index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
/
libcharon
Commit message (
Collapse
)
Author
Age
Files
Lines
...
|
|
*
Don't invoke a child_updown hook when a quick mode to delete has been rekeyed
Martin Willi
2012-03-20
1
-1
/
+6
|
|
|
|
|
*
Invoke child_rekey hook instead of child_updown when rekeying a quick mode
Martin Willi
2012-03-20
3
-2
/
+36
|
|
|
|
|
*
Don't invoke updown hook when flushing SAs for IKEv1, tasks will do it
Martin Willi
2012-03-20
1
-10
/
+12
|
|
|
|
|
*
Fix "incoming" flag passed to bus_t.message() hook
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Continue with next exchange after sending an INFORMATIONAL
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Handle retransmission of DPD exchange, both as initiator and responder
Martin Willi
2012-03-20
1
-22
/
+37
|
|
|
|
|
*
Disable DPD checking for peers not supporting it
Martin Willi
2012-03-20
3
-3
/
+20
|
|
|
|
|
*
Added missing DPD task name
Martin Willi
2012-03-20
2
-3
/
+3
|
|
|
|
|
*
Confirm message reception time only if DPD sequence number valid
Martin Willi
2012-03-20
2
-3
/
+10
|
|
|
|
|
*
Simplified DPD handling by using a task for a single message only
Martin Willi
2012-03-20
8
-272
/
+114
|
|
|
|
|
*
Added missing short enum names for DPD notify types
Martin Willi
2012-03-20
1
-1
/
+4
|
|
|
|
|
*
Print IKEv1 notify types in message summary
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Support IKEv1 notifies in message_t.get_notify()
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Check if we have an RNG for IKEv1 task manager before using it
Martin Willi
2012-03-20
1
-9
/
+9
|
|
|
|
|
*
Remove unused DPD sequence number getter on task manager
Martin Willi
2012-03-20
2
-13
/
+2
|
|
|
|
|
*
Don't retransmit, rekey, reauth or DPD check SAs when in PASSIVE state
Martin Willi
2012-03-20
1
-0
/
+24
|
|
|
|
|
*
Send DPD vendor ID
Clavister OpenSource
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Isakmp_dpd task added.
Clavister OpenSource
2012-03-20
11
-9
/
+446
|
|
|
|
|
*
DPD_R_U_THERE defines added
Clavister OpenSource
2012-03-20
2
-1
/
+14
|
|
|
|
|
*
Request and handle retransmission of a lost third aggressive mode message
Martin Willi
2012-03-20
1
-5
/
+8
|
|
|
|
|
*
Streamlined debug output when initiating IKEv1 IKE_SAs
Martin Willi
2012-03-20
2
-2
/
+2
|
|
|
|
|
*
Accept unencrypted Aggressive Mode messages.
Tobias Brunner
2012-03-20
1
-1
/
+2
|
|
|
|
|
|
|
|
|
|
|
|
Racoon does not encrypt the third message during Aggressive Mode.
|
|
*
Enforce encapsulation mode of configuration, in case initiator proposes both
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Added a "aggressive" ipsec.conf connection option
Martin Willi
2012-03-20
1
-1
/
+1
|
|
|
|
|
*
Handle aggressive mode task in IKEv1 task manager
Martin Willi
2012-03-20
1
-6
/
+36
|
|
|
|
|
*
Select IKEv1 configurations by main/aggressive mode option
Martin Willi
2012-03-20
4
-5
/
+8
|
|
|
|
|
*
Added an aggressive mode peer_cfg option
Martin Willi
2012-03-20
12
-18
/
+40
|
|
|
|
|
*
Fix sending of CERTREQ/CERT payloads in aggressive mode
Martin Willi
2012-03-20
2
-2
/
+12
|
|
|
|
|
*
Encrypt payloads of third aggressive mode message
Martin Willi
2012-03-20
1
-3
/
+3
|
|
|
|
|
*
Implemented aggressive mode using Phase 1 helper class
Martin Willi
2012-03-20
5
-0
/
+683
|
|
|
|
|
*
Make use of the new Phase 1 helper class in main mode
Martin Willi
2012-03-20
1
-579
/
+73
|
|
|
|
|
*
Implemented a common Phase 1 helper class to use by main and aggressive modes
Martin Willi
2012-03-20
3
-0
/
+754
|
|
|
|
|
*
Fix error handling if no PSK found for main mode
Martin Willi
2012-03-20
1
-5
/
+9
|
|
|
|
|
*
Install quick mode CHILD_SAs with negotiated encapsulation mode
Martin Willi
2012-03-20
1
-12
/
+17
|
|
|
|
|
*
Support IKEv1 proposal encodings having both lifebytes and a lifetime
Martin Willi
2012-03-20
1
-67
/
+58
|
|
|
|
|
*
Try to detect reauthentication as responder and adopt children to new SA
Martin Willi
2012-03-20
5
-1
/
+233
|
|
|
|
|
*
Destroy IKE_SA after reauthentication initiatend and lifetime limit reached
Martin Willi
2012-03-20
1
-1
/
+6
|
|
|
|
|
*
Added an IKE_SA manager method to enumerate IKE_SA IDs filtered by identities
Martin Willi
2012-03-20
2
-34
/
+59
|
|
|
|
|
*
Query for XAuth identity in get_other_eap_id(), too
Martin Willi
2012-03-20
1
-0
/
+4
|
|
|
|
|
*
Set ISAKMP SA state to rekeying after triggering reauthentication
Martin Willi
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Include peer config overtime in negotiated ISAKMP SA lifetime
Martin Willi
2012-03-20
1
-2
/
+3
|
|
|
|
|
*
Initiate IKEv1 reauthentication, take over all children
Martin Willi
2012-03-20
1
-4
/
+44
|
|
|
|
|
*
Establish IKE_SA only once as XAuth responder
Martin Willi
2012-03-20
1
-1
/
+0
|
|
|
|
|
*
Support initiation of childless IKEv1 ISAKMP SAs
Martin Willi
2012-03-20
1
-1
/
+2
|
|
|
|
|
*
Don't trigger reauthentication if initiator authenticated using XAuth
Martin Willi
2012-03-20
1
-0
/
+1
|
|
|
|
|
*
Set a condition flag if peer has been authenticated using XAuth
Martin Willi
2012-03-20
2
-0
/
+6
|
|
|
|
|
*
Queue Mode Config tasks after main mode as initiator, not as responder
Martin Willi
2012-03-20
1
-6
/
+6
|
|
|
|
|
*
Setting Mode Cfg identifier for CFG_ACK messages.
Clavister OpenSource
2012-03-20
1
-0
/
+7
|
|
|
|
|
*
Add functions to set mode cfg identifier
Clavister OpenSource
2012-03-20
2
-0
/
+27
|
|
|
|
|
*
Try all matching XAuth secrets we find, not only the first one
Martin Willi
2012-03-20
1
-11
/
+23
|
|
|
[prev]
[next]