aboutsummaryrefslogtreecommitdiffstats
path: root/src/pluto
Commit message (Collapse)AuthorAgeFilesLines
* Fixing out-of-tree build after adding dependency to config.status.Tobias Brunner2010-04-291-1/+1
|
* Users of PLUGINS depend on config.status, rebuilding them if plugin ↵Martin Willi2010-04-291-0/+2
| | | | configuration is updated
* do not destroy whack_attr if it hasn't been initializedAndreas Steffen2010-04-291-5/+10
|
* added debug output argumentAndreas Steffen2010-04-281-1/+1
|
* added AES_GMAC output stringAndreas Steffen2010-04-271-1/+1
|
* fixed segfault in pluto with multiple ISAKMP SAs in delete payloadHeiko Hund2010-04-201-2/+20
|
* Added support for DH groups 22, 23 and 24, patch contributed by Joy LattenMartin Willi2010-04-192-1/+34
|
* implemented inheritance of virtual IP assigned by Mode Config on the ↵Andreas Steffen2010-04-112-1/+17
| | | | responder side
* show in-memory pools in ipsec statusallAndreas Steffen2010-04-113-1/+36
|
* added missing curly bracketsAndreas Steffen2010-04-111-1/+37
|
* support in-memory pools in swapped connection definitionsAndreas Steffen2010-04-112-19/+19
|
* Explicitly unload plugins before deinitializing libhydra and libstrongswan ↵Tobias Brunner2010-04-061-0/+1
| | | | in pluto.
* Replaced some DBG_LIB with more specific groups.Tobias Brunner2010-04-061-1/+1
|
* Adding DBG_LIB to all calls of libstrongswan's version of DBG*.Tobias Brunner2010-04-065-65/+67
|
* Adding support for debug groups in libstrongswan's logger.Tobias Brunner2010-04-061-1/+1
|
* Manually loading the pluto.(n)dns* settings is not needed anymore.Tobias Brunner2010-04-061-53/+1
|
* Store the name of the daemon that initialized libhydra to load ↵Tobias Brunner2010-04-061-1/+1
| | | | daemon-specific settings.
* Added options to whack to query in-memory leases.Tobias Brunner2010-04-061-0/+8
|
* Added function to list the leases of the in-memory pools.Tobias Brunner2010-04-062-0/+89
|
* Delete the in-memory IP address pools if a connection gets deleted.Tobias Brunner2010-04-062-0/+8
| | | | This fixes ipsec reload.
* Use whack_attribute in pluto to provide in-memory IP address pools.Tobias Brunner2010-04-063-7/+23
| | | | | The pools are configured by setting rightsourceip in ipsec.conf to a network in CIDR notation.
* Adding a whack_attribute class which manages in-memory pools in pluto and is ↵Tobias Brunner2010-04-063-0/+347
| | | | very similar to stroke_attribute.
* fixed pluto crash caused by expired leftcert and rightca=%sameAndreas Steffen2010-03-291-2/+2
|
* Changed all usages of lib->attributes to hydra->attributes.Tobias Brunner2010-03-242-17/+19
|
* Init/deinit libhydra in charon and pluto.Tobias Brunner2010-03-242-2/+12
|
* Link pluto and charon to libhydra, fixes monolithic build.Tobias Brunner2010-03-241-0/+2
|
* Fixing a compiler warning when building with -Wextra.Tobias Brunner2010-03-161-1/+1
|
* Fixed a bug in pluto's x509 handling.Tobias Brunner2010-03-121-2/+2
| | | | | This bug would have lead to a segmentation fault, if no public key could have been extracted from a certificate.
* deleted old strongSwan VIDsAndreas Steffen2010-03-122-86/+15
|
* recognize strongSwan VIDAndreas Steffen2010-03-071-47/+53
|
* Remove the invalid cast in time() parameter, as reported by Marius Tomaschewski.Martin Willi2010-03-041-1/+1
|
* Detect windows hosts to add specific workarounds.Tobias Brunner2010-02-122-0/+7
|
* Adding support for AES GMAC (RFC4543).Tobias Brunner2010-02-128-9/+22
|
* Increased the buffer for netlink responses.Tobias Brunner2010-02-051-0/+1
| | | | | | | | If an error occurs while manipulating policies in the kernel, the original netlink request gets attached to the response. Prior to Linux 2.6.32 the size in the netlink header of the response was wrong.
* init_fetch() changed to fetch_initialize()Andreas Steffen2010-02-051-1/+1
|
* renamed init_fetch() to fetch_initialize()Andreas Steffen2010-02-022-2/+2
|
* Join pluto's fetching thread instead of detaching it in order to avoid that ↵Tobias Brunner2010-02-023-6/+26
| | | | the leak-detective reports a memleak.
* warn if loaded local certificate is invalidAndreas Steffen2010-02-011-3/+5
|
* pluto and charon are using the same strongSwan Vendor IDAndreas Steffen2010-01-111-1/+1
|
* Pluto's fetcher thread is now created via libstrongswan.Tobias Brunner2009-12-261-4/+11
|
* Check if libpthread is required or not.Tobias Brunner2009-12-231-1/+1
|
* IKEv1 daemon supports DNS and NBNS server assignment from databaseAndreas Steffen2009-12-161-18/+85
|
* add IKEv1 support for the Camellia cipherAndreas Steffen2009-12-151-0/+21
|
* fixed IKEv1 support of HMAC_SHA2_256_96Andreas Steffen2009-12-093-23/+22
|
* IKEv1 support of ESP SHA2_HMAC with correct truncationAndreas Steffen2009-12-099-111/+158
|
* changed error messages in the case of faulty esp and ike stringsAndreas Steffen2009-11-241-8/+6
|
* do not send all available kernel algorithms if esp string is faultyAndreas Steffen2009-11-241-28/+0
|
* check if alg_info_esp existsElmar Vonlanthen2009-11-241-1/+1
|
* added some parenthesesAndreas Steffen2009-11-241-0/+16
|
* issue error message for expired certificates in OCSP trust chain checkingAndreas Steffen2009-11-241-1/+5
|