index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
/
libcharon
Commit message (
Collapse
)
Author
Age
Files
Lines
...
|
|
*
Implemented table of connected peers without linked_list_t.
Tobias Brunner
2012-03-20
1
-63
/
+75
|
|
|
|
|
*
Implemented table of half open IKE_SAs without linked_list_t.
Tobias Brunner
2012-03-20
1
-52
/
+47
|
|
|
|
|
*
Don't use linked_list_t for buckets in main IKE_SA hash table.
Tobias Brunner
2012-03-20
1
-57
/
+82
|
|
|
|
|
*
Fixed deadlock if checkin_and_destroy is called during shutdown.
Tobias Brunner
2012-03-20
1
-0
/
+10
|
|
|
|
|
*
Do not clone hashes of initial IKE messages when storing them in the hash table.
Tobias Brunner
2012-03-20
1
-7
/
+6
|
|
|
|
|
*
Store IKEv2 IKE_SAs by local SPI in the IKE_SA manager hash table.
Tobias Brunner
2012-03-20
1
-2
/
+13
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
For IKEv1 the previous behavior of always using the initiator's SPI as key is maintained.
|
|
*
Added separate hashtable for hashes of initial IKE messages.
Tobias Brunner
2012-03-20
1
-64
/
+139
|
|
|
|
|
|
|
|
|
|
|
|
This does not require us to do a lookup for an SA by SPI first.
|
|
*
Store the major IKE version on ike_sa_id_t.
Tobias Brunner
2012-03-20
7
-32
/
+60
|
|
|
|
|
*
Implemented handling of UNITY_LOAD_BALANCE as reauthentication.
Tobias Brunner
2012-03-20
2
-3
/
+28
|
|
|
|
|
*
Check if we actually have a packet before retransmitting it
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Parse IKEv1 Cisco Load Balancing notify (can't act on it yet).
Tobias Brunner
2012-03-20
3
-4
/
+27
|
|
|
|
|
*
Fixed transform numbering in IKEv1 proposal.
Tobias Brunner
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Compiler warning fixed.
Tobias Brunner
2012-03-20
1
-2
/
+6
|
|
|
|
|
*
Use correct enum values to detect three message tasks for retransmission
Martin Willi
2012-03-20
1
-2
/
+2
|
|
|
|
|
*
Trigger DPD not before IKE_SA state gets updated
Martin Willi
2012-03-20
1
-13
/
+15
|
|
|
|
|
*
Fix mapping of IKEv1 encapsulation mode
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Use UDP encapsulation even in non-NAT situation if initiator requests it
Martin Willi
2012-03-20
1
-13
/
+14
|
|
|
|
|
*
Support inactivity timeout in IKEv1 CHILD_SAs
Martin Willi
2012-03-20
1
-1
/
+24
|
|
|
|
|
*
Use a dedicated PRF for HASH/SIG payloads using ECDSA specific hasher
Martin Willi
2012-03-20
1
-14
/
+37
|
|
|
|
|
*
Select public key auth method by checking what key we have
Martin Willi
2012-03-20
2
-4
/
+99
|
|
|
|
|
*
Support ECDSA signatures in IKEv1 pubkey authenticator
Martin Willi
2012-03-20
3
-18
/
+32
|
|
|
|
|
*
Exchange certificates when using IKEv1 ECDSA authentication
Martin Willi
2012-03-20
2
-0
/
+6
|
|
|
|
|
*
Accept NULL auth_cfg_t passed to credential_manager_t.get_private()
Martin Willi
2012-03-20
1
-4
/
+1
|
|
|
|
|
*
Support encoding of IKEv1 ECDSA proposals
Martin Willi
2012-03-20
1
-6
/
+16
|
|
|
|
|
*
Added support for authby/xauth_server legacy options
Martin Willi
2012-03-20
1
-42
/
+1
|
|
|
|
|
*
Renamed CONFIGURATION_ATTRIBUTE_LENGTH to streamline it with other ATTRIBUTE ↵
Martin Willi
2012-03-20
5
-10
/
+10
|
|
|
|
|
|
|
|
|
|
|
|
rules
|
|
*
Use ATTRIBUTE_VALUE rule in configuration attribute to parse it with correct ↵
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
|
|
|
|
|
|
|
length
|
|
*
Don't re-resolve addresses during initiate if they have already been set
Martin Willi
2012-03-20
1
-1
/
+5
|
|
|
|
|
*
Adopt children after syncing a rekeyed IKEv1 SA
Martin Willi
2012-03-20
3
-2
/
+10
|
|
|
|
|
*
Synchronize IKEv1 DPD sequence numbers
Martin Willi
2012-03-20
1
-0
/
+30
|
|
|
|
|
*
Setting message ID on task manager sets DPD sequence numbers in IKEv1
Martin Willi
2012-03-20
2
-2
/
+12
|
|
|
|
|
*
Update state before triggering DPD, as we cancel it if PASSIVE
Martin Willi
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Set thread specific SA on bus for each enumerated IKE_SA
Martin Willi
2012-03-20
1
-1
/
+11
|
|
|
|
|
*
Sync remote virtual IP for IKEv1 SAs
Martin Willi
2012-03-20
1
-0
/
+13
|
|
|
|
|
*
Sync new IKE_SA condition/extension flags
Martin Willi
2012-03-20
2
-2
/
+10
|
|
|
|
|
*
Added support for Phase1 IV synchronization to HA plugin
Martin Willi
2012-03-20
5
-27
/
+129
|
|
|
|
|
*
Invoke bus_t.message hook twice, once plain and parsed, once encoded and ↵
Martin Willi
2012-03-20
10
-17
/
+37
|
|
|
|
|
|
|
|
|
|
|
|
encrypted
|
|
*
Create IKEv1 keymat hasher explicitly on sync
Martin Willi
2012-03-20
1
-3
/
+6
|
|
|
|
|
*
Clear initiator flag when checking out initial IKEv1 SA from message
Martin Willi
2012-03-20
1
-0
/
+4
|
|
|
|
|
*
Added support to sync IKEv1 SAs key material in HA plugin
Martin Willi
2012-03-20
4
-10
/
+95
|
|
|
|
|
*
Pass IKEv1 specific keymat to ike_keys hook
Martin Willi
2012-03-20
6
-12
/
+20
|
|
|
|
|
*
Use a more complete implementation of a HA specific diffie_hellman_t
Martin Willi
2012-03-20
1
-11
/
+50
|
|
|
|
|
*
Show IKE version in ipsec statusall
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Apply proposal to a HA synced IKE_SA
Martin Willi
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Set selected proposal on IKEv1 SA, don't pass it separately to Phase 1 helper
Martin Willi
2012-03-20
4
-21
/
+20
|
|
|
|
|
*
Updated HA plugin to new IKEv2 specific keymat functions
Martin Willi
2012-03-20
2
-12
/
+24
|
|
|
|
|
*
Get a reference for the child_cfg passed to child_create_create()
Martin Willi
2012-03-20
1
-2
/
+2
|
|
|
|
|
*
Invoke bus_t.narrow hook in quick mode exchange
Martin Willi
2012-03-20
1
-7
/
+36
|
|
|
|
|
*
Invoke authorization hooks for IKEv1 connections
Martin Willi
2012-03-20
3
-25
/
+95
|
|
|
|
|
*
Invoke ike_updown hooks for reauthenticated IKEv1 SAs
Martin Willi
2012-03-20
2
-0
/
+2
|
|
|
[prev]
[next]