Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | | Order of arguments in Doxygen comment fixed | Tobias Brunner | 2013-02-28 | 2 | -2/+2 | |
| | | | ||||||
* | | | Fix auth_cfg_t.clone() for single-valued auth rules | Tobias Brunner | 2013-02-28 | 1 | -10/+11 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | By using the default list enumerator and adding the rules with the public add() method, clones of auth_cfg_t objects would return the values for single-valued auth rules in the wrong order (i.e. the oldest instead of the newest value was returned). Using the internal enumerator (which the comment already suggested) fixes this, but the clone will not be a full clone as it does not contain any old values for single-valued auth rules. Since these will never be used anyway, this should be fine. | |||||
* | | | Use SIGUSR2 for SIG_CANCEL on Android | Tobias Brunner | 2013-02-26 | 1 | -0/+4 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | SIGRTMIN is defined as 32 while sigset_t is defined as unsigned long (i.e. holds 32 signals). Hence, the signal could never be blocked. Sending the signal still canceled threads, but sometimes in situations where they shouldn't have been canceled (e.g. while holding a lock). Fixes #298. | |||||
* | | | Android.mk updated to latest Makefiles | Tobias Brunner | 2013-02-26 | 1 | -0/+1 | |
| | | | | | | | | | | | | Fixes #300. | |||||
* | | | openssl: Disable PKCS#7/CMS when building against OpenSSL < 0.9.8g | Tobias Brunner | 2013-02-20 | 2 | -1/+5 | |
| | | | | | | | | | | | | Fixes #292. | |||||
* | | | Encode RSA public keys in RFC 3110 DNSKEY format | Andreas Steffen | 2013-02-19 | 6 | -2/+143 | |
| | | | ||||||
* | | | Moved configuration from resolver manager to unbound plugin | Andreas Steffen | 2013-02-19 | 6 | -52/+41 | |
| | | | | | | | | | | | | Also streamlined log messages in unbound plugin. | |||||
* | | | unbound: Implementation of query method of unbound_resolver_t | Reto Guadagnini | 2013-02-19 | 2 | -7/+64 | |
| | | | ||||||
* | | | unbound: Implemented resolver_response_t as unbound_response_t | Reto Guadagnini | 2013-02-19 | 3 | -1/+316 | |
| | | | ||||||
* | | | Implemented rr_set_t interface | Reto Guadagnini | 2013-02-19 | 3 | -1/+113 | |
| | | | ||||||
* | | | unbound: Implemented rr_t as unbound_rr_t | Reto Guadagnini | 2013-02-19 | 3 | -1/+215 | |
| | | | ||||||
* | | | Added unbound plugin implementing the resolver interface using libunbound | Reto Guadagnini | 2013-02-19 | 6 | -0/+234 | |
| | | | ||||||
* | | | Added manager for DNS resolvers | Reto Guadagnini | 2013-02-19 | 5 | -1/+181 | |
| | | | ||||||
* | | | Added interface for DNS resolvers | Reto Guadagnini | 2013-02-19 | 6 | -0/+548 | |
| | | | ||||||
* | | | Add a global return_success() method implementation | Martin Willi | 2013-02-14 | 2 | -0/+13 | |
| | | | ||||||
* | | | Add a convenience method to check pen_type_t for vendor and type | Martin Willi | 2013-02-14 | 1 | -0/+14 | |
| | | | ||||||
* | | | Add a comparison function for pen_type_t | Martin Willi | 2013-02-14 | 1 | -0/+12 | |
| | | | ||||||
* | | | Whitespace and comment cleanups in pen.[ch] | Martin Willi | 2013-02-14 | 2 | -20/+28 | |
| | | | ||||||
* | | | Merge branch 'ike-dscp' | Martin Willi | 2013-02-14 | 3 | -2/+35 | |
|\ \ \ | ||||||
| * | | | Add a DSCP value with getter/setter on packet_t | Martin Willi | 2013-02-06 | 2 | -0/+33 | |
| | | | | ||||||
| * | | | Set sockaddr family on ifreq instead of casted familiy specific sockaddr | Martin Willi | 2013-02-06 | 1 | -2/+2 | |
| |/ / | | | | | | | | | | Fixes a strict-aliasing rule compiler warning with older gcc. | |||||
* | | | Merge branch 'pt-tls' | Martin Willi | 2013-02-14 | 3 | -1/+37 | |
|\ \ \ | ||||||
| * | | | Add a bio_reader_t constructor variant freeing passed data during destruction | Martin Willi | 2013-01-15 | 2 | -1/+32 | |
| | | | | ||||||
| * | | | Add a chunk_from_str() initializer that does not include 0-terminator | Martin Willi | 2013-01-15 | 1 | -0/+5 | |
| | |/ | |/| | ||||||
* | | | Use CURL_TIMEOUT and not CURL_CONNECTTIMEOUT for FETCHER_TIMEOUT in curl | Martin Willi | 2013-02-08 | 1 | -5/+12 | |
| | | | | | | | | | | | | | | | This allows us to use this timeout beyond DNS resolution. For the initial connect, we use a hardcoded timeout of 10s for now. | |||||
* | | | time is a time_t pointer | Andreas Steffen | 2013-02-04 | 1 | -1/+1 | |
| | | | ||||||
* | | | print PEN value 0xfffffe as Unassigned | Andreas Steffen | 2013-02-03 | 2 | -15/+17 | |
| | | | ||||||
* | | | openssl: Properly honor OPENSSL_NO_* defines | Tobias Brunner | 2013-01-31 | 7 | -5/+31 | |
| | | | ||||||
* | | | Fix Doxygen comment for rdrand plugin | Tobias Brunner | 2013-01-31 | 1 | -1/+1 | |
| |/ |/| | ||||||
* | | Don't use pointer to a union member in host_create_from_string_and_family() | Tobias Brunner | 2013-01-25 | 1 | -5/+4 | |
| | | ||||||
* | | Properly check MSB in openssl plugin's PKCS#7 implementation | Tobias Brunner | 2013-01-24 | 1 | -1/+1 | |
| | | ||||||
* | | g_thread_init() is deprecated since Glib 2.23 | Tobias Brunner | 2013-01-24 | 1 | -0/+3 | |
|/ | ||||||
* | Reseed rdrand after every 128bit sample only | Martin Willi | 2013-01-15 | 1 | -2/+2 | |
| | ||||||
* | Respect given address family when resolving "%any" | Martin Willi | 2013-01-14 | 1 | -1/+5 | |
| | ||||||
* | Android.mk of libstrongswan updated | Tobias Brunner | 2013-01-14 | 1 | -2/+2 | |
| | ||||||
* | Don't use bio_writer_t.skip() to write length field when appending more data | Martin Willi | 2013-01-11 | 1 | -2/+5 | |
| | | | | | If the writer reallocates its buffer, the length pointer might not be valid anymore, or even worse, point to an arbitrary allocation. | |||||
* | Use raw opcodes for rdrand to build with older binutils | Martin Willi | 2013-01-11 | 1 | -6/+6 | |
| | ||||||
* | Provide RNG_TRUE quality in rdrand by mixing reseeded outputs using AES | Martin Willi | 2013-01-11 | 2 | -8/+108 | |
| | ||||||
* | Provide RNG_STRONG quality in rdrand by forcing PRNG reseed after every sample | Martin Willi | 2013-01-11 | 2 | -1/+69 | |
| | ||||||
* | Provide RNG_WEAK quality random generator in rdrand | Martin Willi | 2013-01-11 | 4 | -2/+342 | |
| | ||||||
* | Add a rdrand plugin stub detecting availability of RDRAND instructions | Martin Willi | 2013-01-11 | 4 | -0/+183 | |
| | ||||||
* | Include opensslconf.h before checking its defines | Martin Willi | 2013-01-03 | 1 | -0/+2 | |
| | ||||||
* | Don't build OpenSSL PKCS#7 code if OPENSSL_NO_CMS defined | Martin Willi | 2013-01-03 | 1 | -0/+4 | |
| | ||||||
* | Fixed some typos, courtesy of codespell | Tobias Brunner | 2012-12-20 | 3 | -4/+4 | |
| | ||||||
* | Fix up serialNumber in openssl PKCS#7 if it has a leading MSB set | Martin Willi | 2012-12-19 | 1 | -2/+7 | |
| | ||||||
* | Don't handle PKCS#7 containers with infinite length encodings in pkcs7 plugin | Martin Willi | 2012-12-19 | 1 | -0/+6 | |
| | ||||||
* | Implement PKCS#7 decryption using openssl | Martin Willi | 2012-12-19 | 1 | -16/+255 | |
| | ||||||
* | Make available wrapped certificates while verifying PKCS#7 signatures in openssl | Martin Willi | 2012-12-19 | 1 | -0/+22 | |
| | ||||||
* | Implement openssl PKCS#7 certficiate enumeration | Martin Willi | 2012-12-19 | 1 | -0/+72 | |
| | ||||||
* | Fix doxygen grouping regarding containers and PKCS#7 | Martin Willi | 2012-12-19 | 8 | -11/+14 | |
| |