Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | renamed med_db plugin to medsrv, as we will introduce an additional medcli ↵ | Martin Willi | 2008-05-08 | 13 | -112/+112 | |
| | | | | client plugin | |||||
* | replaced --with-gid/uid by --with-group/user | Martin Willi | 2008-05-08 | 4 | -13/+64 | |
| | | | | | using named users, groups fixed capability dropping in pluto | |||||
* | prototype of sql pool administration utility | Martin Willi | 2008-05-07 | 2 | -1/+439 | |
| | ||||||
* | using capset version 1 if a newer is available | Martin Willi | 2008-05-07 | 1 | -0/+6 | |
| | ||||||
* | providing medation configuration through med_db plugin | Martin Willi | 2008-05-06 | 4 | -1/+215 | |
| | ||||||
* | returning reference pointer on get_ref() | Martin Willi | 2008-05-06 | 6 | -29/+19 | |
| | ||||||
* | implemented XCBC algorithms (signer, prf) for IKE on top of a crypter | Martin Willi | 2008-04-30 | 3 | -2/+245 | |
| | | | | | | supporting ike=...-aesxcbc-... in ipsec.conf added AUTH_AES_XCBC_96 and PRF_AES128_CBC to default IKE proposal AES XCBC testcase | |||||
* | made some stuff static | Tobias Brunner | 2008-04-28 | 1 | -3/+3 | |
| | ||||||
* | supporting multiple comma seperated subnets in left/rightsubnet definition | Martin Willi | 2008-04-25 | 2 | -30/+56 | |
| | | | | | e.g. leftsubnet=10.2.0.0/16,10.4.0.0/16 | |||||
* | added _GNU_SOURCE and limits.h to build against glibc-2.8 | Martin Willi | 2008-04-24 | 3 | -0/+7 | |
| | ||||||
* | added missing base64 chunk test | Martin Willi | 2008-04-24 | 1 | -0/+84 | |
| | ||||||
* | replaced freeswan ttodata by own chunk_{to|from}_{hex|base64} functions | Martin Willi | 2008-04-24 | 4 | -26/+25 | |
| | ||||||
* | some c-libs require _GNU_SOURCE for pthread_rwlock | Martin Willi | 2008-04-23 | 1 | -1/+4 | |
| | ||||||
* | fixed AES-128 test | Martin Willi | 2008-04-22 | 1 | -2/+2 | |
| | ||||||
* | added AES-128 unit test | Martin Willi | 2008-04-22 | 3 | -2/+172 | |
| | ||||||
* | removed status result from crypter interface to be consistent with other ↵ | Martin Willi | 2008-04-22 | 1 | -22/+10 | |
| | | | | crypto interfaces | |||||
* | Hash and URL cosmetics | Andreas Steffen | 2008-04-18 | 5 | -28/+28 | |
| | ||||||
* | sql pool prototype | Martin Willi | 2008-04-18 | 1 | -33/+87 | |
| | ||||||
* | support for hash and URL encoded certificate payloads in charon | Tobias Brunner | 2008-04-18 | 13 | -144/+705 | |
| | ||||||
* | fixed peer config equality check | Martin Willi | 2008-04-18 | 1 | -1/+2 | |
| | ||||||
* | type corrected | Tobias Brunner | 2008-04-18 | 2 | -3/+3 | |
| | ||||||
* | changed logging of crl writing to old style | Andreas Steffen | 2008-04-17 | 1 | -4/+4 | |
| | ||||||
* | fixed compiler warning | Martin Willi | 2008-04-17 | 6 | -2/+331 | |
| | ||||||
* | respecting ipsec.conf cachecrls= option | Martin Willi | 2008-04-17 | 4 | -14/+37 | |
| | ||||||
* | added missing bits for credential caching | Martin Willi | 2008-04-17 | 1 | -29/+47 | |
| | ||||||
* | caching of CRLs to /etc/ipsec.d/crls | Martin Willi | 2008-04-17 | 1 | -10/+41 | |
| | ||||||
* | added missing credential_set method to stroke_ca | Martin Willi | 2008-04-17 | 1 | -0/+1 | |
| | ||||||
* | extended credential_set_t interface by a cache_cert() method | Martin Willi | 2008-04-17 | 10 | -10/+70 | |
| | | | | allows persistent or in-memory caching of fetched certificates | |||||
* | splitted IKE_SA manager destroy to allow plugin interaction | Martin Willi | 2008-04-17 | 3 | -5/+28 | |
| | ||||||
* | adding rightsourceip=%poolname properly to peer config | Martin Willi | 2008-04-17 | 1 | -1/+2 | |
| | ||||||
* | slightly optimized IKE_SA checkin | Martin Willi | 2008-04-16 | 1 | -3/+7 | |
| | ||||||
* | parallelized trust chain verification | Martin Willi | 2008-04-16 | 3 | -38/+148 | |
| | | | | | | temporary imported certificates are thread-local only read-write locking on credential manager credential sets must be thread-save now | |||||
* | optimized half-open IKE_SA lookup (no checkout) | Martin Willi | 2008-04-16 | 1 | -3/+13 | |
| | ||||||
* | disable DPD if dpddelay is set but dpdaction=none | Martin Willi | 2008-04-16 | 1 | -0/+5 | |
| | ||||||
* | updated sql plugin to respect config changes | Martin Willi | 2008-04-15 | 3 | -32/+50 | |
| | ||||||
* | disabled SQL logging by default, as tests scenarios do not have a logging table | Martin Willi | 2008-04-15 | 1 | -1/+1 | |
| | ||||||
* | fixed build of smp plugin | Martin Willi | 2008-04-15 | 1 | -5/+5 | |
| | ||||||
* | build plugins after daemon/libstrongswan | Martin Willi | 2008-04-15 | 1 | -1/+1 | |
| | ||||||
* | added API for random number generators, served through credential factory | Martin Willi | 2008-04-15 | 13 | -115/+100 | |
| | | | | ported randomizer_t to a rng_t on top of /dev/(u)random (plugin random) | |||||
* | implemented IKE_SA uniqueness using ipsec.conf uniqueids paramater | Martin Willi | 2008-04-14 | 7 | -8/+179 | |
| | | | | additionally supports a "keep" value to keep the old IKE_SA | |||||
* | ike_sa_manager enumerable, not iterable | Martin Willi | 2008-04-14 | 10 | -113/+131 | |
| | ||||||
* | added close_action as a seperate config option to dpd_action | Martin Willi | 2008-04-14 | 7 | -32/+72 | |
| | ||||||
* | fixed jumping IKE_SA unique ids | Martin Willi | 2008-04-14 | 1 | -28/+53 | |
| | ||||||
* | fixed rightsourceip=%config scenarios | Martin Willi | 2008-04-14 | 3 | -42/+67 | |
| | ||||||
* | fixed disabling the sending of cert requests | Andreas Steffen | 2008-04-13 | 1 | -1/+1 | |
| | ||||||
* | using dpd actions to enforce connection state | Martin Willi | 2008-04-11 | 12 | -239/+264 | |
| | | | | dpd actions a per child-, not peer ike-sa | |||||
* | enabling acquire for mediated connections | Tobias Brunner | 2008-04-10 | 6 | -146/+51 | |
| | ||||||
* | enabling reauthentication on mediation connections | Tobias Brunner | 2008-04-10 | 2 | -3/+30 | |
| | ||||||
* | fixing a problem if the mediation server initiates the rekeying | Tobias Brunner | 2008-04-10 | 3 | -2/+18 | |
| | ||||||
* | mediation connections should now properly rekey | Tobias Brunner | 2008-04-09 | 3 | -11/+45 | |
| |