aboutsummaryrefslogtreecommitdiffstats
path: root/src/libstrongswan/plugins
Commit message (Collapse)AuthorAgeFilesLines
...
* Enumerate tokens and their mechanisms, wait for slot eventsMartin Willi2010-08-041-9/+222
|
* Depend on libcharon until we have a thread pool to useMartin Willi2010-08-041-1/+2
|
* Add enum names for CK_MECHANISM_TYPE constantsMartin Willi2010-08-042-0/+279
|
* Make the PKCS#11 padding string trimming public, add null terminatorMartin Willi2010-08-042-10/+18
|
* Added a getter for the library aliasMartin Willi2010-08-042-0/+20
|
* Moved PKCS#11 library loading to dedicated managerMartin Willi2010-08-044-30/+135
|
* Use locking, prefer our mutex abstraction layerMartin Willi2010-08-041-1/+60
|
* Added enum names for PKCS#11 return valuesMartin Willi2010-08-042-3/+162
|
* Load PKCS#11 modules defined in strongswan.confMartin Willi2010-08-041-0/+33
|
* Implemented an abstraction layer for PKCS#11 module loadingMartin Willi2010-08-043-1/+201
|
* Imported the free pkcs11.h header form the Scute projectMartin Willi2010-08-042-1/+1358
|
* Added PKCS#11 token plugin stubMartin Willi2010-08-043-0/+108
|
* Added support for AUTH_HMAC_SHA2_256_256, used in TLSMartin Willi2010-08-031-0/+3
|
* Added support for Certificate, CRL and PKCS10 encoding to PEM pluginMartin Willi2010-07-131-0/+19
|
* Support different encoding types in certificate.get_encoding()Martin Willi2010-07-1311-50/+138
|
* Renamed key_encod{ing,der}_t and constants, prepare for generic credential ↵Martin Willi2010-07-1326-160/+160
| | | | encoding
* Moved keys/key_encoding.[ch] to cred_encoding.[ch]Martin Willi2010-07-133-3/+3
|
* Moved addrblock plugin to libcharonMartin Willi2010-07-135-292/+0
|
* Moved CRL/OCSP checking to a dedicated plugin called revocationMartin Willi2010-07-135-0/+750
|
* Moved X509 addrBlock validation to a separate addrblock pluginMartin Willi2010-07-135-0/+292
|
* Some Doxygen fixes.Tobias Brunner2010-07-051-4/+4
|
* Select subjectAltName address family using address length in openssl pluginMartin Willi2010-06-241-2/+12
|
* Select subjectAltName address family using address length in x509 pluginMartin Willi2010-06-241-1/+11
|
* Fixing compilation of the OpenSSL plugin if ENGINE support is disabled.Tobias Brunner2010-06-222-2/+14
| | | | | That is, enable compilation if OpenSSL was configured with OPENSSL_NO_ENGINE.
* Fixing compilation of the OpenSSL plugin if Elliptic Curve support is disabled.Tobias Brunner2010-06-224-3/+25
| | | | | That is, enable compilation if OpenSSL was configured with OPENSSL_NO_EC.
* Unwrap subjectKeyIdentifier from OCTET_STRINGMartin Willi2010-05-261-4/+12
|
* Use CAs subjectKeyIdentifier as CRLs authorityKeyIdentifierMartin Willi2010-05-211-1/+1
|
* Added support for CRL generation to x509 pluginMartin Willi2010-05-213-3/+199
|
* Removed is_newer() from certificate_t, obsoleting all implementationsMartin Willi2010-05-219-175/+2
|
* Migrated x509_crl_t to INIT/METHOD macrosMartin Willi2010-05-211-95/+70
|
* Implemented X.509 CRL reading using OpenSSLMartin Willi2010-05-214-1/+606
|
* Implemented X.509 certificate reading using OpenSSLMartin Willi2010-05-216-2/+1054
|
* Fixed doxygen groupMartin Willi2010-05-201-1/+1
|
* Explicitly link gpg-error to gcrypt pluginMartin Willi2010-05-171-1/+1
|
* Support decoding of subjectPublicKeyInfo in openssl without pkcs1 pluginMartin Willi2010-05-052-2/+16
|
* Do not check pointer, but length of a chunkMartin Willi2010-05-051-1/+1
|
* Do not print filename twice if plugin loading fails, dlerror() contains the ↵Martin Willi2010-05-051-2/+1
| | | | filename
* Fixed RSA key generation with gcryptMartin Willi2010-04-291-1/+1
|
* PEM encoder supports encoding from RSA components directly, allowing gcrypt ↵Martin Willi2010-04-293-37/+42
| | | | plugin to encode in PEM
* Added support for DH groups 22, 23 and 24, patch contributed by Joy LattenMartin Willi2010-04-194-1/+29
|
* Fixed OpenSSL engine_id setting, i.e. do not use 'library.' prefix for ↵Tobias Brunner2010-04-101-1/+1
| | | | settings in libstrongswan.
* Store DH generator in a chunk, hide non-public data in a private structMartin Willi2010-04-083-18/+27
|
* Some whitespace fixes.Tobias Brunner2010-04-065-8/+8
|
* Adding DBG_LIB to all calls of libstrongswan's version of DBG*.Tobias Brunner2010-04-0641-283/+340
|
* PEM encoding for OpenSSL RSA and EC public and private keysAndreas Steffen2010-04-045-12/+72
|
* PEM encoding for GMP RSA public and private keysAndreas Steffen2010-04-046-3/+167
|
* fixed doxygen groupAndreas Steffen2010-04-031-1/+1
|
* change #define to PEM_BUILDER_H_Andreas Steffen2010-04-031-3/+3
|
* Moving attr-sql plugin from libstrongswan to libhydra.Tobias Brunner2010-03-247-1989/+0
|
* Fixed ipsec pool --batch commandHeiko Hund2010-03-241-2/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | --batch mode has shown to be buggy in very obscure ways in the first real life tests. For example a batch file --del pool1 --replace pool2 --addresses file1 returned the error "/usr/libexec/ipsec/pool: unrecognized option '--lace'" which was gone after moving the --del behind --replace. With the patch from below applied everything works like a charm. From the info on the man page it seem to be unrelated to this problem, though: A program that scans multiple argument vectors, or rescans the same vector more than once, and wants to make use of GNU extensions such as '+' and '-' at the start of optstring, or changes the value of POSIXLY_CORRECT between scans, must reinitialize getopt() by resetting optind to 0, rather than the traditional value of 1. (Resetting to 0 forces the invocation of an internal initialization routine that rechecks POSIXLY_CORRECT and checks for GNU exten- sions in optstring.) Signed-off-by: Heiko Hund <hhund@astaro.com>