aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon/sa
Commit message (Expand)AuthorAgeFilesLines
* Include the used reserved bytes from ID payloads in AUTH calculationMartin Willi2011-01-0511-39/+126
* Migrated psk/pubkey_authenticators to INIT/METHOD macrosMartin Willi2011-01-052-84/+70
* Moved check if packet already encoded to ike_sa, avoids message() hook invoca...Martin Willi2011-01-051-0/+5
* Move critical bit checking to ike_sa, notify payload includes unsupported pay...Martin Willi2011-01-053-11/+61
* Handle all error notifies in CREATE_CHILD_SA exchangesMartin Willi2011-01-051-0/+14
* Ingore messages with exchange type altered to UNDEFINED in message() hookMartin Willi2011-01-051-0/+8
* Moved message()-hook invocation to generate_message(), catch pre-generated IK...Martin Willi2011-01-052-2/+1
* Support manually triggerd DPD check, even if DPD disabled in configMartin Willi2011-01-051-11/+10
* eliminated whitespaceAndreas Steffen2010-12-211-1/+1
* Migrated child_create_t to INIT/METHOD macrosAndreas Steffen2010-12-211-83/+55
* Do not use TFC padding if peer does not support ESPv3Martin Willi2010-12-203-11/+31
* Added a TFC padding option to child_cfgMartin Willi2010-12-201-0/+2
* Implemented Traffic Flow Confidentiality padding in kernel_interfaceMartin Willi2010-12-201-1/+2
* Install selectors on transport mode IPsec SAs.Jiri Bohac2010-12-131-1/+1
* Never register IKE_SA during checkout_new, as rekeying keeps it checked outMartin Willi2010-12-072-18/+2
* Guarantee entry->other is set when calling put_connected_peersThomas Egerer2010-12-061-1/+7
* Do not checkin a previously destroyed SAThomas Egerer2010-11-161-1/+4
* Extend connected peers by peer familyThomas Egerer2010-11-121-5/+16
* Do not add additional addresses to MOBIKE path probing messages.Tobias Brunner2010-10-121-10/+12
* Change behavior of responder during roaming.Tobias Brunner2010-10-121-16/+17
* Allow responder to use ike_mobike_t.roam.Tobias Brunner2010-10-121-1/+7
* Send list of additional addresses even if current path is still valid.Tobias Brunner2010-10-121-0/+11
* Extracted path checking in ike_sa_t.roam into separate functions.Tobias Brunner2010-10-121-46/+68
* Added support for responders to change their address via MOBIKE.Tobias Brunner2010-10-121-0/+20
* Explicitly configure MOBIKE tasks to update the list of additional addresses.Tobias Brunner2010-10-123-2/+15
* Improved check for first IKE_AUTH message in ike_mobike task.Tobias Brunner2010-10-121-3/+6
* Migrated ike_mobike task to INIT/METHOD macros.Tobias Brunner2010-10-121-67/+46
* Simplified apply_port function in mobike task.Tobias Brunner2010-10-121-16/+9
* Do not update hosts based on retransmitted messages.Tobias Brunner2010-10-122-15/+23
* Do not update remote host if we are behind a NAT.Tobias Brunner2010-10-121-4/+2
* NOTIFY error message types include 16383Andreas Steffen2010-09-291-1/+1
* Adapted child_sa_t to changed kernel interface.Tobias Brunner2010-09-021-25/+49
* Added an option to specify the type of a policy to kernel_ipsec.add_policy.Tobias Brunner2010-09-021-18/+18
* Replaced the protocol argument in add_policy with an optional SPI for an AH SA.Tobias Brunner2010-09-021-18/+37
* Refer to scheduler and processor via lib and not hydra.Tobias Brunner2010-09-028-36/+30
* Refer to kernel interface via hydra and not charon.Tobias Brunner2010-09-026-58/+62
* Removed references to protocol_id_t from kernel interface.Tobias Brunner2010-09-021-37/+65
* Migrated child_sa_t to INIT/METHOD macros.Tobias Brunner2010-09-021-202/+132
* Refer to scheduler via hydra and not charon.Tobias Brunner2010-09-026-21/+23
* Refer to processor via hydra and not charon.Tobias Brunner2010-09-026-9/+14
* Use the AAA Identity for EAP authentication, if givenMartin Willi2010-08-312-1/+14
* Moved EAP type/code definitions to a seprate header file in libstrongswanMartin Willi2010-08-312-35/+1
* Port floating patch partially reversed.Tobias Brunner2010-08-302-12/+8
* Slightly refactored port floating.Tobias Brunner2010-08-305-35/+39
* Fixed ME after introduction of AEAD wrapper.Tobias Brunner2010-08-301-1/+1
* Migrated delete_payload to INIT/METHOD macros, replaced iteratorMartin Willi2010-08-251-9/+8
* Check if colliding rekey actually created an IKE_INITThomas Egerer2010-08-251-37/+42
* Fixed crypter keymat derivation bugMartin Willi2010-08-191-3/+4
* Implemented IKEv2 keymat derivation for AEAD algorithmsMartin Willi2010-08-191-29/+58
* Use AEAD wrapper for encryption payload encryption/decryptionMartin Willi2010-08-194-118/+121