aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/sa/ikev1/tasks/quick_mode.c
Commit message (Expand)AuthorAgeFilesLines
* ikev1: Make sure proposed IPsec mode matches our ownTobias Brunner2014-09-091-1/+2
* ikev1: Accept Quick Mode DELETES while Quick Mode rekeying is activeMartin Willi2014-08-251-2/+21
* payload: Use common prefixes for all payload type identifiersMartin Willi2014-06-041-11/+11
* ikev1: Fix debugging log when remote traffic selector selection failsMartin Willi2014-05-141-1/+1
* libcharon: Use lib->ns instead of charon->nameTobias Brunner2014-02-121-1/+1
* ikev1: Negotiate SPI with the first/negotiated proposal protocolMartin Willi2013-10-111-3/+18
* ikev1: For PFS prefer DH group from IKE_SA over first configuredThomas Egerer2013-09-101-18/+54
* ikev1: Always send ID payloads (traffic selectors) during Quick ModeTobias Brunner2013-07-251-26/+4
* child-sa: replace get_traffic_selectors() with create_ts_enumerator()Martin Willi2013-07-171-4/+10
* kernel-interface: add an exchange initiator parameter to add_sa()Martin Willi2013-06-111-8/+12
* Allow IPComp on NATed connections, both for IKEv1 and IKEv2Martin Willi2013-06-111-26/+10
* Refactor check_for_rekeyed_child() in quick_mode taskMartin Willi2013-04-031-18/+24
* Reuse reqid of an existing Quick Mode, even if it has been rekeyedMartin Willi2013-04-031-1/+2
* As Quick Mode initiator, select a subset of the proposed and the returned TSMartin Willi2013-03-071-4/+11
* Use a complete port range in traffic_selector_create_from_{subnet,cidr}Martin Willi2013-02-211-2/+2
* Add support for draft-ietf-ipsec-nat-t-ike-03 and earlierVolker RĂ¼melin2012-12-191-4/+61
* Fix traffic selectors also as initiator in case of transport mode over NATTobias Brunner2012-12-131-1/+1
* Fix debug output if responder selected invalid traffic selectors during QMTobias Brunner2012-12-131-2/+2
* Remove all ESP proposals with non-matching DH group during Quick ModeTobias Brunner2012-10-241-10/+22
* Don't complain about multiple TS in IKEv1, as it supported with UnityMartin Willi2012-09-181-5/+0
* Derive a dynamic TS to multiple virtual IPsMartin Willi2012-09-181-23/+28
* Use the vararg list constructor in quick mode taskMartin Willi2012-09-181-16/+8
* Change traffic selectors during Quick Mode in case of a NAT in transport modeTobias Brunner2012-09-141-9/+19
* Don't use host address for dynamic TS in IKEv1 if a virtual IP was expectedMartin Willi2012-09-111-40/+57
* Add a responder narrow() hook to change TS in the kernel, but not on the wireMartin Willi2012-09-111-2/+20
* Support multiple virtual IPs on peer_cfg and ike_sa classesMartin Willi2012-08-301-14/+30
* Nonce: Let get_nonce, allocate_nonce return booleanReto Buerki2012-07-161-1/+6
* Fix SIGSEGV if kernel install fails during Quick Mode as responder.Tobias Brunner2012-06-221-4/+8
* Use traffic selectors passed to quick mode constructor as initiatorMartin Willi2012-06-081-2/+10
* Added log message if peer does not accept/provide IPComp proposal.Tobias Brunner2012-05-241-2/+12
* Added support to negotiate IPComp during Quick Mode.Tobias Brunner2012-05-241-11/+91
* Added support for IKEv1 IPComp proposals in SA payload.Tobias Brunner2012-05-241-2/+2
* Fix memleak during Quick Mode in case no SPI can be allocated from kernel.Tobias Brunner2012-05-241-8/+8
* Flush task queues explicitly, not implicitly if task returns ALREADY_DONEMartin Willi2012-05-211-0/+3
* Remove executable flag from source files.Tobias Brunner2012-05-181-0/+0
* Use nonce_gen instead of rng to generate noncesAdrian-Ken Rueegsegger2012-05-181-6/+6
* allow private algorithmsAndreas Steffen2012-05-051-2/+8
* Use name from initialization to access settings in libcharon.Tobias Brunner2012-05-031-1/+1
* Use UDP encapsulation even in non-NAT situation if initiator requests itMartin Willi2012-03-201-13/+14
* Support inactivity timeout in IKEv1 CHILD_SAsMartin Willi2012-03-201-1/+24
* Invoke bus_t.narrow hook in quick mode exchangeMartin Willi2012-03-201-7/+36
* Invoke child_rekey hook instead of child_updown when rekeying a quick modeMartin Willi2012-03-201-2/+28
* Simplified DPD handling by using a task for a single message onlyMartin Willi2012-03-201-1/+1
* Isakmp_dpd task added.Clavister OpenSource2012-03-201-1/+1
* Enforce encapsulation mode of configuration, in case initiator proposes bothMartin Willi2012-03-201-1/+2
* Install quick mode CHILD_SAs with negotiated encapsulation modeMartin Willi2012-03-201-12/+17
* As responder, try to reuse the reqid of the CHILD_SA the initiator is rekeyingMartin Willi2012-03-201-0/+38
* Reply quick mode with the same SA lifetime that we receivedMartin Willi2012-03-201-4/+4
* Do not query CHILD_SA during delete if they already expiredMartin Willi2012-03-201-1/+1
* Support installing of quick mode SAs with a specific reqidMartin Willi2012-03-201-2/+14