Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | android: Delay disconnecting on errors until user dismisses them | Tobias Brunner | 2014-07-22 | 2 | -4/+6 | |
| | | | | | If e.g. reauthentication fails we don't want to close the TUN device until the user acknowledged the error and is thus aware of the failure. | |||||
* | android: Set CHILD_STATE_DOWN when the IKE_SA gets reestablished | Tobias Brunner | 2014-07-22 | 1 | -1/+7 | |
| | ||||||
* | android: Set CHILD_STATE_DOWN whenever the CHILD_SA goes down | Tobias Brunner | 2014-07-22 | 1 | -6/+0 | |
| | | | | | | No matter what triggers it. We also don't close the TUN device, but we might handle that differently in the future to allow reestablishing the IKE_SA if host names have to be re-resolved via DNS. | |||||
* | android: Change to CONNECTING state if CHILD_SA goes down | Tobias Brunner | 2014-07-22 | 1 | -1/+4 | |
| | | | | | | Unless we are disconnecting. This currently triggers the connecting dialog, perhaps just updating the status text would do too (when switching from CONNECTED to CONNECTING, not from DISCONNECTED to CONNECTING). | |||||
* | android: Do not use deprecated TwoLineListItem | Tobias Brunner | 2014-07-22 | 3 | -27/+28 | |
| | ||||||
* | android: Add support for ECDSA private keys | Tobias Brunner | 2014-07-22 | 1 | -24/+99 | |
| | | | | With 4.4.4 these work fine now. | |||||
* | android: Show a confirmation dialog before importing certificates | Tobias Brunner | 2014-07-22 | 2 | -14/+123 | |
| | | | | | | | | | | | | Since the import activity can be triggered by any other app on the system we shouldn't just import every certificate we get. Also, in some situations (e.g. if no passphrase has been set yet for the system-wide certificate store) we are the only application that can open certificate files. So if a user clicked on a certificate file she would just get a confirmation Toast about a successful import, with no indication whatsoever where the certificate was actually imported. The new dialog shows the app icon to indicate that strongSwan is involved. | |||||
* | android: Use Storage Access Framework to import certificates | Tobias Brunner | 2014-07-22 | 3 | -17/+106 | |
| | | | | | | | Thanks to the SAF, introduced with Android 4.4, browsing and opening files on the system is very easy to implement. On older systems the menu option is removed. | |||||
* | android: Add activity to import certificate files | Tobias Brunner | 2014-07-22 | 7 | -0/+89 | |
| | | | | | Such files can e.g. be opened from the Download view, if they are associated with one of the supported mime-types. | |||||
* | android: Imported certificates may be clicked to delete them | Tobias Brunner | 2014-07-22 | 7 | -1/+124 | |
| | ||||||
* | android: Reload CA certificates without AsyncTask | Tobias Brunner | 2014-07-22 | 2 | -26/+39 | |
| | | | | We already use loaders in the GUI that can handle this asynchronously. | |||||
* | android: Change how CA certificate reloads are initiated | Tobias Brunner | 2014-07-22 | 2 | -9/+9 | |
| | ||||||
* | android: Add option to reload CA certificates to TrustedCertificatesActivity | Tobias Brunner | 2014-07-22 | 7 | -5/+65 | |
| | ||||||
* | android: Replace option to reload CA certificates with CA certificate view | Tobias Brunner | 2014-07-22 | 2 | -13/+10 | |
| | | | | The reload option will be added there. | |||||
* | android: Only close TrustedCertificatesActivity on click when selecting a ↵ | Tobias Brunner | 2014-07-22 | 1 | -6/+11 | |
| | | | | certificate | |||||
* | android: Set action when using TrustedCertificatesActivity to select a ↵ | Tobias Brunner | 2014-07-22 | 2 | -0/+3 | |
| | | | | certificate | |||||
* | android: Allow selection of local certificates | Tobias Brunner | 2014-07-22 | 7 | -19/+31 | |
| | ||||||
* | android: Change how CA certificates from different sources are accessed | Tobias Brunner | 2014-07-22 | 2 | -32/+25 | |
| | ||||||
* | android: Cache certificates from multiple KeyStores | Tobias Brunner | 2014-07-22 | 1 | -40/+60 | |
| | | | | Including the new local one. | |||||
* | android: Register local certificate store provider when the app is initialized | Tobias Brunner | 2014-07-22 | 1 | -0/+8 | |
| | ||||||
* | android: Add Provider for the local certificate store | Tobias Brunner | 2014-07-22 | 1 | -0/+29 | |
| | ||||||
* | android: Add KeyStoreSpi implementation that uses LocalCertificateStore | Tobias Brunner | 2014-07-22 | 1 | -0/+139 | |
| | ||||||
* | android: Add local certificate store | Tobias Brunner | 2014-07-22 | 1 | -0/+230 | |
| | | | | | The class manages certificates stored in files within the app's private data directory. | |||||
* | android: Move TrustedCertificateEntry to a new package | Tobias Brunner | 2014-07-22 | 5 | -5/+5 | |
| | ||||||
* | android: Subclass Application to provide static access to the application ↵ | Tobias Brunner | 2014-07-22 | 2 | -0/+41 | |
| | | | | context | |||||
* | android: Target latest SDK version | Tobias Brunner | 2014-07-22 | 2 | -2/+2 | |
| | ||||||
* | android: Add utility method to convert a byte array to a hex string | Tobias Brunner | 2014-07-22 | 1 | -0/+40 | |
| | ||||||
* | android: Remove unused hash argument from getTrustedCertificates() | Tobias Brunner | 2014-07-22 | 2 | -25/+6 | |
| | ||||||
* | android: Use correct tag to define category for CREATE_SHORTCUT intent-filter | Tobias Brunner | 2014-07-22 | 1 | -1/+1 | |
| | ||||||
* | android: Define HAVE_DLADDR as plugin loader checks for it | Tobias Brunner | 2014-06-24 | 1 | -0/+1 | |
| | ||||||
* | kernel-interface: Add a replay_window parameter to add_sa() | Martin Willi | 2014-06-17 | 1 | -2/+3 | |
| | ||||||
* | ike: Add an additional but separate AEAD proposal to CHILD config | Martin Willi | 2014-05-16 | 1 | -0/+1 | |
| | | | | | | | This currently has no effect: We don't include AEAD algorithms in the default ESP proposal, as we don't know if it is supported by the backend. But as we hopefully get an algorithm query mechanism on kernel interfaces some day, we add the appropriate functionality nonetheless. | |||||
* | ike: Add an additional but separate AEAD proposal to IKE config, if supported | Martin Willi | 2014-05-16 | 2 | -0/+2 | |
| | ||||||
* | android: New release based on 5.1.3 | Tobias Brunner | 2014-04-25 | 2 | -3/+3 | |
| | | | | | Also links OpenSSL statically and doesn't limit the number of packets during EAP-TTLS. | |||||
* | android: Use static version of libcrypto | Tobias Brunner | 2014-04-25 | 1 | -1/+0 | |
| | | | | | System.loadLibrary() searches in system directories first (at least in recent releases), that is, our own build wouldn't actually get used. | |||||
* | nm: Bump NetworkManager plugin version to 1.3.1 | Martin Willi | 2014-04-24 | 2 | -1/+7 | |
| | ||||||
* | android: Don't limit number to packets during EAP-TTLS | Tobias Brunner | 2014-02-18 | 1 | -0/+2 | |
| | ||||||
* | libcharon: Remove unused charon->name | Tobias Brunner | 2014-02-12 | 2 | -2/+2 | |
| | ||||||
* | libhydra: Remove unused hydra->daemon | Tobias Brunner | 2014-02-12 | 2 | -2/+2 | |
| | ||||||
* | lib: Add global config namespace | Tobias Brunner | 2014-02-12 | 2 | -2/+2 | |
| | ||||||
* | nm: Require the PSK to be at least 20 characters long | Tobias Brunner | 2013-11-27 | 2 | -5/+14 | |
| | ||||||
* | nm: German translation updated | Tobias Brunner | 2013-11-27 | 1 | -76/+81 | |
| | ||||||
* | nm: Add PSK option to auth-dialog | Tobias Brunner | 2013-11-27 | 1 | -3/+10 | |
| | ||||||
* | nm: Add pre-shared key option in GUI | Tobias Brunner | 2013-11-27 | 1 | -2/+14 | |
| | ||||||
* | nm: Make intltool recognize glade files properly | Tobias Brunner | 2013-11-27 | 1 | -1/+1 | |
| | ||||||
* | android: New release based on 5.1.1 | Tobias Brunner | 2013-11-13 | 2 | -4/+5 | |
| | | | | | This fixes issues with IVs and padding in ESP handling and removes the Vstr dependency. | |||||
* | android: Remove dependency on libvstr | Tobias Brunner | 2013-11-13 | 6 | -27/+1 | |
| | ||||||
* | charon-xpc: Set AUTH_RULE_IDENTITY_LOOSE on responder config | Martin Willi | 2013-11-01 | 1 | -0/+4 | |
| | | | | | This allows the server to use a different IKE identity as long as the configured hostname is contained in the certificate. | |||||
* | charon-xpc: Load missing eap-md5 plugin after enabling it | Martin Willi | 2013-10-28 | 1 | -1/+1 | |
| | ||||||
* | charon-xpc: Disable warnings about deprecated functions | Martin Willi | 2013-10-28 | 1 | -1/+1 | |
| | | | | This avoids all the deprecated warnings when using OpenSSL functins. |