aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/plugins
Commit message (Collapse)AuthorAgeFilesLines
...
| | * Accept NULL auth_cfg_t passed to credential_manager_t.get_private()Martin Willi2012-03-201-4/+1
| | |
| | * Added support for authby/xauth_server legacy optionsMartin Willi2012-03-201-42/+1
| | |
| | * Adopt children after syncing a rekeyed IKEv1 SAMartin Willi2012-03-201-0/+6
| | |
| | * Synchronize IKEv1 DPD sequence numbersMartin Willi2012-03-201-0/+30
| | |
| | * Sync remote virtual IP for IKEv1 SAsMartin Willi2012-03-201-0/+13
| | |
| | * Sync new IKE_SA condition/extension flagsMartin Willi2012-03-202-2/+10
| | |
| | * Added support for Phase1 IV synchronization to HA pluginMartin Willi2012-03-205-27/+129
| | |
| | * Invoke bus_t.message hook twice, once plain and parsed, once encoded and ↵Martin Willi2012-03-204-7/+8
| | | | | | | | | | | | encrypted
| | * Create IKEv1 keymat hasher explicitly on syncMartin Willi2012-03-201-3/+6
| | |
| | * Added support to sync IKEv1 SAs key material in HA pluginMartin Willi2012-03-204-10/+95
| | |
| | * Pass IKEv1 specific keymat to ike_keys hookMartin Willi2012-03-201-1/+2
| | |
| | * Use a more complete implementation of a HA specific diffie_hellman_tMartin Willi2012-03-201-11/+50
| | |
| | * Show IKE version in ipsec statusallMartin Willi2012-03-201-1/+2
| | |
| | * Apply proposal to a HA synced IKE_SAMartin Willi2012-03-201-0/+1
| | |
| | * Updated HA plugin to new IKEv2 specific keymat functionsMartin Willi2012-03-202-12/+24
| | |
| | * Added a "aggressive" ipsec.conf connection optionMartin Willi2012-03-201-1/+1
| | |
| | * Added an aggressive mode peer_cfg optionMartin Willi2012-03-2010-12/+13
| | |
| | * Try all matching XAuth secrets we find, not only the first oneMartin Willi2012-03-201-11/+23
| | |
| | * Do not query CHILD_SA during delete if they already expiredMartin Willi2012-03-201-1/+2
| | |
| | * Handle initiation of not supported IKE versions properlyMartin Willi2012-03-203-4/+25
| | |
| | * Added description for the xauth-eap pluginMartin Willi2012-03-201-2/+8
| | |
| | * Added an XAuth plugin that forwards authentication to EAP methodsMartin Willi2012-03-205-0/+452
| | |
| | * Added a flag to register local credential sets exclusively, disabling all othersMartin Willi2012-03-201-4/+4
| | |
| | * Moved eap/xauth classes out of protocol specific subdirectoriesMartin Willi2012-03-2018-18/+18
| | |
| | * Separated libcharon/sa directory with ikev1 and ikev2 subfoldersMartin Willi2012-03-2018-18/+18
| | |
| | * Pass IKE version to peer config enumerator, filter configsMartin Willi2012-03-204-9/+10
| | |
| | * Support an "any" IKE version for both IKEv1 or IKEv2Martin Willi2012-03-202-2/+2
| | |
| | * Added support for iKEIntermediate X.509 extended key usage flag.Tobias Brunner2012-03-201-2/+2
| | | | | | | | | | | | Mac OS X requires server certificates to have this flag set.
| | * Added an identity getter to XAuth methods to query the actually used identityMartin Willi2012-03-201-12/+16
| | |
| | * Be a little more verbose about XAuth configs in ipsec statusallMartin Willi2012-03-201-5/+16
| | |
| | * Pass ipsec.conf xauth_identity option via stroke to charon configurationsMartin Willi2012-03-202-0/+7
| | |
| | * Log configured IKE version in stroke plugin.Tobias Brunner2012-03-201-0/+1
| | |
| | * Fixed leak of shared keys in xauth-generic pluginMartin Willi2012-03-201-0/+2
| | |
| | * Added generic XAuth backend, using secrets provided by credential sets.Tobias Brunner2012-03-205-0/+391
| | |
| | * Removed xauth-null dummy plugin.Tobias Brunner2012-03-205-304/+0
| | |
| | * Ask for a username/password in xauth-null as XAUTH initiatorMartin Willi2012-03-201-11/+12
| | |
| | * Accept a xauth backend name appended to left/rightauthMartin Willi2012-03-201-1/+8
| | |
| | * Use a string to identify xauth backends, no need for integer typesMartin Willi2012-03-203-13/+5
| | |
| | * Use a second authentication config to configure XAUTH authenticationMartin Willi2012-03-201-6/+2
| | |
| | * IKEv1 XAuth: Added a "NULL" XAuth plugin which sends a hardcoded user/pass, ↵Clavister OpenSource2012-03-205-0/+311
| | | | | | | | | | | | and blindly accepts whatever user/pass is sent it. Changed the xauth_request task to use this new plugin. Add --enable-xauth-null to your configure line to build with the new plugin.
| | * Map auth_class to auth method and IKEv1 proposal attributeMartin Willi2012-03-201-0/+4
| | |
| | * IKEv1 XAUTH: Added ability to configure XAUTH+PSK. Added task to handle ↵Clavister OpenSource2012-03-201-0/+4
| | | | | | | | | | | | XAUTH requests. Modified task_manager_v1 to enable it to initiate new tasks immediately after finishing a response.
| | * Don't compare initiator flag in IKE_SA manager, pass initiator parameter to ↵Martin Willi2012-03-201-1/+2
| | | | | | | | | | | | IKE_SA constructor
| | * Do not ignore configs for IKEv1 in charon anymoreMartin Willi2012-03-203-31/+1
| | |
| | * Store IKE version of an SA on ike_sa_t.Tobias Brunner2012-03-201-1/+1
| | |
| | * Fix unaligned aliasing warning in raw socketMartin Willi2012-03-201-5/+4
| | |
| | * Use enum to define IKE version on peer_cfg_t.Tobias Brunner2012-03-2013-22/+23
| | | | | | | | | | | | Replaced all those magic numbers.
* | | add AUTH_RULE_SUBJECT_CERT for raw public keys4.6.3Andreas Steffen2012-04-301-0/+4
| | |
* | | Typo fixed.Tobias Brunner2012-04-301-1/+1
| | |
* | | output validity of raw public key if availableAndreas Steffen2012-04-301-2/+34
| | |