Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | list CA restrictions in ipsec statusall | Andreas Steffen | 2008-08-25 | 1 | -9/+43 | |
| | ||||||
* | added NM gnome plugin to distribution | Martin Willi | 2008-08-25 | 1 | -0/+17 | |
| | ||||||
* | removed generated Makefile.in.in from svn | Martin Willi | 2008-08-25 | 1 | -218/+0 | |
| | ||||||
* | enforce DN of configured gateway certificate | Martin Willi | 2008-08-25 | 2 | -46/+52 | |
| | ||||||
* | new EAP-Identity handling uses ID_EAP in plugins | Martin Willi | 2008-08-25 | 1 | -1/+3 | |
| | ||||||
* | disabled PSK option until we have a way to enforce strong secrets | Martin Willi | 2008-08-25 | 1 | -1/+3 | |
| | ||||||
* | use username part of RFC822 IDs for PAM authentication | Martin Willi | 2008-08-25 | 1 | -3/+9 | |
| | ||||||
* | ported parts of two-sim branch | Martin Willi | 2008-08-22 | 40 | -253/+676 | |
| | | | | | | eap_identity parameter to exchange in eap_identity some auth_info/peer_cfg refactorings fixed some bugs, introduced new ones | |||||
* | run guests with some niceness | Martin Willi | 2008-08-22 | 1 | -0/+1 | |
| | ||||||
* | pool names are unique | Martin Willi | 2008-08-22 | 1 | -5/+1 | |
| | ||||||
* | do not return IPv6 src addresses for IPv4 destinations | Martin Willi | 2008-08-21 | 1 | -2/+4 | |
| | ||||||
* | fixed EAP-GTC secret lookup | Martin Willi | 2008-08-21 | 2 | -8/+22 | |
| | | | | | improved error logging PAM authentication needs CAP_AUDIT_WRITE capability | |||||
* | a (incomplete) implementation of draft-sheffer-ikev2-gtc-00.txt using PAM | Martin Willi | 2008-08-21 | 10 | -6/+489 | |
| | ||||||
* | corrected caption | Andreas Steffen | 2008-08-21 | 1 | -1/+1 | |
| | ||||||
* | charon.process_route = no does not process RTM_NEWROUTE and RTM_DELROUTE ↵ | Andreas Steffen | 2008-08-21 | 1 | -3/+14 | |
| | | | | events. Useful for taking down hundreds of virtual IPs on the same host | |||||
* | added sqlite busy handler: retries on locking conflicts | Martin Willi | 2008-08-21 | 1 | -0/+14 | |
| | ||||||
* | avoid too many alloca()s in netlink send, problematic on MIPS | Martin Willi | 2008-08-21 | 1 | -2/+7 | |
| | ||||||
* | some string fixes | Martin Willi | 2008-08-20 | 2 | -2/+2 | |
| | ||||||
* | added missing tooltip | Martin Willi | 2008-08-20 | 1 | -40/+41 | |
| | ||||||
* | handle DBUS permission problems gracefully | Martin Willi | 2008-08-20 | 2 | -13/+23 | |
| | ||||||
* | fixed shared key lookup by ID | Martin Willi | 2008-08-20 | 5 | -24/+134 | |
| | | | | proper auth method selection | |||||
* | fixed auth-dialog password flush | Martin Willi | 2008-08-20 | 1 | -1/+8 | |
| | ||||||
* | fixed libstrongswan integrity test | Andreas Steffen | 2008-08-19 | 4 | -25/+41 | |
| | ||||||
* | certificate based gateway authentication | Martin Willi | 2008-08-19 | 12 | -19/+477 | |
| | | | | prototype PSK user authentication with auth-dialog | |||||
* | updated nm plugin to NetworkManager API changes | Martin Willi | 2008-08-18 | 2 | -148/+48 | |
| | ||||||
* | roam jobs for routing table changes not fired for virtual IP routes | Martin Willi | 2008-08-18 | 1 | -36/+66 | |
| | ||||||
* | do not fire a roam job when virtual IP is deleted | Andreas Steffen | 2008-08-15 | 1 | -1/+1 | |
| | ||||||
* | temporary workaround to prevent roam jobs due to virtual IP installations | Andreas Steffen | 2008-08-11 | 1 | -1/+2 | |
| | ||||||
* | corrected typo | Andreas Steffen | 2008-08-11 | 1 | -1/+1 | |
| | ||||||
* | * ruby extension extracted from irdumm | Tobias Brunner | 2008-08-07 | 9 | -561/+619 | |
| | | | | * guests do not shutdown anymore on SIGINT in irb | |||||
* | added missing cleanup on failure | Tobias Brunner | 2008-08-06 | 1 | -3/+4 | |
| | ||||||
* | initiator sends contents of rightca= if present as a certificate request ↵ | Andreas Steffen | 2008-08-05 | 1 | -9/+15 | |
| | | | | without searching for further CA certificates | |||||
* | fixed improper TAILQ fix which caused pluto to segfault | Andreas Steffen | 2008-08-03 | 1 | -1/+1 | |
| | ||||||
* | corrected caption | Andreas Steffen | 2008-08-01 | 1 | -1/+1 | |
| | ||||||
* | Redhat/Fedora requires var/lock/subsys/ipsec for runlevel changes | Andreas Steffen | 2008-08-01 | 1 | -0/+6 | |
| | ||||||
* | ipsec starter gives the charon daemon 8s to terminate gracefully before ↵ | Andreas Steffen | 2008-08-01 | 1 | -14/+28 | |
| | | | | killing the process brutally | |||||
* | fixed the close_peerlog() bug causing ipsec pluto --help to segfault | Andreas Steffen | 2008-08-01 | 1 | -2/+2 | |
| | ||||||
* | configuration plugin for NetworkManager | Martin Willi | 2008-07-31 | 13 | -0/+1406 | |
| | ||||||
* | added options for virtual IP, UDP encapsulation, IPComp | Martin Willi | 2008-07-31 | 3 | -13/+36 | |
| | | | | proper handling of libstrongswan/glib TRUE/FALSE conflict | |||||
* | exec on a guest now returns the return value of the executed process | Tobias Brunner | 2008-07-31 | 3 | -67/+144 | |
| | ||||||
* | reimplemented dbus plugin for NetworkManager 0.7, renamed to nm | Martin Willi | 2008-07-31 | 13 | -792/+526 | |
| | ||||||
* | recreating FIFO if it exists | Martin Willi | 2008-07-31 | 1 | -2/+2 | |
| | ||||||
* | fixed usage typo | Martin Willi | 2008-07-31 | 1 | -1/+1 | |
| | ||||||
* | increased stroke socket backlog to 10 | Martin Willi | 2008-07-30 | 1 | -1/+1 | |
| | ||||||
* | using a entry cache for duplicate checks, avoids deadlocks | Martin Willi | 2008-07-30 | 1 | -4/+37 | |
| | ||||||
* | use condvar broadcasts to signal threads waiting for an IP, there might be ↵ | Martin Willi | 2008-07-30 | 1 | -2/+2 | |
| | | | | more than one | |||||
* | the list of addresses on the interface of a guest is not cached anymore, but ↵ | Tobias Brunner | 2008-07-30 | 2 | -32/+36 | |
| | | | | queried directly from the interface | |||||
* | * Guest#exec uses the new exec_str function | Tobias Brunner | 2008-07-30 | 1 | -48/+7 | |
| | | | | * tab completion in irdumm enabled | |||||
* | added an extended exec function to guests that allows to get the output of ↵ | Tobias Brunner | 2008-07-30 | 2 | -9/+115 | |
| | | | | the command as string or by line. | |||||
* | using shared read locks in credential set enumerators to avoid deadlocks | Martin Willi | 2008-07-30 | 5 | -70/+119 | |
| |