Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | added getprotobyname to whitelist4.4.0 | Andreas Steffen | 2010-05-02 | 1 | -0/+1 |
| | |||||
* | We have to rename thread_create on Mac OS X because it conflicts with a syscall. | Tobias Brunner | 2010-04-29 | 1 | -0/+6 |
| | |||||
* | The mutex of a thread has to be locked when destroying it. | Tobias Brunner | 2010-04-29 | 1 | -0/+2 |
| | |||||
* | Fixed RSA key generation with gcrypt | Martin Willi | 2010-04-29 | 1 | -1/+1 |
| | |||||
* | PEM encoder supports encoding from RSA components directly, allowing gcrypt ↵ | Martin Willi | 2010-04-29 | 3 | -37/+42 |
| | | | | plugin to encode in PEM | ||||
* | Added support for DH groups 22, 23 and 24, patch contributed by Joy Latten | Martin Willi | 2010-04-19 | 7 | -3/+150 |
| | |||||
* | Integrating libhydra into the Android build system. | Tobias Brunner | 2010-04-12 | 1 | -3/+0 |
| | |||||
* | fixed silly bug | Andreas Steffen | 2010-04-12 | 1 | -1/+1 |
| | |||||
* | Fixed OpenSSL engine_id setting, i.e. do not use 'library.' prefix for ↵ | Tobias Brunner | 2010-04-10 | 1 | -1/+1 |
| | | | | settings in libstrongswan. | ||||
* | Store DH generator in a chunk, hide non-public data in a private struct | Martin Willi | 2010-04-08 | 5 | -313/+305 |
| | |||||
* | Renamed clone function to avoid name clash with uclibc | Martin Willi | 2010-04-07 | 1 | -2/+2 |
| | |||||
* | Some whitespace fixes. | Tobias Brunner | 2010-04-06 | 5 | -8/+8 |
| | |||||
* | Adding DBG_LIB to all calls of libstrongswan's version of DBG*. | Tobias Brunner | 2010-04-06 | 60 | -424/+491 |
| | |||||
* | Adding support for debug groups in libstrongswan's logger. | Tobias Brunner | 2010-04-06 | 2 | -11/+14 |
| | |||||
* | Move debug groups from charon's bus.h to libstrongswan's debug.h. | Tobias Brunner | 2010-04-06 | 2 | -0/+92 |
| | |||||
* | PEM encoding for OpenSSL RSA and EC public and private keys | Andreas Steffen | 2010-04-04 | 5 | -12/+72 |
| | |||||
* | PEM encoding for GMP RSA public and private keys | Andreas Steffen | 2010-04-04 | 6 | -3/+167 |
| | |||||
* | fixed typo | Andreas Steffen | 2010-04-04 | 1 | -1/+1 |
| | |||||
* | fixed doxygen group | Andreas Steffen | 2010-04-03 | 1 | -1/+1 |
| | |||||
* | change #define to PEM_BUILDER_H_ | Andreas Steffen | 2010-04-03 | 1 | -3/+3 |
| | |||||
* | Attributes moved from libstrongswan to libhydra. | Tobias Brunner | 2010-03-24 | 9 | -778/+0 |
| | | | | | The attribute_manager_t instance is now located on the new hydra object instead of the lib object. | ||||
* | Moving attr-sql plugin from libstrongswan to libhydra. | Tobias Brunner | 2010-03-24 | 8 | -1996/+0 |
| | |||||
* | Fixed some Doxygen warnings. | Tobias Brunner | 2010-03-24 | 1 | -14/+14 |
| | |||||
* | Fixed ipsec pool --batch command | Heiko Hund | 2010-03-24 | 1 | -2/+2 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | --batch mode has shown to be buggy in very obscure ways in the first real life tests. For example a batch file --del pool1 --replace pool2 --addresses file1 returned the error "/usr/libexec/ipsec/pool: unrecognized option '--lace'" which was gone after moving the --del behind --replace. With the patch from below applied everything works like a charm. From the info on the man page it seem to be unrelated to this problem, though: A program that scans multiple argument vectors, or rescans the same vector more than once, and wants to make use of GNU extensions such as '+' and '-' at the start of optstring, or changes the value of POSIXLY_CORRECT between scans, must reinitialize getopt() by resetting optind to 0, rather than the traditional value of 1. (Resetting to 0 forces the invocation of an internal initialization routine that rechecks POSIXLY_CORRECT and checks for GNU exten- sions in optstring.) Signed-off-by: Heiko Hund <hhund@astaro.com> | ||||
* | Use vstr/gmp as shared libraries in the Android build. | Tobias Brunner | 2010-03-23 | 1 | -4/+2 |
| | |||||
* | Do not indent the source file lists in Android.mk files so we can easily ↵ | Tobias Brunner | 2010-03-19 | 1 | -58/+58 |
| | | | | compare them to the lists in the Makefile.am files. | ||||
* | Use wildcards to gather plugin source files. | Tobias Brunner | 2010-03-19 | 1 | -90/+31 |
| | |||||
* | Removed strayed code fragment | Martin Willi | 2010-03-19 | 1 | -20/+4 |
| | |||||
* | ipsec pool --batch command | Heiko Hund | 2010-03-19 | 1 | -60/+200 |
| | | | | | | | | Introduce the --batch command which reads several ipsec pool commands and their arguments from a file or STDIN. Useful if you need to run serveral commands atomically from a configuration daemon or likewise. Signed-off-by: Heiko Hund <hhund@astaro.com> | ||||
* | ipsec pool error return status | Heiko Hund | 2010-03-19 | 1 | -49/+51 |
| | | | | | | | Fix the error return status of the ipsec pool command. Also make --del for attributes succeed if no --server option was given. Signed-off-by: Heiko Hund <hhund@astaro.com> | ||||
* | ipsec pool --replace command | Heiko Hund | 2010-03-19 | 1 | -23/+61 |
| | | | | | | | | | Introduce the pool --replace command as an alternative to --add. Also change the current behavior of allowing duplicate pool names so that, --add with an existing name fails and --replace removes the existing pool before adding the new one. Signed-off-by: Heiko Hund <hhund@astaro.com> | ||||
* | --addresses option for ipsec pool --add command | Heiko Hund | 2010-03-19 | 1 | -5/+187 |
| | | | | | | | | | Introduce the --addresses option for --add that can be used to add a pool containing non-contiguous addresses. Additionally it allows to preclaim certain addresses for certain roadwarrior IDs. See the second chunk of the patch for a more detailed description. Signed-off-by: Heiko Hund <hhund@astaro.com> | ||||
* | EAP-MSCHAPv2 can use stored NT hashes in addition to plaintext passwords | Martin Willi | 2010-03-17 | 1 | -0/+2 |
| | |||||
* | setting the two most significant bits assures an RSA modulus of maximum bit size | Andreas Steffen | 2010-03-15 | 1 | -2/+2 |
| | |||||
* | fix 64bit issue with time_t from database | Andreas Steffen | 2010-03-10 | 1 | -2/+8 |
| | |||||
* | Provide the Diffie Hellman parameters from a central location, so that we do ↵ | Tobias Brunner | 2010-03-09 | 5 | -733/+380 |
| | | | | | | | | not have to replicate them in every plugin that implements the DH interface. The main reason for this change is that Android's libcrypto does not include the get_rfcX_prime_Y functions by default. Therefore we would have had to replicate the primes a third time. | ||||
* | Adding the OpenSSL plugin to the Android build. | Tobias Brunner | 2010-03-08 | 3 | -2/+20 |
| | |||||
* | Adding a helper function that translates single characters in a string. | Tobias Brunner | 2010-03-08 | 3 | -19/+32 |
| | |||||
* | Replaced the deprecated RSA_generate_key with RSA_generate_key_ex. | Tobias Brunner | 2010-03-08 | 1 | -2/+25 |
| | |||||
* | Implemented the PRF_KEYED_SHA1 algorithm in the openssl plugin | Martin Willi | 2010-03-08 | 5 | -7/+202 |
| | |||||
* | critical keyUsage extension must be parsed | Andreas Steffen | 2010-03-07 | 1 | -0/+3 |
| | |||||
* | set Certificate Sign and CRL Sign flags in keyUsage extension if CA is true | Andreas Steffen | 2010-03-07 | 2 | -5/+14 |
| | |||||
* | Build libstrongswan before building any plugins during the non-monolithic ↵ | Tobias Brunner | 2010-03-05 | 1 | -0/+4 |
| | | | | build (as it was before). | ||||
* | The parsed timeval is unsigned. | Tobias Brunner | 2010-03-03 | 1 | -2/+2 |
| | |||||
* | The return value of snprintf is int not size_t. | Tobias Brunner | 2010-03-03 | 2 | -3/+4 |
| | |||||
* | Add braces around empty body in if statement | Martin Willi | 2010-03-03 | 1 | -1/+1 |
| | |||||
* | Use "static const", some GCCs don't like "const static" | Martin Willi | 2010-03-03 | 1 | -2/+2 |
| | |||||
* | Adding Android.mk files to build charon and libstrongswan with the Android ↵ | Tobias Brunner | 2010-03-03 | 3 | -1/+178 |
| | | | | build system. | ||||
* | Reverting eba28948a584b9d02474cf5d256b04b8d2adbe6a which was only necessary ↵ | Tobias Brunner | 2010-03-02 | 28 | -42/+7 |
| | | | | | | | when cross-compiling the plugins for Android 2.0. With the coming monolithic build using Android.mk files this won't be necessary anymore. | ||||
* | Streamlined the source file list formatting in plugin makefiles. | Tobias Brunner | 2010-03-02 | 28 | -52/+96 |
| |