Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | removed c++ style comments4.1.9 | Martin Willi | 2007-12-04 | 5 | -97/+86 |
| | | | | | fixed compiler warnings | ||||
* | fixed mobike/auth_lifetime in conjunction with p2p-natt | Martin Willi | 2007-12-04 | 2 | -6/+6 |
| | |||||
* | removed redundant server reflexive endpoint debug message | Andreas Steffen | 2007-12-04 | 1 | -1/+0 |
| | |||||
* | improved P2P_ENDPOINT debugging | Andreas Steffen | 2007-12-03 | 3 | -2/+6 |
| | |||||
* | moved AUTH_LIFETIME handling in its own task (cleaner separation, proper ↵ | Martin Willi | 2007-12-03 | 7 | -34/+293 |
| | | | | payload order) | ||||
* | improving [3361]: moved one of the added return values | Tobias Brunner | 2007-11-22 | 1 | -1/+2 |
| | |||||
* | added two return statements comitted by Marius Tomaschewski | Andreas Steffen | 2007-11-21 | 1 | -1/+2 |
| | |||||
* | implemented RFC4478 (repeated authentication) | Martin Willi | 2007-11-20 | 4 | -47/+204 |
| | | | | | changed %V printf handler to take a time delta, %#V now takes two arguments | ||||
* | fixed NO_PROPOSAL_CHOSEN response on IKE_SA_INIT | Martin Willi | 2007-11-14 | 1 | -0/+2 |
| | |||||
* | fixed _updown target for ipv6 | Andreas Steffen | 2007-11-06 | 1 | -1/+1 |
| | |||||
* | adding new virtual ip before deleting old one to keep IP on reauthentication | Martin Willi | 2007-10-25 | 1 | -7/+7 |
| | |||||
* | experimental P2P-NAT-T for IKEv2 merged back from branch | Tobias Brunner | 2007-10-03 | 12 | -12/+3458 |
| | |||||
* | ID payload with explicit payload type | Tobias Brunner | 2007-10-02 | 1 | -2/+2 |
| | |||||
* | moved force_encap to ike_config, enables responder to enforce udp encapsulation | Martin Willi | 2007-10-01 | 2 | -9/+10 |
| | | | | fixed bugs in force_encap code | ||||
* | removed accidentally checked in debugging code | Martin Willi | 2007-10-01 | 1 | -4/+0 |
| | |||||
* | implemented IKEv2 force_encap connection parameter | Martin Willi | 2007-10-01 | 4 | -6/+55 |
| | | | | | enforces UDP encapsulation by faking NAT detection payloads to hurdle restrictive firewalls | ||||
* | implemented more aggressive MOBIKE path probing | Martin Willi | 2007-09-28 | 4 | -24/+100 |
| | | | | | do not queue more than one MOBIKE task | ||||
* | typos | Tobias Brunner | 2007-09-27 | 2 | -3/+3 |
| | |||||
* | improved MOBIKE roaming between interfaces | Martin Willi | 2007-09-24 | 4 | -15/+25 |
| | |||||
* | connection name to IKE_SA initiating | Andreas Steffen | 2007-09-15 | 2 | -2/+3 |
| | |||||
* | put IKE_SA and CHILD_SA names in single quotes | Andreas Steffen | 2007-09-15 | 3 | -6/+6 |
| | |||||
* | log name of IKE_SA in state changes | Andreas Steffen | 2007-09-15 | 1 | -1/+2 |
| | |||||
* | log name of established IKE_SA | Andreas Steffen | 2007-09-15 | 1 | -4/+8 |
| | |||||
* | log name of established CHILD_SA | Andreas Steffen | 2007-09-15 | 1 | -2/+4 |
| | |||||
* | added missing 'break' in checkout_by_peer | Tobias Brunner | 2007-09-13 | 1 | -0/+1 |
| | |||||
* | only switch to port 4500 if we are on 500: fixed reauthentication in NAT | Martin Willi | 2007-09-12 | 1 | -2/+9 |
| | | | | scenarios | ||||
* | removed unused chunk variable | Andreas Steffen | 2007-09-12 | 1 | -3/+1 |
| | |||||
* | moving virtual IP when interface changes due mobike | Martin Willi | 2007-09-12 | 1 | -0/+11 |
| | |||||
* | fixed NAT detection with mobike | Martin Willi | 2007-09-12 | 2 | -7/+7 |
| | |||||
* | overwrite shared_key with random bytes before freeing it | Andreas Steffen | 2007-09-11 | 1 | -2/+2 |
| | |||||
* | replaced get_rsa_private_key() by rsa_signature() in order restrict the ↵ | Andreas Steffen | 2007-09-11 | 1 | -18/+5 |
| | | | | distribution of private key material | ||||
* | implemented routeability checks for mobike (experimental) | Martin Willi | 2007-09-03 | 4 | -48/+156 |
| | |||||
* | added mobike=yes|no connection option | Martin Willi | 2007-08-29 | 2 | -17/+33 |
| | | | | | | | yes: include mobike support notifies as initiator no: only enable mobike as responder when initiator supports it default: yes | ||||
* | rerouting CHILD_SA if its IKE_SA gets deleted | Martin Willi | 2007-08-27 | 1 | -99/+149 |
| | |||||
* | corrected debug output | Andreas Steffen | 2007-08-10 | 1 | -1/+1 |
| | |||||
* | backports from the p2p-nat-t branch: | Tobias Brunner | 2007-07-19 | 1 | -2/+2 |
| | | | | | | * double assignment of function ''destroy'' in some jobs * typos | ||||
* | not touching IKE_SA_INIT from ike_mobike_t anymore | Martin Willi | 2007-07-19 | 1 | -1/+1 |
| | |||||
* | fixed payload order (Nonce, KE) for IKE_SA_INIT | Martin Willi | 2007-07-16 | 1 | -3/+11 |
| | |||||
* | changed mobike behavior to NOT use additional responder addresses until we ↵ | Martin Willi | 2007-07-04 | 1 | -95/+3 |
| | | | | have path discovery | ||||
* | fixed responder initiated CHILD_SA rekeying when using virtual IPs | Martin Willi | 2007-07-04 | 1 | -11/+45 |
| | |||||
* | fixed firewall script invocation when interface is not available anymore | Martin Willi | 2007-07-03 | 1 | -17/+28 |
| | |||||
* | improved MOBIKE: | Martin Willi | 2007-07-03 | 6 | -52/+183 |
| | | | | | | | | prefer address family already used do not change address implicit when mobike supported handle multiple simultaneous roaming requests more properly proper enabling/disabling of UDP encapsulation | ||||
* | DBG1 level for 'peer supports MOBIKE' debug message | Andreas Steffen | 2007-07-02 | 1 | -1/+1 |
| | |||||
* | fixed mobike address update from and to NAT | Martin Willi | 2007-07-02 | 2 | -34/+20 |
| | |||||
* | proper update of IPsec SA when roaming a host-to-host tunnel | Martin Willi | 2007-07-02 | 2 | -69/+127 |
| | | | | roaming of IPsec SAs using virtual IPs | ||||
* | fixed dpd=hold when using virtual IPs | Martin Willi | 2007-06-29 | 2 | -10/+25 |
| | |||||
* | removed accidently checked in debbuging code | Martin Willi | 2007-06-29 | 1 | -2/+0 |
| | |||||
* | fixed IKE_SA reestablishment after DPD using port 500 | Martin Willi | 2007-06-28 | 1 | -65/+71 |
| | |||||
* | further mobike improvements, regarding to NAT-T | Martin Willi | 2007-06-27 | 6 | -49/+74 |
| | |||||
* | simple roaming of the client works (not MOBIKE conform yet!) | Martin Willi | 2007-06-26 | 6 | -269/+220 |
| |