aboutsummaryrefslogtreecommitdiffstats
path: root/src/libcharon
Commit message (Expand)AuthorAgeFilesLines
...
* ikev1: Avoid modifying local auth config when detecting pubkey methodTobias Brunner2016-03-031-1/+1
* forecast: Fix alignment when adding rulesTobias Brunner2016-03-031-114/+133
* connmark: Fix alignment when adding rulesTobias Brunner2016-03-031-160/+172
* ike: Keep track of send keepalive jobs to avoid scheduling more than one per ...Tobias Brunner2016-03-033-11/+24
* ike: Don't send NAT keepalives if we have no path to the other peerTobias Brunner2016-03-031-3/+9
* vici: Provide ports of local and remote IKE endpointsTobias Brunner2016-03-032-2/+9
* duplicheck: Include required headers for FreeBSDDenis Volpato Martins2016-03-031-0/+2
* charon: Add custom logger to daemonThomas Egerer2016-03-014-43/+336
* vici: Correctly document 'up' key for updown eventsTobias Brunner2016-03-011-4/+4
* ikev2: Use config value for sending of vendor IDsThomas Egerer2016-03-011-13/+43
* ike-sa-manager: Store a reference to the thread that checked out an IKE_SATobias Brunner2016-02-171-13/+14
* Fix of the mutual TNC measurement use caseAndreas Steffen2016-02-161-1/+1
* utils: Add enum name for pseudo log group 'any'Tobias Brunner2016-02-051-10/+3
* libipsec: Pass the same data to del_policy() as to add_policy()Tobias Brunner2016-02-041-2/+2
* ikev2: Add debug message about failed IKE authenticationThomas Egerer2016-02-021-0/+4
* ikev1: Log successful authentication with signature schemeThomas Egerer2016-02-011-1/+1
* peer-cfg: Set DPD timeout to at least DPD delayTobias Brunner2016-02-011-0/+4
* ikev1: Always enable charon.reuse_ikesaTobias Brunner2016-02-011-2/+2
* load-tester: Register kernel-ipsec implementation as plugin featureTobias Brunner2016-02-011-10/+11
* child-rekey: Suppress updown event when deleting redundant CHILD_SAsTobias Brunner2016-02-011-1/+10
* ha: Properly sync IKEv1 IV if gateway is initiatorTobias Brunner2016-02-011-12/+16
* ha: Add DH group to CHILD_ADD messageTobias Brunner2016-02-012-1/+12
* ha: Add DH group to IKE_ADD messageTobias Brunner2016-02-014-0/+16
* ike-sa-manager: Don't update entries for init messages after unlocking segmentTobias Brunner2016-02-011-3/+2
* vici: Support multiple named raw ublic keysAndreas Steffen2016-01-101-15/+19
* swanctl: Load pubkeys with load-credsAndreas Steffen2016-01-091-6/+7
* vici: list-cert sends subject, not-before and not-after attributes for pubkeysAndreas Steffen2016-01-092-1/+28
* vici: Support of raw public keysAndreas Steffen2016-01-095-9/+60
* vici: Enable transport encoding of CERT_TRUSTED_PUBKEY objectsAndreas Steffen2016-01-031-5/+8
* stroke: List DH groups for CHILD_SA proposalsTobias Brunner2015-12-211-23/+19
* vici: Use correct constant when checking for integrity algorithmTobias Brunner2015-12-211-1/+1
* vici: CHILD_SA proposals never contain a PRFTobias Brunner2015-12-211-5/+0
* vici: allow legacy shortcuts in cert queriesAndreas Steffen2015-12-191-10/+14
* Use 128 bit security in README.pod examplesAndreas Steffen2015-12-181-4/+4
* Improvements to the VICI Perl bindings by Andreas HofmeisterAndreas Hofmeister2015-12-184-189/+127
* Apply pubkey and signature constraints in vici pluginAndreas Steffen2015-12-172-115/+7
* 128 bit default security strength for IKE and ESP algorithmsAndreas Steffen2015-12-171-40/+140
* Refactored certificate management for the vici and stroke interfaces5.4.0dr1Andreas Steffen2015-12-126-216/+93
* Modified vici_cert_info class for use with load_creds and vici_credAndreas Steffen2015-12-112-59/+31
* Removed VICI protocol versioningAndreas Steffen2015-12-115-88/+0
* Share vici_cert_info.c with vici_cred.cAndreas Steffen2015-12-113-37/+35
* Use VICI 2.0 protocol version for certificate queriesAndreas Steffen2015-12-114-52/+159
* Sort certificate types during enumerationAndreas Steffen2015-12-111-39/+205
* Define VICI protocol versionsAndreas Steffen2015-12-115-0/+88
* vici: Don't report memory usage via leak-detectiveTobias Brunner2015-12-111-17/+0
* Standardized printing of certificate informationAndreas Steffen2015-12-111-445/+68
* vici: Fix documentation about the initiate/terminate timeoutMartin Willi2015-12-071-2/+2
* vici: Honor an optionally passed IKE configuration name in initiate/installMartin Willi2015-12-072-5/+13
* vici: Support completely asynchronous initiating and terminationMartin Willi2015-12-072-5/+23
* vici: Use an empty local auth round if none givenMartin Willi2015-12-071-3/+2