aboutsummaryrefslogtreecommitdiffstats
path: root/src/libstrongswan/credentials
Commit message (Expand)AuthorAgeFilesLines
* Fix various API doc issues and typosTobias Brunner2013-07-181-1/+1
* credmgr: introduce a hook function to catch trust chain validation errorsMartin Willi2013-07-183-6/+96
* credmgr: stop querying for secrets once we get a perfect matchMartin Willi2013-07-181-0/+4
* credmgr: don't use pointers for id_match_t enum valuesMartin Willi2013-07-181-2/+2
* auth-cfg: use array instead of linked listMartin Willi2013-07-171-35/+26
* Remove pluto specific certificate typesTobias Brunner2013-05-082-8/+1
* Add pkcs12 plugin which adds support for decoding PKCS#12 containersTobias Brunner2013-05-083-1/+31
* Add support for PKCS#7/CMS encrypted-dataTobias Brunner2013-05-082-5/+11
* Move PKCS#12 key derivation to a separate fileTobias Brunner2013-05-082-0/+224
* sshkey: Added builder for SSHKEY RSA keysTobias Brunner2013-05-072-0/+3
* Add a method to replace all secrets in a mem_cred_t objectTobias Brunner2013-03-202-5/+68
* Merge branch 'multi-cert'Martin Willi2013-03-012-12/+77
|\
| * After merging the used trustchain with config, move used certificate to frontMartin Willi2013-01-181-0/+24
| * Try to build a trustchain for all configured certificates before enforcing oneMartin Willi2013-01-181-1/+29
| * Make AUTH_RULE_SUBJECT cert multi-valuedMartin Willi2013-01-181-11/+24
* | Merge branch 'systime'Martin Willi2013-03-012-10/+69
|\ \
| * | Add a cert_validator hook allowing plugins to provide custom lifetime checkingMartin Willi2013-02-192-10/+64
| * | Make cert_validator_t.validate optional to implementMartin Willi2013-02-192-0/+5
| |/
* | Fix auth_cfg_t.clone() for single-valued auth rulesTobias Brunner2013-02-281-10/+11
* | Encode RSA public keys in RFC 3110 DNSKEY formatAndreas Steffen2013-02-191-0/+2
|/
* Fix doxygen grouping regarding containers and PKCS#7Martin Willi2012-12-191-4/+4
* Allocate data returned by pkcs7_t.get_attribute()Martin Willi2012-12-191-1/+4
* Fix enum names for container_type_tMartin Willi2012-12-191-1/+1
* Add an enumerator for PKCS#7 contained certificatesMartin Willi2012-12-191-0/+7
* Add a getter for signed PKCS#7 attributesMartin Willi2012-12-191-0/+14
* Add builder parts to generate PKCS#7 containersMartin Willi2012-12-192-1/+10
* Add a generic interface for crypto containers and a more specific PKCS#7 inte...Martin Willi2012-12-195-5/+176
* allow the optional sharing if RSA private keysAndreas Steffen2012-11-222-0/+6
* implemented generation of safe primesAndreas Steffen2012-11-182-0/+3
* Moved debug.[ch] to utils folderTobias Brunner2012-10-246-6/+6
* Moved data structures to new collections subfolderTobias Brunner2012-10-2413-14/+14
* Fix equality comparison of auth_cfg_tTobias Brunner2012-09-181-2/+16
* Add AUTH_RULE_IDENTITY_LOOSE which allows to use IDr loosely as initiatorTobias Brunner2012-09-182-0/+26
* Comment fixedTobias Brunner2012-08-131-1/+1
* Show which group would be required when failing in constraint checkMartin Willi2012-07-261-8/+10
* Add an option to disable libstrongswan certificate cachingMartin Willi2012-07-091-18/+29
* Support multiple different public key strength types in constraintsMartin Willi2012-06-121-41/+38
* Add signature schemes to auth_cfg during trustchain validationMartin Willi2012-06-124-17/+43
* certificate_t->issued_by takes an argument to receive signature schemeMartin Willi2012-06-122-2/+4
* Define auth_cfg rules for signature schemesMartin Willi2012-06-122-0/+53
* Merge branch 'ikev1'Martin Willi2012-05-025-42/+142
|\
| * Merge branch 'ikev1-clean' into ikev1-masterMartin Willi2012-03-205-42/+140
| |\
| | * Accept NULL auth_cfg_t passed to credential_manager_t.get_private()Martin Willi2012-03-201-26/+32
| | * Fixed create_shared_enumerator method descriptionMartin Willi2012-03-201-1/+1
| | * Added a flag to register local credential sets exclusively, disabling all othersMartin Willi2012-03-202-16/+72
| | * Added support for iKEIntermediate X.509 extended key usage flag.Tobias Brunner2012-03-201-0/+2
| | * Some whitespace fixes.Tobias Brunner2012-03-201-4/+4
| | * Added an XAUTH identity to use or require for XAuth authenticationMartin Willi2012-03-202-0/+11
| | * Stop checking once a key size constraint is not fulfilledMartin Willi2012-03-201-0/+3
| | * Free list after removing the last local credential set, fixes a leak reportMartin Willi2012-03-201-0/+5