actions a per child-, not peer ike-sa
* implemented a simple attribute provider for strokeMartin Willi2008-04-094-0/+398
|
* implementation of an CFG attribute framework, currently supporting virtual IPsMartin Willi2008-04-091-8/+30
| | | | | | updated ipsec.conf sourceip parameter to support CIDR notatation to serve from a pool %poolname to query a separate (database?) pool
* use cert->equals() to filter out equal certificates in seperate instancesMartin Willi2008-04-071-1/+1
|
* cosmeticsAndreas Steffen2008-04-071-2/+2
|
* log shared secret with debug level 4Andreas Steffen2008-04-061-1/+1
|
* default is hostaccess=noAndreas Steffen2008-04-062-2/+2
|
* updated test data to use correct encoding dataMartin Willi2008-04-031-3/+4
|
* fixed med_db testMartin Willi2008-04-021-1/+1
|
* updated mediation database to public key authenticationMartin Willi2008-04-0210-62/+409
| | | | | | added mysql table definition, test data testcase
* fixed compile warningsMartin Willi2008-04-021-1/+0
|
* workaround for parsing IPv6 PSKs requires extract_last_token()Andreas Steffen2008-04-011-1/+1
|
* loading of subjectPublicKeyInfo wrapped keys using KEY_ANY (openssl format)Martin Willi2008-04-012-2/+44
| | | | testcase
* minimal stroke_list_ocsp() implementationAndreas Steffen2008-04-011-2/+23
|
* stroke_list groups certificates by issuerAndreas Steffen2008-04-011-7/+18
|
* put DN in double quotesAndreas Steffen2008-03-311-1/+1
|
* ipsec list suppresses duplicatesAndreas Steffen2008-03-311-19/+79
|
* output uptime in status in local timeAndreas Steffen2008-03-291-1/+1
|
* renamed xml plugin to smp to avoid confusionMartin Willi2008-03-286-30/+30
| | | | | | added some dependency checks to configure configure checks ClearSilver and fastcgi cleanups in the build system here and there
* changed external interface to the mediation extension.Tobias Brunner2008-03-271-3/+3
|
* reusing generic shared_key_t implementation in med_dbMartin Willi2008-03-271-55/+1
|
* implemented cert cache flushing, ipsec purgeocspMartin Willi2008-03-271-4/+6
|
* fixed plugin/stroke MakefileAndreas Steffen2008-03-261-1/+2
|
* mediation extension adapted to the naming convention of the current version ↵Tobias Brunner2008-03-262-16/+16
| | | | of the draft. note: the external interface (config, autotools) has not yet been changed
* added uptime statistics to statusallMartin Willi2008-03-261-0/+10
|
* fixed compile error if --enable-p2p is setMartin Willi2008-03-262-2/+2
|
* splitted stroke plugin to several files:Martin Willi2008-03-2618-3285/+4155
| | | | | | | | | | | socket: reads messages from socket, dispatching config: process add/del conn, serves configs through backend_t control: controlling of the daemon (up/down/route/...( cred: credential loading, serves creds through credential_set_t ca: ca sections from ipsec.conf, serves cdp's through credential_set_t list: log status information to stroke console (status/statusall/list*) shared_key: shared key implementation for keys read from ipsec.secrets plugin: registers stroke plugin and starts socket w/ thread
* certificate factory can load certs from fileAndreas Steffen2008-03-251-52/+54
|
* defined *_create_from_file() constructors in ↵Andreas Steffen2008-03-251-103/+60
| | | | libstrongswan/credentials/certificates
* modified debug textAndreas Steffen2008-03-201-1/+1
|
* (no commit message)Martin Willi2008-03-202-14/+86
|
* The introduced SHA1_NOFINAL hasher was not sufficient for EAP-AKA, Martin Willi2008-03-192-38/+25
| | | | | | as it requires to XOR the key into the hashers state. A new SHA1 based keyed hash function, implemented as PRF, enables EAP-AKA and the FIPS-PRF function to properly use the existing SHA1 implementation.
* fixed shared key lookup in strokeMartin Willi2008-03-191-1/+1
|
* fixed peer_cfg lookup when omitting IDrMartin Willi2008-03-191-3/+13
|
* fixed CRL check return value on revoked certificatesMartin Willi2008-03-193-24/+0
| | | | | fixed possible refcounting bugs generic return_null() implementation
* fixed ike_cfg lookup in strokeMartin Willi2008-03-181-1/+1
|
* added false positive signature check Martin Willi2008-03-181-0/+6
|
* added missing test case file ([3607])Martin Willi2008-03-181-0/+61
|
* creating public key from RSA private keyMartin Willi2008-03-182-2/+4
| | | | RSA key generation and signature test
* made is_newer() a certificate_t methodAndreas Steffen2008-03-181-1/+1
|
* better normalized tables for SQL plugin (IDs)Martin Willi2008-03-186-286/+453
|
* enforcing x509_flags on certificate constructionMartin Willi2008-03-171-23/+12
|
* logging to SQL databaseMartin Willi2008-03-156-1/+255
|
* removed X509_PEER flag; flags are meant to read cert, not to store ↵Martin Willi2008-03-141-21/+12
| | | | | | | additional state in cert removed x509_t.set_flags for the reason above implemented a simple, generic shared_key_t
* credential lookup in mysql/sqlite databaseMartin Willi2008-03-147-2/+493
|
* SQL schema for MySQL and SQLite, test dataMartin Willi2008-03-144-89/+165
|
* fixed apidoc groupingMartin Willi2008-03-132-2/+2
|