aboutsummaryrefslogtreecommitdiffstats
path: root/src/libstrongswan
Commit message (Collapse)AuthorAgeFilesLines
* Encode RSA public keys in RFC 3110 DNSKEY formatAndreas Steffen2013-02-196-2/+143
|
* Moved configuration from resolver manager to unbound pluginAndreas Steffen2013-02-196-52/+41
| | | | Also streamlined log messages in unbound plugin.
* unbound: Implementation of query method of unbound_resolver_tReto Guadagnini2013-02-192-7/+64
|
* unbound: Implemented resolver_response_t as unbound_response_tReto Guadagnini2013-02-193-1/+316
|
* Implemented rr_set_t interfaceReto Guadagnini2013-02-193-1/+113
|
* unbound: Implemented rr_t as unbound_rr_tReto Guadagnini2013-02-193-1/+215
|
* Added unbound plugin implementing the resolver interface using libunboundReto Guadagnini2013-02-196-0/+234
|
* Added manager for DNS resolversReto Guadagnini2013-02-195-1/+181
|
* Added interface for DNS resolversReto Guadagnini2013-02-196-0/+548
|
* Add a global return_success() method implementationMartin Willi2013-02-142-0/+13
|
* Add a convenience method to check pen_type_t for vendor and typeMartin Willi2013-02-141-0/+14
|
* Add a comparison function for pen_type_tMartin Willi2013-02-141-0/+12
|
* Whitespace and comment cleanups in pen.[ch]Martin Willi2013-02-142-20/+28
|
* Merge branch 'ike-dscp'Martin Willi2013-02-143-2/+35
|\
| * Add a DSCP value with getter/setter on packet_tMartin Willi2013-02-062-0/+33
| |
| * Set sockaddr family on ifreq instead of casted familiy specific sockaddrMartin Willi2013-02-061-2/+2
| | | | | | | | Fixes a strict-aliasing rule compiler warning with older gcc.
* | Merge branch 'pt-tls'Martin Willi2013-02-143-1/+37
|\ \
| * | Add a bio_reader_t constructor variant freeing passed data during destructionMartin Willi2013-01-152-1/+32
| | |
| * | Add a chunk_from_str() initializer that does not include 0-terminatorMartin Willi2013-01-151-0/+5
| | |
* | | Use CURL_TIMEOUT and not CURL_CONNECTTIMEOUT for FETCHER_TIMEOUT in curlMartin Willi2013-02-081-5/+12
| | | | | | | | | | | | | | | This allows us to use this timeout beyond DNS resolution. For the initial connect, we use a hardcoded timeout of 10s for now.
* | | time is a time_t pointerAndreas Steffen2013-02-041-1/+1
| | |
* | | print PEN value 0xfffffe as UnassignedAndreas Steffen2013-02-032-15/+17
| | |
* | | openssl: Properly honor OPENSSL_NO_* definesTobias Brunner2013-01-317-5/+31
| | |
* | | Fix Doxygen comment for rdrand pluginTobias Brunner2013-01-311-1/+1
| |/ |/|
* | Don't use pointer to a union member in host_create_from_string_and_family()Tobias Brunner2013-01-251-5/+4
| |
* | Properly check MSB in openssl plugin's PKCS#7 implementationTobias Brunner2013-01-241-1/+1
| |
* | g_thread_init() is deprecated since Glib 2.23Tobias Brunner2013-01-241-0/+3
|/
* Reseed rdrand after every 128bit sample onlyMartin Willi2013-01-151-2/+2
|
* Respect given address family when resolving "%any"Martin Willi2013-01-141-1/+5
|
* Android.mk of libstrongswan updatedTobias Brunner2013-01-141-2/+2
|
* Don't use bio_writer_t.skip() to write length field when appending more dataMartin Willi2013-01-111-2/+5
| | | | | If the writer reallocates its buffer, the length pointer might not be valid anymore, or even worse, point to an arbitrary allocation.
* Use raw opcodes for rdrand to build with older binutilsMartin Willi2013-01-111-6/+6
|
* Provide RNG_TRUE quality in rdrand by mixing reseeded outputs using AESMartin Willi2013-01-112-8/+108
|
* Provide RNG_STRONG quality in rdrand by forcing PRNG reseed after every sampleMartin Willi2013-01-112-1/+69
|
* Provide RNG_WEAK quality random generator in rdrandMartin Willi2013-01-114-2/+342
|
* Add a rdrand plugin stub detecting availability of RDRAND instructionsMartin Willi2013-01-114-0/+183
|
* Include opensslconf.h before checking its definesMartin Willi2013-01-031-0/+2
|
* Don't build OpenSSL PKCS#7 code if OPENSSL_NO_CMS definedMartin Willi2013-01-031-0/+4
|
* Fixed some typos, courtesy of codespellTobias Brunner2012-12-203-4/+4
|
* Fix up serialNumber in openssl PKCS#7 if it has a leading MSB setMartin Willi2012-12-191-2/+7
|
* Don't handle PKCS#7 containers with infinite length encodings in pkcs7 pluginMartin Willi2012-12-191-0/+6
|
* Implement PKCS#7 decryption using opensslMartin Willi2012-12-191-16/+255
|
* Make available wrapped certificates while verifying PKCS#7 signatures in opensslMartin Willi2012-12-191-0/+22
|
* Implement openssl PKCS#7 certficiate enumerationMartin Willi2012-12-191-0/+72
|
* Fix doxygen grouping regarding containers and PKCS#7Martin Willi2012-12-198-11/+14
|
* Enable pkcs7 plugin when building scepclient on AndroidMartin Willi2012-12-191-0/+2
|
* Move PKCS#9 attribute lists to pkcs7 plugin, as we currently use it there onlyMartin Willi2012-12-195-44/+48
|
* Implement get_attribute() in openssl PKCS#7 backendMartin Willi2012-12-191-1/+35
|
* Allocate data returned by pkcs7_t.get_attribute()Martin Willi2012-12-192-2/+5
|
* Implement OpenSSL PKCS#7 signed-data parsing and verificationMartin Willi2012-12-191-4/+287
|