aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon
Commit message (Collapse)AuthorAgeFilesLines
...
| | * Implemented table of connected peers without linked_list_t.Tobias Brunner2012-03-201-63/+75
| | |
| | * Implemented table of half open IKE_SAs without linked_list_t.Tobias Brunner2012-03-201-52/+47
| | |
| | * Don't use linked_list_t for buckets in main IKE_SA hash table.Tobias Brunner2012-03-201-57/+82
| | |
| | * Fixed deadlock if checkin_and_destroy is called during shutdown.Tobias Brunner2012-03-201-0/+10
| | |
| | * Do not clone hashes of initial IKE messages when storing them in the hash table.Tobias Brunner2012-03-201-7/+6
| | |
| | * Store IKEv2 IKE_SAs by local SPI in the IKE_SA manager hash table.Tobias Brunner2012-03-201-2/+13
| | | | | | | | | | | | | | | For IKEv1 the previous behavior of always using the initiator's SPI as key is maintained.
| | * Added separate hashtable for hashes of initial IKE messages.Tobias Brunner2012-03-201-64/+139
| | | | | | | | | | | | This does not require us to do a lookup for an SA by SPI first.
| | * Store the major IKE version on ike_sa_id_t.Tobias Brunner2012-03-207-32/+60
| | |
| | * Implemented handling of UNITY_LOAD_BALANCE as reauthentication.Tobias Brunner2012-03-202-3/+28
| | |
| | * Check if we actually have a packet before retransmitting itMartin Willi2012-03-201-1/+1
| | |
| | * Parse IKEv1 Cisco Load Balancing notify (can't act on it yet).Tobias Brunner2012-03-203-4/+27
| | |
| | * Fixed transform numbering in IKEv1 proposal.Tobias Brunner2012-03-201-0/+1
| | |
| | * Compiler warning fixed.Tobias Brunner2012-03-201-2/+6
| | |
| | * Use correct enum values to detect three message tasks for retransmissionMartin Willi2012-03-201-2/+2
| | |
| | * Trigger DPD not before IKE_SA state gets updatedMartin Willi2012-03-201-13/+15
| | |
| | * Fix mapping of IKEv1 encapsulation modeMartin Willi2012-03-201-1/+1
| | |
| | * Use UDP encapsulation even in non-NAT situation if initiator requests itMartin Willi2012-03-201-13/+14
| | |
| | * Support inactivity timeout in IKEv1 CHILD_SAsMartin Willi2012-03-201-1/+24
| | |
| | * Use a dedicated PRF for HASH/SIG payloads using ECDSA specific hasherMartin Willi2012-03-201-14/+37
| | |
| | * Select public key auth method by checking what key we haveMartin Willi2012-03-202-4/+99
| | |
| | * Support ECDSA signatures in IKEv1 pubkey authenticatorMartin Willi2012-03-203-18/+32
| | |
| | * Exchange certificates when using IKEv1 ECDSA authenticationMartin Willi2012-03-202-0/+6
| | |
| | * Accept NULL auth_cfg_t passed to credential_manager_t.get_private()Martin Willi2012-03-201-4/+1
| | |
| | * Support encoding of IKEv1 ECDSA proposalsMartin Willi2012-03-201-6/+16
| | |
| | * Added support for authby/xauth_server legacy optionsMartin Willi2012-03-201-42/+1
| | |
| | * Renamed CONFIGURATION_ATTRIBUTE_LENGTH to streamline it with other ATTRIBUTE ↵Martin Willi2012-03-205-10/+10
| | | | | | | | | | | | rules
| | * Use ATTRIBUTE_VALUE rule in configuration attribute to parse it with correct ↵Martin Willi2012-03-201-1/+1
| | | | | | | | | | | | length
| | * Don't re-resolve addresses during initiate if they have already been setMartin Willi2012-03-201-1/+5
| | |
| | * Adopt children after syncing a rekeyed IKEv1 SAMartin Willi2012-03-203-2/+10
| | |
| | * Synchronize IKEv1 DPD sequence numbersMartin Willi2012-03-201-0/+30
| | |
| | * Setting message ID on task manager sets DPD sequence numbers in IKEv1Martin Willi2012-03-202-2/+12
| | |
| | * Update state before triggering DPD, as we cancel it if PASSIVEMartin Willi2012-03-201-0/+1
| | |
| | * Set thread specific SA on bus for each enumerated IKE_SAMartin Willi2012-03-201-1/+11
| | |
| | * Sync remote virtual IP for IKEv1 SAsMartin Willi2012-03-201-0/+13
| | |
| | * Sync new IKE_SA condition/extension flagsMartin Willi2012-03-202-2/+10
| | |
| | * Added support for Phase1 IV synchronization to HA pluginMartin Willi2012-03-205-27/+129
| | |
| | * Invoke bus_t.message hook twice, once plain and parsed, once encoded and ↵Martin Willi2012-03-2010-17/+37
| | | | | | | | | | | | encrypted
| | * Create IKEv1 keymat hasher explicitly on syncMartin Willi2012-03-201-3/+6
| | |
| | * Clear initiator flag when checking out initial IKEv1 SA from messageMartin Willi2012-03-201-0/+4
| | |
| | * Added support to sync IKEv1 SAs key material in HA pluginMartin Willi2012-03-204-10/+95
| | |
| | * Pass IKEv1 specific keymat to ike_keys hookMartin Willi2012-03-206-12/+20
| | |
| | * Use a more complete implementation of a HA specific diffie_hellman_tMartin Willi2012-03-201-11/+50
| | |
| | * Show IKE version in ipsec statusallMartin Willi2012-03-201-1/+2
| | |
| | * Apply proposal to a HA synced IKE_SAMartin Willi2012-03-201-0/+1
| | |
| | * Set selected proposal on IKEv1 SA, don't pass it separately to Phase 1 helperMartin Willi2012-03-204-21/+20
| | |
| | * Updated HA plugin to new IKEv2 specific keymat functionsMartin Willi2012-03-202-12/+24
| | |
| | * Get a reference for the child_cfg passed to child_create_create()Martin Willi2012-03-201-2/+2
| | |
| | * Invoke bus_t.narrow hook in quick mode exchangeMartin Willi2012-03-201-7/+36
| | |
| | * Invoke authorization hooks for IKEv1 connectionsMartin Willi2012-03-203-25/+95
| | |
| | * Invoke ike_updown hooks for reauthenticated IKEv1 SAsMartin Willi2012-03-202-0/+2
| | |