aboutsummaryrefslogtreecommitdiffstats
path: root/src/libstrongswan/plugins/x509
Commit message (Collapse)AuthorAgeFilesLines
...
* support for hash and URL encoded certificate payloads in charonTobias Brunner2008-04-181-0/+26
|
* added API for random number generators, served through credential factoryMartin Willi2008-04-151-8/+11
| | | | ported randomizer_t to a rng_t on top of /dev/(u)random (plugin random)
* compare certificates against full encoding to allow equality check of ↵Martin Willi2008-04-075-36/+50
| | | | untrusted certs
* removed unused gmp.h to build libstrongswan without libgmpMartin Willi2008-04-041-1/+0
|
* caching of ocsp responses (experimental), no crl caching yetMartin Willi2008-03-265-76/+42
|
* treat sig_alg and algorithm comparison in a consistent way over all ↵Andreas Steffen2008-03-262-3/+9
| | | | certificate types
* fixed compiler warningsMartin Willi2008-03-263-10/+15
|
* certificate factory can load certs from fileAndreas Steffen2008-03-253-51/+414
|
* renamed certificate field in x509_cert.c to encodingAndreas Steffen2008-03-251-9/+5
|
* fixed refence counts before calling attribute certificate factoryAndreas Steffen2008-03-251-0/+4
|
* corrected some doxygen entriesAndreas Steffen2008-03-224-26/+13
|
* optimized self-signed certificate detectionAndreas Steffen2008-03-211-7/+6
|
* self-signed certificates were not marked by x509_cert.cAndreas Steffen2008-03-211-14/+22
|
* added ietf group attribute support to attibute certificate factoryAndreas Steffen2008-03-211-0/+4
|
* fixed memory allocation problem in openacAndreas Steffen2008-03-211-13/+9
|
* added BUILD_SERIAL component and fixed several ac bugsAndreas Steffen2008-03-211-6/+14
|
* added credential factory support for BULD_NOT_BEFORE_TIME and ↵Andreas Steffen2008-03-211-22/+23
| | | | BUILD_NOT_AFTER_TIME
* added x509_ac_builder pluginAndreas Steffen2008-03-211-0/+5
|
* refactored openac and its attribute certificate factoryAndreas Steffen2008-03-205-2/+1365
|
* included utils/linked_list.hAndreas Steffen2008-03-201-0/+1
|
* CA certificates are allowed to sign OCSP responsed without OCSP_SIGNER flagMartin Willi2008-03-201-1/+2
|
* attempt to achieve consistent debugging outputAndreas Steffen2008-03-191-6/+6
|
* made is_newer() a certificate_t methodAndreas Steffen2008-03-183-52/+98
|
* enforcing x509_flags on certificate constructionMartin Willi2008-03-171-13/+21
|
* fixed CRL revoked certs enumerationMartin Willi2008-03-171-4/+4
|
* removed X509_PEER flag; flags are meant to read cert, not to store ↵Martin Willi2008-03-141-9/+0
| | | | | | | additional state in cert removed x509_t.set_flags for the reason above implemented a simple, generic shared_key_t
* merged the modularization branch (credentials) back to trunkMartin Willi2008-03-1311-0/+3852