Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | fixed UDP decapsulation by adding inbound bypass policy for send socket | Martin Willi | 2006-07-14 | 1 | -10/+17 |
| | |||||
* | reenabled module tests for charon | Martin Willi | 2006-07-14 | 4 | -25/+27 |
| | |||||
* | fixed bug which erroneously detected KE payload when rekeying | Martin Willi | 2006-07-14 | 1 | -0/+1 |
| | |||||
* | added IPsec bypass policy to receiving socket, allows incoming IKE traffic ↵ | Martin Willi | 2006-07-14 | 1 | -26/+29 |
| | | | | on host2host tunnels when using NAT | ||||
* | improved logging on verify errors for some payloads | Martin Willi | 2006-07-13 | 6 | -73/+59 |
| | | | | | | enforcing IKE_SA shutdown, even when transactions are outstanding proper reject of CREATE_CHILD_SA message with KE payload | ||||
* | fixed CREATE_CHILD_SA transaction dispatching | Martin Willi | 2006-07-13 | 1 | -37/+28 |
| | |||||
* | added CHILD_SA states, which allows us to detect further simultaneous ↵ | Martin Willi | 2006-07-13 | 18 | -132/+239 |
| | | | | | | | transactions reimplemented the buggy message id handling | ||||
* | updated some inline docs | Martin Willi | 2006-07-12 | 4 | -4/+40 |
| | |||||
* | fixed crypter/signer in/out to conform with standard | Martin Willi | 2006-07-12 | 1 | -9/+9 |
| | |||||
* | fixed payload order | Martin Willi | 2006-07-12 | 1 | -5/+4 |
| | |||||
* | added message id logging | Martin Willi | 2006-07-12 | 1 | -2/+4 |
| | |||||
* | added all currently known notify payload types | Martin Willi | 2006-07-12 | 2 | -1/+34 |
| | |||||
* | added policy cache to kernel interface | Martin Willi | 2006-07-12 | 7 | -568/+553 |
| | | | | | | allows refcounting of multiple installed policies finally brings us stable simultaneous rekeying | ||||
* | leak detective blanks memory on free & alloc, allows further membug detection | Martin Willi | 2006-07-12 | 3 | -14/+28 |
| | |||||
* | code cleanups | Martin Willi | 2006-07-12 | 2 | -84/+43 |
| | |||||
* | identification_t.matches() supports multiple wildcard counts | Andreas Steffen | 2006-07-11 | 2 | -31/+19 |
| | |||||
* | identification_t.matches() supports multiple wildcard counts | Andreas Steffen | 2006-07-11 | 2 | -85/+124 |
| | |||||
* | further work done for simultaneous rekeying/delete | Martin Willi | 2006-07-10 | 15 | -229/+312 |
| | | | | | still some cases which cause trouble | ||||
* | fixed compiler warnings in parser when using -O2 | Martin Willi | 2006-07-07 | 1 | -3/+3 |
| | |||||
* | reenabled check_expiry | Martin Willi | 2006-07-07 | 1 | -6/+6 |
| | |||||
* | updated copyright information | Martin Willi | 2006-07-07 | 208 | -218/+421 |
| | |||||
* | reimplemented CHILD_SA rekeying & delete | Martin Willi | 2006-07-07 | 21 | -294/+1582 |
| | | | | | no simultanous transaction with CHILD_SAs yet! | ||||
* | removed NAT_TRAVERSAL and VIRTUAL_IP compile options | Andreas Steffen | 2006-07-07 | 1 | -18/+18 |
| | |||||
* | removed NAT_TRAVERSAL compile option | Andreas Steffen | 2006-07-07 | 8 | -71/+26 |
| | |||||
* | removed NAT_TRAVERSAL and VIRTUAL_IP compile options | Andreas Steffen | 2006-07-07 | 21 | -482/+198 |
| | |||||
* | added support for leftprotoport and rightprotoport | Martin Willi | 2006-07-05 | 6 | -11/+32 |
| | |||||
* | improved CHILD_SA output for "ipsec statusall" | Martin Willi | 2006-07-05 | 1 | -61/+106 |
| | |||||
* | updated whitelist (getprotobynumber) | Martin Willi | 2006-07-05 | 1 | -0/+2 |
| | |||||
* | redesigned IKE_SA using a transaction mechanism: | Martin Willi | 2006-07-05 | 71 | -8081/+4767 |
| | | | | | | | | | | | | removed old state machine reimplemented IKE_SA setup and delete implemented dead peer detection implemented keep-alives a lot of fixes no rekeying yet | ||||
* | fixed compiler warnings | Martin Willi | 2006-07-05 | 8 | -30/+26 |
| | |||||
* | made thread ids unsigned again, to avoid negative thread ids on some systems | Martin Willi | 2006-07-04 | 4 | -4/+4 |
| | |||||
* | fixed memleak when initiating a connection already up | Martin Willi | 2006-07-04 | 1 | -0/+1 |
| | |||||
* | updated leak detective whitelist | Martin Willi | 2006-07-04 | 1 | -5/+6 |
| | |||||
* | applied latest NATT patch with some fixes and cleanups | Martin Willi | 2006-07-04 | 2 | -9/+16 |
| | |||||
* | log entries start with lowcercase character | Andreas Steffen | 2006-07-04 | 2 | -25/+33 |
| | |||||
* | restored lost IKEv2 packet suppression | Andreas Steffen | 2006-07-03 | 1 | -0/+13 |
| | |||||
* | fixed natd_hash memory leak | Andreas Steffen | 2006-07-03 | 1 | -2/+7 |
| | |||||
* | support of cert payloads | Andreas Steffen | 2006-07-03 | 27 | -634/+1082 |
| | |||||
* | lowercase log entries | Andreas Steffen | 2006-07-03 | 1 | -1/+1 |
| | |||||
* | distributed by ITA | Andreas Steffen | 2006-07-03 | 1 | -2/+1 |
| | |||||
* | added support of updown parameter | Andreas Steffen | 2006-07-03 | 1 | -0/+1 |
| | |||||
* | generation of default key | Andreas Steffen | 2006-07-03 | 1 | -0/+23 |
| | |||||
* | cosmetics | Andreas Steffen | 2006-07-03 | 1 | -1/+1 |
| | |||||
* | added support of updown parameter | Andreas Steffen | 2006-07-03 | 1 | -0/+1 |
| | |||||
* | version bump to 4.0.2 | Andreas Steffen | 2006-06-28 | 2 | -1/+7 |
| | |||||
* | added X.509 trust chain verification | Andreas Steffen | 2006-06-27 | 15 | -101/+901 |
| | |||||
* | applied new changes from NATT team | Martin Willi | 2006-06-23 | 20 | -226/+358 |
| | | | | | DPD only done when no IPsec and IKE traffic processed minor changes here and there | ||||
* | some message code cleanups | Martin Willi | 2006-06-23 | 3 | -38/+46 |
| | |||||
* | fixed identification_t clone to apply function pointers | Martin Willi | 2006-06-23 | 1 | -0/+3 |
| | |||||
* | cleaner error handling on UDP encapsultion sockopt failure | Martin Willi | 2006-06-22 | 1 | -8/+7 |
| |