Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | further mobike improvements, regarding to NAT-T | Martin Willi | 2007-06-27 | 6 | -49/+74 | |
| | ||||||
* | simple roaming of the client works (not MOBIKE conform yet!) | Martin Willi | 2007-06-26 | 6 | -269/+220 | |
| | ||||||
* | further fixed for mobike roaming | Martin Willi | 2007-06-25 | 4 | -29/+119 | |
| | ||||||
* | further MOBIKE stuff: | Martin Willi | 2007-06-21 | 12 | -99/+701 | |
| | | | | | | | | | kernel properly reports network reconfiguration and informs all IKE_SAs MOBIKE in IKE_AUTH: MOBIKE_SUPPORTED notify and address exchange reestablishment of IKE_SAs on network reconfiguration kinda works not stable yet! | |||||
* | added extensions management to IKE_SA | Martin Willi | 2007-06-18 | 3 | -1/+64 | |
| | | | | fixed NATD payload (port) when using route lookup | |||||
* | source address lookup in kernel interface | Martin Willi | 2007-06-18 | 2 | -18/+34 | |
| | | | | | | use it for NAT detection if no source address known from config support for %any...%any connections | |||||
* | implemented more flexible iterator hook API | Martin Willi | 2007-06-15 | 1 | -4/+4 | |
| | | | | kernel interface handles interface changes and updates address list | |||||
* | implemented address change notification (for MOBIKE) | Martin Willi | 2007-06-14 | 1 | -6/+5 | |
| | | | | | implemented up to date address list cache to list interfaces | |||||
* | fixed memleak when initiating to %any | Martin Willi | 2007-06-14 | 1 | -0/+1 | |
| | ||||||
* | added missing files to the last commit | Martin Willi | 2007-06-14 | 2 | -0/+232 | |
| | ||||||
* | proper reauthentication: | Martin Willi | 2007-06-14 | 5 | -77/+26 | |
| | | | | | IKE_SA is closed completely before the new is initiated, resolves some issues when a dynamic IP is requested from a pool | |||||
* | introduced callback_job: | Martin Willi | 2007-06-11 | 4 | -17/+17 | |
| | | | | | | | | | | | | simple asynchronous method invocation use daemons thread pool for all threads proper cancellation and cleanups cancellation mechanism to dynamically unload multithreaded code unified event_queue and scheduler => scheduler unified job_queue and thread_pool => processor removed job_type_t, not really needed fixes here, there and everywhere | |||||
* | proper thread cancellation when using the charon->interfaces | Martin Willi | 2007-05-23 | 1 | -0/+1 | |
| | ||||||
* | removed misleading warning when rekeying | Martin Willi | 2007-05-23 | 1 | -1/+0 | |
| | ||||||
* | support for virtual IP definition on client side: | Martin Willi | 2007-05-22 | 2 | -4/+13 | |
| | | | | | | | if leftsourceip is defined, it is requested. server may define rightsourceip=%config to accept any, or it may overwrite it using rightsourceip. if server does not return an IP, client enforces its configured leftsourceip. | |||||
* | fixed memleak | Martin Willi | 2007-05-22 | 1 | -0/+1 | |
| | ||||||
* | support of CA-based ipsec policies | Andreas Steffen | 2007-05-18 | 2 | -9/+12 | |
| | ||||||
* | output of eap_type_names requires %N format | Andreas Steffen | 2007-05-18 | 1 | -1/+1 | |
| | ||||||
* | added set_other_ca() and get_other_ca() | Andreas Steffen | 2007-05-17 | 1 | -44/+68 | |
| | ||||||
* | added set_other_ca() and get_other_ca() | Andreas Steffen | 2007-05-17 | 1 | -2/+19 | |
| | ||||||
* | removed route_job, handled all in interface_manager | Martin Willi | 2007-05-16 | 1 | -1/+0 | |
| | ||||||
* | routing/unrouting through interface | Martin Willi | 2007-05-16 | 2 | -5/+6 | |
| | ||||||
* | authentication failure is handled in ike_auth.c | Andreas Steffen | 2007-05-15 | 1 | -3/+5 | |
| | ||||||
* | cosmetics | Andreas Steffen | 2007-05-15 | 1 | -5/+5 | |
| | ||||||
* | cosmetics | Andreas Steffen | 2007-05-15 | 1 | -2/+2 | |
| | ||||||
* | adapted authentication failure text to those in the authenticators | Andreas Steffen | 2007-05-15 | 1 | -3/+3 | |
| | ||||||
* | support of multiple certificates with same peer id | Andreas Steffen | 2007-05-15 | 1 | -18/+7 | |
| | ||||||
* | cosmetics | Andreas Steffen | 2007-05-15 | 1 | -9/+7 | |
| | ||||||
* | properly implemented interface_managers initiate, terminte_[ike|child] | Martin Willi | 2007-05-09 | 2 | -3/+22 | |
| | | | | | proper thread release when stroke is CTRL+C'ed fixed some permission issues | |||||
* | changing UID/GID after startup of pluto/charon | Martin Willi | 2007-05-07 | 1 | -33/+0 | |
| | | | | added --with-uid/--with-gid configure option | |||||
* | restructuring of configuration backends | Martin Willi | 2007-04-27 | 2 | -3/+3 | |
| | | | | | | | | | added propotypes of new control interfaces (xml & dbus) introduced loadable: configuration backends control interfaces using pluggable modules as in EAP | |||||
* | properly checking received IDr as initiator | Martin Willi | 2007-04-25 | 2 | -4/+12 | |
| | ||||||
* | fixed keyingtries | Martin Willi | 2007-04-23 | 1 | -0/+1 | |
| | ||||||
* | added support for EAP methods not establishing an MSK | Martin Willi | 2007-04-19 | 5 | -66/+82 | |
| | ||||||
* | added PDF support for CHILD_SAs | Martin Willi | 2007-04-19 | 5 | -107/+232 | |
| | | | | support for INVALID_KE_PAYLOAD negotiation for rekeying | |||||
* | fixed memleak in IKE_SA manager | Martin Willi | 2007-04-19 | 1 | -0/+1 | |
| | ||||||
* | not using %m printf handler, as late errno interpration over bus may be ↵ | Martin Willi | 2007-04-12 | 1 | -7/+12 | |
| | | | | problematic | |||||
* | removed IKE_SA_ID (%J) printf hook, two more to go | Martin Willi | 2007-04-11 | 2 | -40/+12 | |
| | ||||||
* | removed IKE_SA (%K) and CHILD_SA (%P) printf handlers, 3 more to go | Martin Willi | 2007-04-11 | 4 | -170/+87 | |
| | ||||||
* | cleaned up apidoc | Martin Willi | 2007-04-11 | 6 | -18/+87 | |
| | | | | | | added some comments removed configuration.[ch], as it does not make sense like it is | |||||
* | fixed bug with roadwarrior and wildcard IDs | Andreas Steffen | 2007-04-10 | 1 | -11/+19 | |
| | ||||||
* | edited comment and debug output | Andreas Steffen | 2007-04-10 | 1 | -3/+3 | |
| | ||||||
* | requesting the same virtual IP on reauthentication | Martin Willi | 2007-04-10 | 2 | -51/+68 | |
| | ||||||
* | proper notification handling | Martin Willi | 2007-04-10 | 1 | -1/+103 | |
| | ||||||
* | restructured file layout | Martin Willi | 2007-04-10 | 19 | -444/+363 | |
| | | | | | | | | | new configuration structure: peer_cfg: configuration related to a peer (authenitcation, ...= ike_cfg: config to use for IKE setup (proposals) child_Cfg: config for CHILD_SA (proposals, traffic selectors) a peer_cfg has one ike_cfg and multiple child_cfg's stroke now uses fixed count of threads | |||||
* | improved log output for checkout_by_message() | Martin Willi | 2007-04-04 | 1 | -21/+28 | |
| | ||||||
* | added IKE_SA_INIT retransmission detection | Martin Willi | 2007-03-29 | 4 | -122/+199 | |
| | | | | fixed thread exhaustion when IKE_SA is blocked for a longer time | |||||
* | fixed task manager message id bug for cookies | Martin Willi | 2007-03-29 | 1 | -1/+1 | |
| | ||||||
* | added retry limit for IKE_SA_INIT (give up after 5 cookie failures) | Martin Willi | 2007-03-29 | 1 | -0/+15 | |
| | ||||||
* | removed send_queue, handled internally in sender_t know | Martin Willi | 2007-03-28 | 5 | -9/+62 | |
| | | | | | do header parsing in receiver, ready for cookie integration |