aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
...
* Do not install invalid 0.0.0.0 DNS serversMartin Willi2009-12-011-9/+14
|
* Prefer EAP-Identity for provider attribute/address lookupMartin Willi2009-12-011-4/+37
|
* Save EAP-Identity on auth configMartin Willi2009-12-011-3/+26
|
* Store completed authentication rounds permanently on IKE_SA, with flush optionMartin Willi2009-12-016-50/+110
|
* Removed obsolete and unused [gs]et_eap_identity() methodsMartin Willi2009-11-302-42/+0
|
* Do not propose transport mode as initiator if connection is NATedMartin Willi2009-11-301-0/+6
|
* Verify EAP-SIM/AKA AT_MAC before processing any attributesMartin Willi2009-11-304-36/+24
|
* SIM/AKA/Request/Reauthentication AT_MAC does not include NONCE_S, only the ↵Martin Willi2009-11-304-6/+4
| | | | response
* Invoke attribute/key hooks from libsimakaMartin Willi2009-11-302-5/+13
|
* Extended SIM manager by hooks, currently featuring attribute and key hooksMartin Willi2009-11-302-1/+134
|
* Added a get_sa() method to the bus, allowing a thread to lookup its IKE_SAMartin Willi2009-11-302-0/+19
|
* Handle NOT_SUPPORTED or other errors properly in get_quintupletMartin Willi2009-11-301-4/+10
|
* Use transport mode ESP SA if IPcomp is used, IPcomp already applies outer IP ↵Martin Willi2009-11-261-3/+11
| | | | header
* Use full algorithm name for SHA384/512 HMACsMartin Willi2009-11-261-2/+2
|
* Support the Linux specific SHA256 96 bit truncation HMAC via "sha256_96" keywordMartin Willi2009-11-265-5/+11
|
* Install SHA256_128 auth algorithm with specified 128 bit truncationMartin Willi2009-11-261-1/+25
|
* Updated XFRM linux header, includes specified truncations for auth algosMartin Willi2009-11-261-1/+9
|
* Added support for IPv6 source route installationMartin Willi2009-11-262-17/+44
|
* Check existing path in mobike probing only if we still have a routeMartin Willi2009-11-262-8/+6
|
* put identities in single quotesAndreas Steffen2009-11-251-2/+2
|
* added more debugging in configuration attribute handlingAndreas Steffen2009-11-241-0/+4
|
* changed error messages in the case of faulty esp and ike stringsAndreas Steffen2009-11-241-8/+6
|
* do not send all available kernel algorithms if esp string is faultyAndreas Steffen2009-11-241-28/+0
|
* check if alg_info_esp existsElmar Vonlanthen2009-11-241-1/+1
|
* added some parenthesesAndreas Steffen2009-11-241-0/+16
|
* allow ECP DH groups in pfsgroup definitionAndreas Steffen2009-11-241-0/+5
|
* issue error message for expired certificates in OCSP trust chain checkingAndreas Steffen2009-11-241-1/+5
|
* updated IKEv2 notification messages assigned by IANAAndreas Steffen2009-11-242-12/+48
|
* Do not recreate existing create_child subtask when retrying with different ↵Martin Willi2009-11-231-2/+5
| | | | DH group
* Avoid potentially unaligned half-word readMartin Willi2009-11-231-5/+8
|
* Correctly set host number to zero when computing traffic selector rangeEric Mertens2009-11-231-0/+1
|
* Use abort() instead of raising SIGKILL, gives us proper core dumps if enabledMartin Willi2009-11-201-1/+1
|
* Use status_t return value for get_quintuplet() dummy implementationsMartin Willi2009-11-203-3/+3
|
* Message stringification supports more detailed EAP payload informationMartin Willi2009-11-183-0/+65
|
* Correctly enumerate attributes to request as initiator with the actually ↵Martin Willi2009-11-171-12/+61
| | | | requesting handler
* Fixed memleak in attribute handlingMartin Willi2009-11-171-0/+1
|
* attr plugin supports any custom attribute type having a v4/v6 IP under the ↵Martin Willi2009-11-171-4/+82
| | | | charon.plugins.attr namespace
* Support enumeration of key/value pairs in a section of strongswan.confMartin Willi2009-11-172-0/+45
|
* Whitelist register_printf_specifier in leak detectiveMartin Willi2009-11-171-0/+1
|
* Give plugins more control of which configuration attributes to request, and ↵Martin Willi2009-11-1716-302/+503
| | | | pass received attributes back to the requesting handler
* Encrypt payloads with missing rule, fix insertion of non-encrypted payloadsMartin Willi2009-11-121-30/+23
|
* Build libsimaka with libtool, as we require a PIC-enabled versionMartin Willi2009-11-123-5/+4
|
* Fix word alignement in memxor() on 64-bit architecturesMartin Willi2009-11-121-1/+1
|
* Do not complain about missing payload order rules for private use payloadsMartin Willi2009-11-121-4/+8
|
* Properly initialize attribute encoding/length valuesMartin Willi2009-11-121-0/+2
|
* Identation/whitespace cleanupsMartin Willi2009-11-121-60/+86
|
* Simplified vendor ID payload interfaceMartin Willi2009-11-122-85/+43
|
* Invoke message hook before generation, allowing plugins to mangle itMartin Willi2009-11-121-3/+2
|
* Prefer MODP2048/1536 over ECP Diffie-Hellman groupsMartin Willi2009-11-121-11/+9
|
* Use register_printf_specifier instead of deprecated ↵Martin Willi2009-11-122-5/+17
| | | | register_printf_function, if available