aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/sa
Commit message (Expand)AuthorAgeFilesLines
...
* Avoid queueing more than one retry initiate job.Tobias Brunner2012-05-302-3/+34
* Retry IKE_SA initiation if DNS resolution failed.Tobias Brunner2012-05-301-4/+39
* Fix MOBIKE address update if responder address changed.Tobias Brunner2012-05-251-2/+2
* Resolve hosts before reauthenticating due to address change.Tobias Brunner2012-05-251-0/+2
* Don't queue delete_ike_sa job when setting IKE_DELETING.Tobias Brunner2012-05-252-9/+1
* During reauthentication reestablish IKE_SA even if deleting the old one fails.Tobias Brunner2012-05-251-0/+6
* Integrated main parts of IKE_REAUTH task into ike_sa_t.reestablish.Tobias Brunner2012-05-252-115/+77
* Fixed route lookup in case MOBIKE is not enabled.Tobias Brunner2012-05-251-3/+9
* Added log message if peer does not accept/provide IPComp proposal.Tobias Brunner2012-05-241-2/+12
* Added support to negotiate IPComp during Quick Mode.Tobias Brunner2012-05-241-11/+91
* Added support for IKEv1 IPComp proposals in SA payload.Tobias Brunner2012-05-243-6/+6
* Fix memleak during Quick Mode in case no SPI can be allocated from kernel.Tobias Brunner2012-05-241-8/+8
* Apply IDir before deriving keys as aggressive initiatorMartin Willi2012-05-231-4/+4
* Use received identity to look up PSK as aggressive responderMartin Willi2012-05-231-2/+9
* Check if we actually have an initiating packet to free while processing respo...Martin Willi2012-05-231-1/+1
* Switch to alternative peer config in IKEv1 Main and Aggressive Mode.Tobias Brunner2012-05-214-24/+85
* Cancel pending retransmits when flushing active task queueMartin Willi2012-05-211-0/+4
* Cancel active quick mode task when receiving INFORMATIONAL errorMartin Willi2012-05-211-0/+30
* Flush task queues explicitly, not implicitly if task returns ALREADY_DONEMartin Willi2012-05-216-12/+20
* Wrap task managers flush_queue() in IKE_SAMartin Willi2012-05-212-0/+14
* Make task managers flush_queue() method publicMartin Willi2012-05-213-20/+62
* Remove executable flag from source files.Tobias Brunner2012-05-1812-0/+0
* Use separate Doxygen groups for IKEv1 and IKEv2 entities (authenticators, tas...Tobias Brunner2012-05-1844-46/+46
* Use nonce_gen instead of rng to generate noncesAdrian-Ken Rueegsegger2012-05-184-34/+34
* Add create_nonce_gen function to keymat interfaceAdrian-Ken Rueegsegger2012-05-183-0/+24
* make IKEv1 DPD timeout configurable in charonAndreas Steffen2012-05-171-6/+14
* Moved IKEv1 DPD processing to task manager, fix sequence issuesMartin Willi2012-05-153-73/+72
* Schedule a DPD timeout job that enforces the IKE message timeout policyMartin Willi2012-05-151-0/+13
* Send unanswered follow up R_U_THERE messages with the same DPD seqMartin Willi2012-05-151-1/+7
* Do not send IKEv1 DPD retransmit, but create a new INFORMATIONALMartin Willi2012-05-151-11/+0
* allow private algorithmsAndreas Steffen2012-05-052-4/+16
* vendor ID cosmeticsAndreas Steffen2012-05-052-4/+4
* Use name from initialization to access settings in libcharon.Tobias Brunner2012-05-0310-22/+27
* Merge branch 'ikev1'Martin Willi2012-05-02111-2690/+14683
|\
| * Fix iteration through half-open IKE_SA tableMartin Willi2012-04-161-0/+1
| * Added another bunch of commonly used IKEv1 NATT vendor IDsMartin Willi2012-04-041-1/+19
| * Store authentication info of a XAUTH round on IKE_SAMartin Willi2012-03-221-0/+16
| * Added a getter for CHILD_SA marksMartin Willi2012-03-222-0/+19
| * Define a special XFRM mark_t.value that dynamically uses the CHILD_SA reqidMartin Willi2012-03-221-0/+9
| * Reply with received configuration payload identifier in Mode ConfigMartin Willi2012-03-201-0/+8
| * Merge branch 'ikev1-clean' into ikev1-masterMartin Willi2012-03-20109-2685/+14608
| |\
| | * Properly handle retransmitted initial IKE messages.Tobias Brunner2012-03-201-58/+74
| | * Implemented table of init hashes without linked_list_t.Tobias Brunner2012-03-201-30/+30
| | * Implemented table of connected peers without linked_list_t.Tobias Brunner2012-03-201-63/+75
| | * Implemented table of half open IKE_SAs without linked_list_t.Tobias Brunner2012-03-201-52/+47
| | * Don't use linked_list_t for buckets in main IKE_SA hash table.Tobias Brunner2012-03-201-57/+82
| | * Fixed deadlock if checkin_and_destroy is called during shutdown.Tobias Brunner2012-03-201-0/+10
| | * Do not clone hashes of initial IKE messages when storing them in the hash table.Tobias Brunner2012-03-201-7/+6
| | * Store IKEv2 IKE_SAs by local SPI in the IKE_SA manager hash table.Tobias Brunner2012-03-201-2/+13
| | * Added separate hashtable for hashes of initial IKE messages.Tobias Brunner2012-03-201-64/+139