index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
/
libcharon
Commit message (
Collapse
)
Author
Age
Files
Lines
...
|
|
*
Delete CHILD_SA if installing SA in third message fails
Martin Willi
2012-03-20
1
-1
/
+6
|
|
|
|
|
*
Added a quick_delete task flag to enforce delete, even if CHILD_SA not found
Martin Willi
2012-03-20
4
-5
/
+12
|
|
|
|
|
*
Send delete if Main Mode authentication fails as initiator
Martin Willi
2012-03-20
2
-4
/
+32
|
|
|
|
|
*
Send notifies in all error cases of Main Mode
Martin Willi
2012-03-20
1
-33
/
+30
|
|
|
|
|
*
Add some additional IKEv1 notify types
Martin Willi
2012-03-20
2
-6
/
+21
|
|
|
|
|
*
Do not trust unprotected INFORMATIONALS, just print that we got one
Martin Willi
2012-03-20
1
-13
/
+18
|
|
|
|
|
*
Use (as client) and verify (as server) configured XAuth identities
Martin Willi
2012-03-20
1
-17
/
+42
|
|
|
|
|
*
Added an identity getter to XAuth methods to query the actually used identity
Martin Willi
2012-03-20
2
-12
/
+23
|
|
|
|
|
*
Be a little more verbose about XAuth configs in ipsec statusall
Martin Willi
2012-03-20
1
-5
/
+16
|
|
|
|
|
*
Pass ipsec.conf xauth_identity option via stroke to charon configurations
Martin Willi
2012-03-20
2
-0
/
+7
|
|
|
|
|
*
Store Main Mode identity even if XAuth-only is used for authentication
Martin Willi
2012-03-20
1
-4
/
+4
|
|
|
|
|
*
Check authorization constraints after main mode completed
Martin Willi
2012-03-20
1
-5
/
+48
|
|
|
|
|
*
Save authentication info collected during main mode authentication
Martin Willi
2012-03-20
1
-1
/
+26
|
|
|
|
|
*
Flush auth configs, if enabled, for both IKEv1 and IKEv2
Martin Willi
2012-03-20
1
-5
/
+15
|
|
|
|
|
*
Fixed return value if SIG payload missing
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Show auth method of config we are looking for in main mode
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Remove executable flag from source code files
Martin Willi
2012-03-20
18
-0
/
+0
|
|
|
|
|
*
Removed IKEv1 specific code from child_delete task
Martin Willi
2012-03-20
1
-17
/
+3
|
|
|
|
|
*
Use IKEv1 specific tasks to close Quick Mode SAs
Martin Willi
2012-03-20
3
-6
/
+14
|
|
|
|
|
*
Added a dedicated IKEv1 task to delete CHILD_SAs
Martin Willi
2012-03-20
5
-0
/
+273
|
|
|
|
|
*
Close IKE_SA directly after sending the delete
Martin Willi
2012-03-20
1
-4
/
+12
|
|
|
|
|
*
Removed IKEv1 specific code from ike_delete task
Martin Willi
2012-03-20
1
-21
/
+2
|
|
|
|
|
*
Use the IKEv1 specific delete in IKEv1 SAs
Martin Willi
2012-03-20
3
-7
/
+15
|
|
|
|
|
*
Added a dedicated delete task for IKEv1 IKE_SAs
Martin Willi
2012-03-20
5
-0
/
+201
|
|
|
|
|
*
Use a single task_type_t enum name for ME and non-ME variant
Martin Willi
2012-03-20
1
-30
/
+2
|
|
|
|
|
*
Send certificates and requests when using Hybrid authentication
Martin Willi
2012-03-20
2
-1
/
+19
|
|
|
|
|
*
Look for an XAuth authentication config both in the first and the second round
Martin Willi
2012-03-20
1
-4
/
+8
|
|
|
|
|
*
Added hybrid authentication support to Main Mode
Martin Willi
2012-03-20
2
-1
/
+11
|
|
|
|
|
*
Support encoding of Hybrid initiator authentication method
Martin Willi
2012-03-20
1
-0
/
+9
|
|
|
|
|
*
Added a IKEv1 hybrid authenticator based on Pubkey/PSK authenticators
Martin Willi
2012-03-20
4
-0
/
+176
|
|
|
|
|
*
Use real ID payload to build HASH_I|R for Main Mode authentication.
Tobias Brunner
2012-03-20
9
-27
/
+60
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
This is required for clients like the iPhone which set the protocol and/or port fields of the ID payload.
|
|
*
Create authenticators right when they are used during Main Mode.
Tobias Brunner
2012-03-20
1
-24
/
+43
|
|
|
|
|
*
Added method to get encoded version if ID_V1 payload.
Tobias Brunner
2012-03-20
2
-0
/
+17
|
|
|
|
|
*
Ignore additional TRANSACTION request if we already queued one
Martin Willi
2012-03-20
1
-2
/
+7
|
|
|
|
|
*
Keep a history of received response hashes to detect late retransmissions
Martin Willi
2012-03-20
1
-4
/
+33
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
If we receive an old response and we already sent out the next request, we must be able to identify that it is not the response to the new request.
|
|
*
Narrow down received and configured traffic selector to a common subset
Martin Willi
2012-03-20
1
-11
/
+15
|
|
|
|
|
*
Don't send a retransmit for a request we never have sent a response
Martin Willi
2012-03-20
1
-12
/
+19
|
|
|
|
|
*
Print unsigned IKEv1 message IDs
Martin Willi
2012-03-20
1
-3
/
+3
|
|
|
|
|
*
Log selected peer config during Main Mode.
Tobias Brunner
2012-03-20
1
-0
/
+4
|
|
|
|
|
*
Log configured IKE version in stroke plugin.
Tobias Brunner
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Fixed SIGSEGV when logging peer config matches.
Tobias Brunner
2012-03-20
1
-2
/
+3
|
|
|
|
|
*
Added a bunch of well known IKEv1 vendor IDs to database
Martin Willi
2012-03-20
1
-0
/
+25
|
|
|
|
|
*
Use a generic IKEv1 vendor ID database to send and receive vendor IDs
Martin Willi
2012-03-20
1
-54
/
+54
|
|
|
|
|
*
Fixed compiler warning (set but unused variable)
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Queue a TRANSACTION message for later processing if Main Mode not yet completed
Martin Willi
2012-03-20
1
-0
/
+36
|
|
|
|
|
*
Fixed leak of shared keys in xauth-generic plugin
Martin Willi
2012-03-20
1
-0
/
+2
|
|
|
|
|
*
Fixed SPI size calculation in DELETE payload
Martin Willi
2012-03-20
1
-8
/
+7
|
|
|
|
|
*
Reset task manager state when build() completes an exchange (quick mode)
Martin Willi
2012-03-20
1
-3
/
+5
|
|
|
|
|
*
Include COOKIES in IKEv1 delete payloads
Martin Willi
2012-03-20
1
-0
/
+4
|
|
|
|
|
*
Support IKEv1 SPIs in IKEv1 delete payload
Martin Willi
2012-03-20
2
-2
/
+31
|
|
|
[prev]
[next]