Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Clear virtual IPs before storing assigned ones on the IKE_SA | Tobias Brunner | 2012-09-05 | 1 | -1/+10 |
| | | | | | Otherwise we'll end up with duplicate or invalid VIPs stored on the IKE_SA. | ||||
* | Support multiple address pools configured on a peer_cfg | Martin Willi | 2012-08-30 | 1 | -6/+7 |
| | |||||
* | Support multiple virtual IPs on peer_cfg and ike_sa classes | Martin Willi | 2012-08-30 | 1 | -5/+10 |
| | |||||
* | Add a return value to keymat_v1_t.{get,update,confirm}_iv | Martin Willi | 2012-07-16 | 1 | -2/+4 |
| | |||||
* | Centralized thread cancellation in processor_t | Tobias Brunner | 2012-06-25 | 1 | -9/+3 |
| | | | | | | | | | | This ensures that no threads are active when plugins and the rest of the daemon are unloaded. callback_job_t was simplified a lot in the process as its main functionality is now contained in processor_t. The parent-child relationships were abandoned as these were only needed to simplify job cancellation. | ||||
* | Merge branch 'ikev1-clean' into ikev1-master | Martin Willi | 2012-03-20 | 1 | -19/+194 |
|\ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Conflicts: configure.in man/ipsec.conf.5.in src/libcharon/daemon.c src/libcharon/plugins/eap_ttls/eap_ttls_peer.c src/libcharon/plugins/eap_radius/eap_radius_accounting.c src/libcharon/plugins/eap_radius/eap_radius_forward.c src/libcharon/plugins/farp/farp_listener.c src/libcharon/sa/ike_sa.c src/libcharon/sa/keymat.c src/libcharon/sa/task_manager.c src/libcharon/sa/trap_manager.c src/libstrongswan/plugins/x509/x509_cert.c src/libstrongswan/utils.h Applied lost changes of moved files keymat.c and task_manager.c. Updated listener_t.message hook signature in new plugins. | ||||
| * | Adopt children after syncing a rekeyed IKEv1 SA | Martin Willi | 2012-03-20 | 1 | -0/+6 |
| | | |||||
| * | Sync new IKE_SA condition/extension flags | Martin Willi | 2012-03-20 | 1 | -0/+4 |
| | | |||||
| * | Added support for Phase1 IV synchronization to HA plugin | Martin Willi | 2012-03-20 | 1 | -0/+54 |
| | | |||||
| * | Create IKEv1 keymat hasher explicitly on sync | Martin Willi | 2012-03-20 | 1 | -3/+6 |
| | | |||||
| * | Added support to sync IKEv1 SAs key material in HA plugin | Martin Willi | 2012-03-20 | 1 | -9/+66 |
| | | |||||
| * | Use a more complete implementation of a HA specific diffie_hellman_t | Martin Willi | 2012-03-20 | 1 | -11/+50 |
| | | |||||
| * | Apply proposal to a HA synced IKE_SA | Martin Willi | 2012-03-20 | 1 | -0/+1 |
| | | |||||
| * | Updated HA plugin to new IKEv2 specific keymat functions | Martin Willi | 2012-03-20 | 1 | -9/+19 |
| | | |||||
| * | Don't compare initiator flag in IKE_SA manager, pass initiator parameter to ↵ | Martin Willi | 2012-03-20 | 1 | -1/+2 |
| | | | | | | | | IKE_SA constructor | ||||
| * | Store IKE version of an SA on ike_sa_t. | Tobias Brunner | 2012-03-20 | 1 | -1/+1 |
| | | |||||
* | | Clear peer addresses during HA update. | Tobias Brunner | 2012-03-09 | 1 | -1/+6 |
| | | |||||
* | | Renamed list of additional peer addresses as it now stores all known addresses. | Tobias Brunner | 2012-03-09 | 1 | -3/+2 |
|/ | |||||
* | Sync newer IKE_SA condition/extension flags in ha plugin | Martin Willi | 2011-08-19 | 1 | -0/+5 |
| | |||||
* | Use CRITICAL job priority class for long running dispatcher jobs | Martin Willi | 2011-05-16 | 1 | -2/+2 |
| | |||||
* | Synchronize ESN support in HA plugin | Martin Willi | 2011-04-20 | 1 | -0/+5 |
| | |||||
* | set tfcv3 flag TRUE in ha_dispatcher | Andreas Steffen | 2010-12-26 | 1 | -4/+4 |
| | |||||
* | Store proposal number in proposal_t to reuse it in the selected proposal | Martin Willi | 2010-10-28 | 1 | -2/+2 |
| | | | | | According to RFC 5996 3.3.1, we MUST reuse the proposal number of the selected proposal in the SA payload reply. | ||||
* | Refer to scheduler and processor via lib and not hydra. | Tobias Brunner | 2010-09-02 | 1 | -2/+1 |
| | |||||
* | Refer to processor via hydra and not charon. | Tobias Brunner | 2010-09-02 | 1 | -1/+2 |
| | |||||
* | Implemented a HA enabled in-memory address pool | Martin Willi | 2010-07-28 | 1 | -1/+26 |
| | |||||
* | Reserving does not work, as our pools do not support acquiring arbitrary ↵ | Martin Willi | 2010-07-27 | 1 | -30/+0 |
| | | | | | | addresses This reverts commit d1384080b3ba74f366eaf8b5f027babca3f5d607. | ||||
* | Synchronize EAP-Identity of remote peer | Martin Willi | 2010-07-26 | 1 | -0/+6 |
| | |||||
* | Reserve virtual IP of passive IKE_SAs in the local pool | Martin Willi | 2010-07-26 | 1 | -0/+30 |
| | |||||
* | Log CHILD_SA segment responsibility | Martin Willi | 2010-07-26 | 1 | -3/+18 |
| | |||||
* | Pass initiator parameter to distinguish between original and exchange initiator | Martin Willi | 2010-07-26 | 1 | -1/+3 |
| | |||||
* | Use a sync message cache to resynchronize IKE_SAs without rekeying | Martin Willi | 2010-07-26 | 1 | -15/+58 |
| | |||||
* | Log received HA message types | Martin Willi | 2010-07-26 | 1 | -3/+9 |
| | |||||
* | Use distinct message types for HA message ID updates | Martin Willi | 2010-07-26 | 1 | -6/+46 |
| | |||||
* | Migrated ha plugin to INIT/METHOD macros | Martin Willi | 2010-07-26 | 1 | -8/+10 |
| | |||||
* | Updated HA plugin to new APIs | Martin Willi | 2010-04-07 | 1 | -32/+32 |
| | |||||
* | Moved ha plugin to libcharon | Martin Willi | 2010-04-07 | 1 | -0/+737 |