aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon
Commit message (Collapse)AuthorAgeFilesLines
...
| | * Added IKEv1 Mode Config task based on IKEv2 ike_configMartin Willi2012-03-205-0/+472
| | |
| | * Reject quick modes if IKE_SA not yet establishedMartin Willi2012-03-201-0/+6
| | |
| | * Use a common function to set IKE_SA to establishedMartin Willi2012-03-201-29/+22
| | |
| | * Don't complain when receiving XAuth or Unity configuration attributesMartin Willi2012-03-201-15/+38
| | |
| | * Interpret attribute format correctly in IKEv1 configuration formatMartin Willi2012-03-201-2/+2
| | |
| | * Implemented responder part of XAUTH taskMartin Willi2012-03-201-12/+96
| | |
| | * Implemented initiator part of xauth taskMartin Willi2012-03-201-1/+167
| | |
| | * Ask for a username/password in xauth-null as XAUTH initiatorMartin Willi2012-03-201-11/+12
| | |
| | * Get first XAuth backend if none configuredMartin Willi2012-03-201-1/+2
| | |
| | * Accept a xauth backend name appended to left/rightauthMartin Willi2012-03-201-1/+8
| | |
| | * Remove unused task swap_initiator methodMartin Willi2012-03-201-5/+0
| | |
| | * Use a string to identify xauth backends, no need for integer typesMartin Willi2012-03-207-77/+48
| | |
| | * Remove xauth_authenticator, we handle it in the taskMartin Willi2012-03-203-231/+0
| | |
| | * Use a second authentication config to configure XAUTH authenticationMartin Willi2012-03-202-39/+104
| | |
| | * Replace xauth_request task with a new stub where we reimplement itMartin Willi2012-03-2011-882/+239
| | |
| | * Added missing auth_method_t enum namesMartin Willi2012-03-201-1/+9
| | |
| | * Defined hybrid IKEv1 authentication methodsMartin Willi2012-03-201-0/+10
| | |
| | * Some notification errors added to main_mode process_rClavister OpenSource2012-03-201-4/+58
| | |
| | * Encrypt INFORMATIONAL exchange if neededClavister OpenSource2012-03-201-11/+22
| | |
| | * Added possibility to send notification if task_manager->process failsClavister OpenSource2012-03-201-52/+68
| | |
| | * added functions for getting/setting ISAKMP SPI to notify payloadClavister OpenSource2012-03-202-0/+51
| | |
| | * Handling of initial contactClavister OpenSource2012-03-203-0/+67
| | |
| | * Added retransmissions for initiator.Clavister OpenSource2012-03-201-10/+23
| | |
| | * Cleaned up quick mode notify processingMartin Willi2012-03-201-21/+33
| | |
| | * Add support for KE payloads in IKEv1 quick mode (PFS)Martin Willi2012-03-201-5/+82
| | |
| | * En- and decode DH group attribute in quick mode SA payloadsMartin Willi2012-03-201-0/+13
| | |
| | * Use authenticators in IKEv1 main modeMartin Willi2012-03-201-247/+28
| | |
| | * Added a factory function for IKEv1 authenticatorsMartin Willi2012-03-202-2/+42
| | |
| | * Implemented IKEv1 pubkey SIG payload processing in an authenticatorMartin Willi2012-03-203-0/+260
| | |
| | * Implemented IKEv1 PSK HASH payload processing in separated authenticatorMartin Willi2012-03-203-0/+199
| | |
| | * Handle incoming delete messagesClavister OpenSource2012-03-204-6/+68
| | |
| | * use untoh64 instead of non-portable be64tohAndreas Steffen2012-03-201-1/+1
| | |
| | * Implemented post-authentication certificate handling for IKEv1Martin Willi2012-03-205-1/+407
| | |
| | * Cleanup CERT payload constructorsMartin Willi2012-03-203-22/+27
| | |
| | * Implemented pre-authentication certificate handling for IKEv1Martin Willi2012-03-205-4/+577
| | |
| | * Added task types for IKEv1 certificate handlingMartin Willi2012-03-202-0/+8
| | |
| | * Cleaned up certreq payload for IKEv2/IKEv1 useMartin Willi2012-03-202-53/+52
| | |
| | * Reverted ike_cert tasks to IKEv2 only, we use dedicated IKEv1 tasksMartin Willi2012-03-202-497/+41
| | |
| | * Install SAs with UDP encapsulation during Quick Mode.Tobias Brunner2012-03-201-16/+9
| | |
| | * Fix support for plain RSA authentication in IKEv1, both as initiator and ↵Martin Willi2012-03-202-30/+39
| | | | | | | | | | | | responder
| | * Fix referencing of multiple CERTREQ payload with IKEv1, other cleanupsMartin Willi2012-03-201-60/+53
| | |
| | * Encode a single IP traffic selector as ID_IPV?_ADDRESS identityMartin Willi2012-03-201-3/+16
| | |
| | * Added missing break;s when converting ID_IP_ADDRESS types to ts, extracted ↵Martin Willi2012-03-201-10/+14
| | | | | | | | | | | | function
| | * Don't use unportable htobe64 macro directlyMartin Willi2012-03-201-1/+1
| | |
| | * XAUTH additions for certificates.Clavister OpenSource2012-03-201-6/+17
| | |
| | * signature payload handling.Clavister OpenSource2012-03-201-10/+188
| | |
| | * certificate tasks added to passive list for responderClavister OpenSource2012-03-201-0/+6
| | |
| | * certificate handling for XAuth responder.Clavister OpenSource2012-03-206-54/+572
| | |
| | * keymat: derive_ike_keys updated with XAUTH RSA:sClavister OpenSource2012-03-201-1/+7
| | |
| | * Setting transform number in esp proposal.Clavister OpenSource2012-03-201-1/+1
| | | | | | | | | | | | iPhone (racoon) fails quick mode when transform number is 0