aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/plugins/stroke
Commit message (Expand)AuthorAgeFilesLines
* stream-service: move CAP_CHOWN check from plugins to service constructorMartin Willi2013-07-181-8/+2
* stroke: use a stream service to handle stroke requestsMartin Willi2013-07-181-227/+48
* capabilities: Some plugins don't actually require capabilities at runtimeTobias Brunner2013-07-181-1/+1
* automake: replace INCLUDES by AM_CPPFLAGSMartin Willi2013-07-181-6/+8
* child-sa: replace get_traffic_selectors() with create_ts_enumerator()Martin Willi2013-07-171-3/+10
* stroke: Add certificates extracted from PKCS#12 files to correct credential setTobias Brunner2013-07-151-4/+4
* Use strpfx() helper where appropriateTobias Brunner2013-07-082-12/+11
* Reuse reqid for trap policies installed for dpd|closeaction=holdTobias Brunner2013-07-011-1/+1
* stroke: Changed how proto/port are specified in left|rightsubnetTobias Brunner2013-06-281-1/+8
* capabilities: CAP_CHOWN might be required by many plugins opening UNIX socketsTobias Brunner2013-06-251-0/+6
* capabilities: Move global capabilities_t instance to libstrongswanTobias Brunner2013-06-251-2/+2
* stroke: support %dynamic in left/rightsubnet for dynamic selectorsMartin Willi2013-06-191-2/+10
* stroke: support a specific proto/port for each net defined in left/rightsubnetMartin Willi2013-06-191-3/+105
* stroke: add exportconn{cert,chain} commands in addition to exportx509Martin Willi2013-06-191-6/+65
* Refactored plugin-loader with improved dependency resolutionTobias Brunner2013-06-111-0/+1
* stroke: Add second password if providedTobias Brunner2013-05-081-0/+13
* stroke: Fail silently if another builder calls PW callback after giving upTobias Brunner2013-05-081-9/+14
* stroke: Cache passwords so the user is not prompted multiple times for the sa...Tobias Brunner2013-05-081-1/+13
* stroke: Fix prompt and error messages in passphrase callbackTobias Brunner2013-05-081-11/+13
* stroke: Load credentials from PKCS#12 files (P12 token)Tobias Brunner2013-05-081-15/+92
* Load any type (RSA/ECDSA) of public key via left|rightsigkeyTobias Brunner2013-05-073-17/+17
* left|rightrsasigkey accepts SSH keys but the key format has to be specified e...Tobias Brunner2013-05-071-12/+22
* Try to load raw keys from ipsec.conf as PKCS#1 blob firstTobias Brunner2013-05-071-5/+12
* List all stroke counters when "all" is given, and report if connection not knownMartin Willi2013-04-031-30/+88
* Load raw keys before possibly destroying the identityTobias Brunner2013-04-011-12/+11
* enforce singular of packetsAndreas Steffen2013-03-221-4/+6
* Avoid a race condition when reloading secrets from ipsec.secretsTobias Brunner2013-03-201-18/+25
* Don't try to mmap() empty ipsec.secret filesMartin Willi2013-03-191-1/+5
* In stroke counters, check if we have an IKE_SA before getting the name from itMartin Willi2013-03-191-3/+6
* Algorithms are not really specific to an IKE versionTobias Brunner2013-03-181-1/+1
* Merge branch 'radius-ext'Martin Willi2013-03-181-6/+9
|\
| * Report the number of processed packets in "ipsec statusall"Martin Willi2013-03-141-5/+9
| * child_sa_t.get_usestats() can additionally return the number of processed pac...Martin Willi2013-03-141-3/+2
* | Merge branch 'stroke-counters'Martin Willi2013-03-183-11/+185
|\ \
| * | Add a "resetcounters" command to ipsec, clearing global or connection countersMartin Willi2013-03-153-1/+38
| * | Add connection name specific stroke countersMartin Willi2013-03-153-11/+148
* | | Merge branch 'stroke-timeout'Martin Willi2013-03-181-18/+82
|\ \ \ | |_|/ |/| |
| * | Add a stroke command timeout option, and report status of completed commandMartin Willi2013-03-071-18/+82
| |/
* | Merge branch 'multi-cert'Martin Willi2013-03-011-15/+32
|\ \
| * | Load multiple comma seperarated certificates in the leftcert optionMartin Willi2013-01-181-15/+32
* | | Merge branch 'opaque-ports'Martin Willi2013-03-011-4/+4
|\ \ \
| * | | Pass complete port range over stroke interface for more flexibilityMartin Willi2013-02-211-14/+4
| * | | Use a complete port range in traffic_selector_create_from_{subnet,cidr}Martin Willi2013-02-211-5/+15
| | |/ | |/|
* | | Merge branch 'ike-dscp'Martin Willi2013-02-141-1/+2
|\ \ \
| * | | Add a ikedscp ipsec.conf option to set DSCP value on outgoing IKE packetsMartin Willi2013-02-061-1/+1
| * | | Add a DSCP configuration value to IKE configsMartin Willi2013-02-061-1/+2
| |/ /
* / / Fix 'stroke loglevel any'Tobias Brunner2013-02-131-4/+11
|/ /
* / Use proper buffer sizes for parse_smartcard()Tobias Brunner2013-01-241-7/+10
|/
* Don't handle right=%any6 as "loose" identity, but as %anyMartin Willi2013-01-141-2/+1
* Merge branch 'ikev1-fragmentation'Tobias Brunner2013-01-121-1/+2
|\