aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/sa
Commit message (Expand)AuthorAgeFilesLines
...
* Pass full pool list to release_addressMartin Willi2012-09-111-13/+8
* Pass the full list of pools to acquire_address, enumerate in providersMartin Willi2012-09-112-40/+12
* Add a responder narrow() hook to change TS in the kernel, but not on the wireMartin Willi2012-09-112-3/+46
* Add uniqueids=never to ignore INITIAL_CONTACT notifiesTobias Brunner2012-09-102-2/+3
* Only initiate an exchange from send_dpd() if a task was actually queuedTobias Brunner2012-09-071-2/+8
* Trigger ike_updown event caused by retransmits only after reestablish() has b...Tobias Brunner2012-09-063-10/+5
* Add ike_reestablish() event that is triggered when an IKE_SA is reestablishedTobias Brunner2012-09-061-0/+1
* Add a new condition to mark IKE_SAs that are currently being reauthenticatedTobias Brunner2012-09-062-9/+9
* Clear virtual IPs before storing assigned ones on the IKE_SATobias Brunner2012-09-054-0/+33
* In mode_config, destroy temporary pool list instead of the virtual IP list twiceMartin Willi2012-09-051-1/+1
* Merge branch 'multi-vip'Martin Willi2012-08-3114-214/+429
|\
| * Request and acquire multiple virtual IPs in IKEv1 Mode ConfigMartin Willi2012-08-301-47/+61
| * Request and acquire multiple virtual IPs in IKEv2 configuration payloadMartin Willi2012-08-301-49/+67
| * Pass all configured pool names to attribute provider enumeratorMartin Willi2012-08-302-4/+18
| * Pass a list instead of a single virtual IP to attribute enumeratorsMartin Willi2012-08-302-22/+71
| * Support multiple address pools configured on a peer_cfgMartin Willi2012-08-308-13/+70
| * Support multiple virtual IPs on peer_cfg and ike_sa classesMartin Willi2012-08-3014-144/+207
* | Merge branch 'eap-client-select'Tobias Brunner2012-08-313-10/+100
|\ \
| * | Log the proper type for virtual EAP methodsTobias Brunner2012-08-311-1/+5
| * | Encode EAP-Naks in expanded format if we got an expanded type requestTobias Brunner2012-08-311-2/+2
| * | Allow clients to request a configured EAP method via EAP-NakTobias Brunner2012-08-311-4/+24
| * | Virtual EAP methods handle EAP-Naks themselvesTobias Brunner2012-08-311-5/+17
| * | Send EAP-Nak with supported types if requested type is unsupportedTobias Brunner2012-08-311-2/+4
| * | Filter invalid EAP authentication types when enumerating themTobias Brunner2012-08-312-1/+10
| * | Added a method to enumerate registered EAP methodsTobias Brunner2012-08-212-0/+43
| |/
* / Fall back to local address as IKEv1 identity if nothing else is configuredTobias Brunner2012-08-241-2/+14
|/
* Remove the unused second IKE_SA entry match function argumentMartin Willi2012-08-201-4/+4
* Add keymat_t constructor registration functionAdrian-Ken Rueegsegger2012-08-202-3/+45
* Merge branch 'android-app'Tobias Brunner2012-08-133-2/+3
|\
| * Moved packet_t to libstrongswanTobias Brunner2012-08-082-1/+2
| * Increase log verbosity when sending NAT keep-alivesTobias Brunner2012-08-081-1/+1
* | Merge branch 'android-ndk'Tobias Brunner2012-08-133-10/+18
|\|
| * Replaced usages of CHARON_*_PORT with calls to get_port().Tobias Brunner2012-08-083-7/+15
| * Use send_no_marker to send NAT keepalives.Tobias Brunner2012-08-081-1/+1
| * Make the UDP ports charon listens for packets on (and uses as source ports) c...Tobias Brunner2012-08-083-10/+10
* | Use actual daemon name to enable XAuth/PSK with aggressive modeMartin Willi2012-08-101-2/+3
|/
* Remove queued IKEv1 message before processing itMartin Willi2012-08-081-3/+5
* Include src address in hash of initial message for Main ModeTobias Brunner2012-08-081-5/+31
* Block XAuth transaction on established IKE_SAs, but allow Mode ConfigMartin Willi2012-08-032-2/+1
* Reject initial exchange messages early once IKE_SA is establishedMartin Willi2012-08-021-0/+18
* Lookup IKEv1 PSK even if the peer identity is not knownMartin Willi2012-07-311-1/+1
* Don't include acquiring packet traffic selectors in IKEv1Martin Willi2012-07-261-0/+5
* Implement late peer config switching after XAuth authenticationMartin Willi2012-07-261-15/+80
* Check if XAuth round complies to configured authentication roundMartin Willi2012-07-261-7/+18
* Merge auth config items added from XAuth backends to IKE_SAMartin Willi2012-07-261-0/+1
* Release leaking child config after uninstalling shunt policyMartin Willi2012-07-231-0/+1
* Refactored error handling in keymat_v1_tMartin Willi2012-07-161-25/+27
* Clean up error handling in keymat_v2_tMartin Willi2012-07-161-87/+65
* Cleaned up memory management and return values for encryption payloadMartin Willi2012-07-161-1/+4
* Add a return value to hasher_t.allocate_hash()Martin Willi2012-07-166-20/+80