index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
/
libcharon
/
sa
Commit message (
Expand
)
Author
Age
Files
Lines
...
*
ike-sa: use arrays instead of linked lists in long lived collections
Martin Willi
2013-07-17
1
-116
/
+98
*
ike: Resolve hosts only for address families currently supported
Tobias Brunner
2013-07-05
1
-3
/
+16
*
Reuse reqid when restarting CHILD_SAs for dpd|closeaction=restart
Tobias Brunner
2013-07-01
2
-3
/
+4
*
Reuse reqid for trap policies installed for dpd|closeaction=hold
Tobias Brunner
2013-07-01
4
-5
/
+8
*
ikev2: keep the CHILD_SA we delete as initiator in the list to destroy
Martin Willi
2013-06-25
1
-6
/
+5
*
ike: Force NAT-T/UDP encapsulation if kernel interface requires it
Tobias Brunner
2013-06-21
2
-5
/
+32
*
ikev2: use protocol of selected proposal to delete a failed CHILD_SA
Martin Willi
2013-06-20
1
-2
/
+2
*
ikev2: properly fall back to tunnel mode if transport/BEET mode not configured
Martin Willi
2013-06-19
1
-2
/
+8
*
ikev2: support transport mode over NAT
Martin Willi
2013-06-19
1
-36
/
+150
*
ike: reuse the reqid of an installed trap having the same config
Martin Willi
2013-06-19
1
-1
/
+5
*
trap-manager: add a method to find reqid for installed traps by config
Martin Willi
2013-06-19
2
-2
/
+38
*
trap-manager: don't check-in nonexisting IKE_SA if acquire fails
Martin Willi
2013-06-19
1
-2
/
+1
*
trap-manager: fix a memleak when installing a trap to %any
Martin Willi
2013-06-19
1
-0
/
+1
*
kernel-interface: add an exchange initiator parameter to add_sa()
Martin Willi
2013-06-11
4
-21
/
+28
*
Use ref_get() to make sure IKE_SA unique IDs are unique
Martin Willi
2013-06-11
1
-2
/
+2
*
Use ref_get() to make sure CHILD_SA reqids are unique
Martin Willi
2013-06-11
1
-2
/
+9
*
ikev1: keep vendor ID task alive during full Main/Aggressive Mode
Martin Willi
2013-06-11
1
-8
/
+75
*
ikev2: if installing a CHILD_SA as initiator fails, notify the responder
Martin Willi
2013-06-11
1
-2
/
+36
*
ikev2: raise LOCAL_AUTH_FAILED when receiving INFORMATIONAL with AUTH_FAILED
Martin Willi
2013-06-11
1
-0
/
+8
*
ikev2: close an established IKE_SA when receiving AUTHENTICATION_FAILED
Martin Willi
2013-06-11
1
-0
/
+6
*
ikev2: if responder authentication fails, send AUTHENTICATION_FAILED
Martin Willi
2013-06-11
1
-0
/
+29
*
Allow IPComp on NATed connections, both for IKEv1 and IKEv2
Martin Willi
2013-06-11
2
-33
/
+10
*
Properly compare CHILD_SAs during rekey collision
Tobias Brunner
2013-06-11
1
-5
/
+12
*
Raise LOCAL_AUTH_FAILED alert after receiving AUTHENTICATION_FAILURE
Martin Willi
2013-05-15
1
-0
/
+1
*
kernel-interface: query SAD for last use time if SPD query didn't yield one
Martin Willi
2013-05-06
1
-5
/
+19
*
child-sa: query SAD/SPD just for what we actually need to update statistics
Martin Willi
2013-05-06
1
-2
/
+5
*
child-sa: pass traffic selector to add_sa() regardless of IPsec mode
Martin Willi
2013-05-06
1
-14
/
+11
*
Raise an ALERT_PROPOSAL_MISMATCH_CHILD also when receiving NO_PROPOSAL_CHOSEN
Martin Willi
2013-05-06
1
-0
/
+20
*
Raise an ALERT_PROPOSAL_MISMATCH_IKE also when receiving NO_PROPOSAL_CHOSEN
Martin Willi
2013-05-06
1
-0
/
+20
*
Don't unset IKE_SA on bus before we released virtual IPs and attributes
Martin Willi
2013-05-06
1
-10
/
+8
*
emit a single assig_vips bus message for all VIPs
Andreas Steffen
2013-04-06
2
-6
/
+10
*
ifmap plugin subscribes to assing_vip bus signal
Andreas Steffen
2013-04-06
1
-0
/
+6
*
Refactor check_for_rekeyed_child() in quick_mode task
Martin Willi
2013-04-03
1
-18
/
+24
*
Reuse reqid of an existing Quick Mode, even if it has been rekeyed
Martin Willi
2013-04-03
1
-1
/
+2
*
Defer CHILD_SA rekeying if allocating an SPI fails
Martin Willi
2013-04-03
2
-12
/
+26
*
Fixed some typos, courtesy of codespell
Tobias Brunner
2013-03-25
1
-1
/
+1
*
Delete IKE_SAs if responder does not initiate XAuth exchange within a certain...
Tobias Brunner
2013-03-19
2
-2
/
+16
*
Make sure that xauth-noauth is not used accidentally
Tobias Brunner
2013-03-19
1
-2
/
+5
*
Added xauth-noauth plugin
Tobias Brunner
2013-03-19
1
-29
/
+37
*
Make check whether to use IKEv1 fragmentation more readable
Martin Willi
2013-03-14
1
-5
/
+14
*
Raise an alert if an IKE_SA could not have been reauthenticated and expires
Martin Willi
2013-03-14
1
-0
/
+4
*
child_sa_t.get_usestats() can additionally return the number of processed pac...
Martin Willi
2013-03-14
5
-7
/
+13
*
kernel_ipsec_t.query_sa() additionally returns the number of processed packets
Martin Willi
2013-03-14
1
-3
/
+15
*
Add missing XAuthRespPSK switch case to IKEv1 key derivation
Martin Willi
2013-03-12
1
-0
/
+1
*
Clean up IKE_SA state if IKE_SA_INIT request does not have message ID 0
Martin Willi
2013-03-11
1
-0
/
+4
*
Ignore fourth Qick Mode message sent by Windows servers.
Martin Willi
2013-03-11
1
-0
/
+9
*
As Quick Mode initiator, select a subset of the proposed and the returned TS
Martin Willi
2013-03-07
1
-4
/
+11
*
Merge branch 'multi-eap'
Martin Willi
2013-03-01
2
-28
/
+50
|
\
|
*
Apply a mutual EAP auth_cfg not before the EAP method completes
Martin Willi
2013-02-26
2
-1
/
+18
|
*
Be a little more verbose why a peer_cfg is inacceptable
Martin Willi
2013-02-26
1
-8
/
+16
[prev]
[next]