aboutsummaryrefslogtreecommitdiffstats
path: root/src/charon
Commit message (Collapse)AuthorAgeFilesLines
...
* set XFRM_STATE_AF_UNSPEC flag only in IPsec tunnel modeAndreas Steffen2008-07-151-1/+4
|
* The XFRM_STATE_AF_UNSPEC flag added to xfrm.h allows IPv4-over-IPv6 and ↵Andreas Steffen2008-07-151-1/+7
| | | | IPv6-over-IPv6 tunnels with the 2.6.26 and later Linux kernels
* reverted [4125],[4166], reimplemented the proper wayMartin Willi2008-07-112-44/+16
|
* setting ike_sa on bus in checkout_newMartin Willi2008-07-111-0/+1
|
* update_peerid() does not accept %any as a certificate's subjectAltNameAndreas Steffen2008-07-091-1/+1
|
* do a route lookup to allow routing of left=%any connections Martin Willi2008-07-091-5/+15
|
* ipsec statusall displays dpd optionsAndreas Steffen2008-07-022-5/+21
|
* changed medcli settings keys Martin Willi2008-07-021-2/+2
|
* sql plugin supports a list of pools to fall back, specified by e.g. ↵Martin Willi2008-07-021-10/+29
| | | | rightsourceip=%pool1,pool2
* implementation of a simple "token enumerator"Martin Willi2008-07-023-3/+52
|
* fixed medsrv database uri keyMartin Willi2008-07-011-1/+1
|
* added a "ipsec down-srcip <start> [<end>]" command to terminate IKE_SAs by ↵Martin Willi2008-07-013-0/+95
| | | | remote virtual ip
* logging peer addresses in peer_cfg lookupMartin Willi2008-07-011-1/+2
|
* added host match prio to debugging outputMartin Willi2008-07-011-7/+8
|
* peer_cfg lookup takes peer addresses into accountMartin Willi2008-07-013-82/+103
|
* strongswan.conf's charon.close_ike_on_child_failure closes IKE_SA if ↵Martin Willi2008-07-011-2/+36
| | | | CHILD_SA setup in IKE_AUTH fails
* sending INTERNAL_ADDRESS_FAILURE if virtual IP requested but none foundMartin Willi2008-07-012-14/+46
|
* show authentication method in ipsec statusallAndreas Steffen2008-06-302-4/+12
|
* fixed chunk_increment, fixes reuse of already assigned addressesMartin Willi2008-06-301-1/+1
|
* added strongswan.conf option charon.reuse_iksa=no to create each CHILD_SA in ↵Martin Willi2008-06-301-8/+42
| | | | a new IKE_SA
* log received vendor id as a hex valueAndreas Steffen2008-06-271-0/+9
|
* corrected vendor_id_payload diagramAndreas Steffen2008-06-271-3/+2
|
* ike/kernel protocol identifier conversion functionsMartin Willi2008-06-261-15/+43
|
* flushing task_manager on shutdown while IKE_SA is usableMartin Willi2008-06-251-1/+2
|
* merging the ESP sequence numbers of an SA in update_sa (fixing #52)Tobias Brunner2008-06-241-5/+127
|
* enumerating loaded plugins in "ipsec statusall"Martin Willi2008-06-241-1/+10
|
* changed ipsec.secrets keyword EC to ECDSATobias Brunner2008-06-241-1/+1
|
* cosmeticsAndreas Steffen2008-06-231-5/+5
|
* fixed "double-close" of stroke fd resulting in "bad fd" errors if multiple ↵Martin Willi2008-06-231-15/+9
| | | | threads are active
* fixed medsrv mysql schemeMartin Willi2008-06-231-1/+1
|
* resolving hosts before routeMartin Willi2008-06-231-0/+2
|
* display selected IKE proposal in ipsec statusallAndreas Steffen2008-06-224-17/+87
|
* support in smp for terminate-by-nameMartin Willi2008-06-201-1/+25
|
* fixed identationMartin Willi2008-06-191-2/+2
|
* medcli initiates "active" connections on startupMartin Willi2008-06-191-1/+58
|
* medcli plugin writes connection status to databaseMartin Willi2008-06-194-2/+180
|
* fixed UCI default proposalsMartin Willi2008-06-181-3/+12
|
* support for more config options in UCI pluginMartin Willi2008-06-182-40/+158
|
* first simple prototype of a UCI configuration plugin for OpenWRTMartin Willi2008-06-1710-0/+929
|
* do not use self-installed route for IKE if routing table is 0Martin Willi2008-06-171-0/+7
|
* added %P printf handler for poposal_tMartin Willi2008-06-125-65/+174
| | | | added some proposal selection debugging code
* added mediation server web frontendMartin Willi2008-06-113-16/+25
| | | | updated charons medsrv plugin to updated database scheme
* fixed compile error of medsrv pluginMartin Willi2008-06-111-1/+1
|
* make config_auth_method_t backward compatible to existing sql templatesAndreas Steffen2008-06-102-12/+8
|
* fixed compile error in smp pluginMartin Willi2008-06-101-2/+2
|
* ECDSA with OpenSSLTobias Brunner2008-06-1013-83/+214
|
* added strongswan.conf option "routing_table" and "routing_table_prio"Martin Willi2008-06-101-10/+29
|
* added strongswan.conf option to disable route installationMartin Willi2008-06-101-2/+10
|
* DNS resolving of ike_cfg hosts dynamically on demandMartin Willi2008-06-0611-191/+173
|
* convert comma-separated RDNs into slash-separated OpenSSL --subject formatAndreas Steffen2008-06-051-13/+3
|