Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | added ./configure option --with-strongswan-conf= | Martin Willi | 2008-04-07 | 1 | -1/+1 | |
| | | | | defaults to /etc/strongswan.conf | |||||
* | log shared secret with debug level 4 | Andreas Steffen | 2008-04-06 | 1 | -1/+1 | |
| | ||||||
* | default is hostaccess=no | Andreas Steffen | 2008-04-06 | 2 | -2/+2 | |
| | ||||||
* | and another | Tobias Brunner | 2008-04-03 | 1 | -0/+1 | |
| | ||||||
* | fixed two other memory leaks | Tobias Brunner | 2008-04-03 | 4 | -8/+6 | |
| | ||||||
* | replaced mutex in leak detective with thread scheduling | Tobias Brunner | 2008-04-03 | 1 | -1/+1 | |
| | ||||||
* | thread locking for sender and processor optimized | Tobias Brunner | 2008-04-03 | 3 | -22/+43 | |
| | ||||||
* | configure option in strongswan.conf for thread count | Martin Willi | 2008-04-03 | 2 | -3/+5 | |
| | ||||||
* | updated test data to use correct encoding data | Martin Willi | 2008-04-03 | 1 | -3/+4 | |
| | ||||||
* | demoted more notify debug messages to level 24.2.0 | Andreas Steffen | 2008-04-02 | 2 | -3/+3 | |
| | ||||||
* | fixing some memory leaks | Tobias Brunner | 2008-04-02 | 4 | -4/+31 | |
| | ||||||
* | securing total_threads with the mutex while destroying the processor | Tobias Brunner | 2008-04-02 | 1 | -0/+2 | |
| | ||||||
* | generate debug output if ocsp response does not contain status information ↵ | Andreas Steffen | 2008-04-02 | 2 | -3/+4 | |
| | | | | for a given certificate | |||||
* | fixed med_db test | Martin Willi | 2008-04-02 | 1 | -1/+1 | |
| | ||||||
* | updated mediation database to public key authentication | Martin Willi | 2008-04-02 | 10 | -62/+409 | |
| | | | | | | added mysql table definition, test data testcase | |||||
* | fixed compile warnings | Martin Willi | 2008-04-02 | 1 | -1/+0 | |
| | ||||||
* | additional debug line makes certificate status checking more understandable | Andreas Steffen | 2008-04-02 | 1 | -3/+8 | |
| | ||||||
* | workaround for parsing IPv6 PSKs requires extract_last_token() | Andreas Steffen | 2008-04-01 | 1 | -1/+1 | |
| | ||||||
* | demoted received notify debug message to level 2 | Andreas Steffen | 2008-04-01 | 1 | -1/+1 | |
| | ||||||
* | loading of subjectPublicKeyInfo wrapped keys using KEY_ANY (openssl format) | Martin Willi | 2008-04-01 | 2 | -2/+44 | |
| | | | | testcase | |||||
* | minimal stroke_list_ocsp() implementation | Andreas Steffen | 2008-04-01 | 1 | -2/+23 | |
| | ||||||
* | stopping connectivity checks on the responders side after receiving an ↵ | Tobias Brunner | 2008-04-01 | 5 | -8/+132 | |
| | | | | IKE_SA_INIT request with the proper ME_CONNECTID | |||||
* | some simplifications to trusted_enumerator_t | Martin Willi | 2008-04-01 | 1 | -8/+7 | |
| | ||||||
* | checking pretrusted but bad certificates only once | Martin Willi | 2008-04-01 | 1 | -13/+18 | |
| | ||||||
* | stroke_list groups certificates by issuer | Andreas Steffen | 2008-04-01 | 1 | -7/+18 | |
| | ||||||
* | minor changes in debug output | Andreas Steffen | 2008-03-31 | 1 | -1/+3 | |
| | ||||||
* | put DN in double quotes | Andreas Steffen | 2008-03-31 | 1 | -1/+1 | |
| | ||||||
* | output error message if maximum ca path length is reached | Andreas Steffen | 2008-03-31 | 1 | -0/+4 | |
| | ||||||
* | ipsec list suppresses duplicates | Andreas Steffen | 2008-03-31 | 1 | -19/+79 | |
| | ||||||
* | timing of connectivity checks adjusted | Tobias Brunner | 2008-03-31 | 1 | -28/+39 | |
| | ||||||
* | defining ME globally, as we need it in plugins | Martin Willi | 2008-03-31 | 1 | -1/+0 | |
| | ||||||
* | utc argument in %#T was missing | Andreas Steffen | 2008-03-31 | 1 | -4/+6 | |
| | ||||||
* | signal fixed | Tobias Brunner | 2008-03-31 | 1 | -2/+2 | |
| | ||||||
* | changed order of server and peer reflexive endpoints (and also the priorities) | Tobias Brunner | 2008-03-31 | 2 | -8/+8 | |
| | ||||||
* | received certificates have least priority | Martin Willi | 2008-03-31 | 1 | -9/+5 | |
| | | | | | fixed manager unlocking | |||||
* | fixed refcounting in certificate trustchain validation | Martin Willi | 2008-03-31 | 1 | -3/+5 | |
| | ||||||
* | changed error message | Andreas Steffen | 2008-03-29 | 1 | -1/+1 | |
| | ||||||
* | output uptime in status in local time | Andreas Steffen | 2008-03-29 | 1 | -1/+1 | |
| | ||||||
* | renamed xml plugin to smp to avoid confusion | Martin Willi | 2008-03-28 | 7 | -40/+48 | |
| | | | | | | added some dependency checks to configure configure checks ClearSilver and fastcgi cleanups in the build system here and there | |||||
* | fixed crash if crl fetching fails | Martin Willi | 2008-03-28 | 1 | -6/+12 | |
| | ||||||
* | reentrant save cert_cache | Martin Willi | 2008-03-28 | 1 | -12/+65 | |
| | ||||||
* | caching of CRLs | Martin Willi | 2008-03-28 | 2 | -127/+124 | |
| | ||||||
* | replaced get_public() by create_public_enumerator() to try multiple public ↵ | Martin Willi | 2008-03-27 | 3 | -129/+231 | |
| | | | | keys for signature verification | |||||
* | use trusted self-signed root CA certificates as trust anchor only | Martin Willi | 2008-03-27 | 1 | -6/+16 | |
| | ||||||
* | changed external interface to the mediation extension. | Tobias Brunner | 2008-03-27 | 1 | -3/+3 | |
| | ||||||
* | corrected ME_ENDPOINT length check | Tobias Brunner | 2008-03-27 | 1 | -1/+2 | |
| | ||||||
* | reusing generic shared_key_t implementation in med_db | Martin Willi | 2008-03-27 | 1 | -55/+1 | |
| | ||||||
* | checking the size of ME_* notify payloads | Tobias Brunner | 2008-03-27 | 2 | -9/+22 | |
| | ||||||
* | replaced the COOKIE notify payload in connectivity checks with a ↵ | Tobias Brunner | 2008-03-27 | 3 | -17/+21 | |
| | | | | ME_CONNECTAUTH notify payload | |||||
* | implemented cert cache flushing, ipsec purgeocsp | Martin Willi | 2008-03-27 | 5 | -4/+54 | |
| |