Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | readded local_credential_store | Martin Willi | 2006-06-20 | 1 | -2/+3 |
| | | | | | | added sendcert policy to connection some other cleanups | ||||
* | implemented rereadcrls rereadcacerts | Andreas Steffen | 2006-06-20 | 1 | -3/+24 |
| | |||||
* | added listcrls | Andreas Steffen | 2006-06-16 | 1 | -1/+7 |
| | |||||
* | added support for "ike" and "esp" keywords | Martin Willi | 2006-06-15 | 2 | -30/+89 |
| | | | | | | | fixed bugs in proposal code algorithm selection for charon works now with ipsec.conf a lot of other fixes | ||||
* | support for stroke listcerts|listcacerts|listall and left|rightca= | Andreas Steffen | 2006-06-12 | 1 | -55/+91 |
| | |||||
* | workaround for peers rekeying at the same time | Martin Willi | 2006-06-12 | 1 | -1/+4 |
| | | | | | loading lifetime policies from ipsec.conf | ||||
* | improved kernel interface logging | Martin Willi | 2006-06-09 | 2 | -50/+40 |
| | |||||
* | specifying keysize in bits, as it is required in IKEv2 | Martin Willi | 2006-06-09 | 3 | -62/+129 |
| | | | | | | added generic kernel SA algorithm handling, which brings us: aes-128, aes-256, blowfish, des, 3des and null encryption for CHILD_SAs | ||||
* | added support for leftsendcert= and left|rightca= parameters | Andreas Steffen | 2006-06-09 | 1 | -8/+25 |
| | |||||
* | fixed compile warnings when using -Wall | Martin Willi | 2006-06-08 | 2 | -5/+4 |
| | | | | | | | | further CHILD_SA rekeying work done: creation of a new CHILD_SA on a expire from a kernel works delete of old CHILD_SA still missing some issues when both initiate rekeing | ||||
* | further work for rekeying: | Martin Willi | 2006-06-07 | 2 | -20/+21 |
| | | | | | | | | | get liftimes from policy added new state initiation of rekeying done proposal redone: removed support for AH+ESP proposals | ||||
* | job management: | Martin Willi | 2006-05-31 | 3 | -447/+97 |
| | | | | | | | | | | | | | moved job code from thread_pool to job, jobs have an "execute" method now added two new jobs: delete_child_sa & rekey_child_sa kernel interface: listens now for ACQUIRE & EXPIRE supports hard and soft lifetimes fires jobs for delete and rekey child sa ike sa manager: can checkout IKE SAs by requid of owned CHILD SAs we have now the infrastructure to do the rekeying... :-) | ||||
* | minimized prefixed on stroke logger output | Andreas Steffen | 2006-05-31 | 1 | -1/+1 |
| | |||||
* | list ca certificates | Andreas Steffen | 2006-05-30 | 1 | -2/+3 |
| | |||||
* | - fixed memleak when deleting a connection | Martin Willi | 2006-05-29 | 1 | -1/+5 |
| | |||||
* | - policies contain a connections name now | Martin Willi | 2006-05-29 | 1 | -6/+44 |
| | | | | | | | | - used for initiate and delete - connections won't get initiated twice anymore - deleting of connections is now possible, which allows us to use ipsec update and ipsec reload | ||||
* | stroke now uses constant size string buffer | Andreas Steffen | 2006-05-29 | 1 | -28/+44 |
| | |||||
* | - handle IKE_SA setup without a piggy-packed CHILD_SA | Martin Willi | 2006-05-24 | 1 | -0/+2 |
| | | | | | more IKEv2 conform | ||||
* | - show connection templates in status & statusall | Martin Willi | 2006-05-23 | 1 | -15/+47 |
| | | | | | - don't complain on termination of IKEv1 connections | ||||
* | - changed config load strategy: | Martin Willi | 2006-05-23 | 1 | -7/+8 |
| | | | | | | | starter loads both connections in charon & pluto, charon ignores anything with keyexchange!=ikev2. pluto needs the same behavior. | ||||
* | load_end_certificate() now loads certificates | Andreas Steffen | 2006-05-23 | 1 | -27/+46 |
| | |||||
* | - reimplemented proper IKE SA deletion using a seperate state, | Martin Willi | 2006-05-23 | 1 | -74/+42 |
| | | | | | should conform now to IKEv2 | ||||
* | - applied patch from the NAT-T team fixing several typos | Martin Willi | 2006-05-19 | 1 | -3/+3 |
| | |||||
* | - applied patch from andreas, which allows certificate listing via stroke | Martin Willi | 2006-05-19 | 1 | -31/+27 |
| | |||||
* | - applied andreas's patch | Martin Willi | 2006-05-18 | 5 | -12/+13 |
| | | | | | | | - logger output improvements - testin gupdates - and a lot more | ||||
* | - introduced autotools | Martin Willi | 2006-05-16 | 1 | -39/+0 |
| | | | | | | | | | | - first working version - make dist should work - things to do: - UML testing! - more cleanups | ||||
* | (no commit message) | Martin Willi | 2006-05-10 | 13 | -0/+2951 |