aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
...
* Do not include files from libcharon in libhydra.Tobias Brunner2010-09-022-4/+2
|
* Move callback_job_t to libhydra.Tobias Brunner2010-09-026-3/+3
|
* Fixing Doxygen groups after moving processor.Tobias Brunner2010-09-0221-25/+25
|
* Refer to processor via hydra and not charon.Tobias Brunner2010-09-0234-71/+101
|
* Move processor_t (thread-pool) to libhydra.Tobias Brunner2010-09-0211-21/+23
|
* Support different hash/sig algorithms in handshake signing, including ECDSAMartin Willi2010-09-024-41/+268
|
* Added TLS ClientCertificateType identifiersMartin Willi2010-09-022-0/+40
|
* Added TLS specific Hash and Signature Algorithm identifiersMartin Willi2010-09-022-0/+50
|
* Fixed typos in tls_writer method descriptionsMartin Willi2010-09-021-2/+2
|
* Respect key types in stroke key/certificate backendMartin Willi2010-09-021-15/+24
|
* Added an enumerator for registered credential buildersMartin Willi2010-09-022-0/+32
|
* Migrated credential_factory to INIT/METHOD macrosMartin Willi2010-09-021-30/+22
|
* cosmetics in debug outputAndreas Steffen2010-09-011-2/+3
|
* increase number of message due to large certificate payloadsAndreas Steffen2010-09-011-1/+1
|
* clarified debug outputAndreas Steffen2010-08-311-1/+1
|
* fixed typoAndreas Steffen2010-08-311-1/+1
|
* Do not process any more TLS handshake messages on fatal alertsMartin Willi2010-08-311-0/+4
|
* Load a left/rightcert2 for EAP-TLS even if no left/rightauth2 is definedMartin Willi2010-08-311-1/+10
|
* Strictly check if the server certificate matches the TLS server identityMartin Willi2010-08-311-0/+44
|
* Use the AAA Identity for EAP authentication, if givenMartin Willi2010-08-312-1/+14
|
* Added support for the ipsec.conf aaa_identity keywordMartin Willi2010-08-319-0/+18
|
* Added an AAA identity authentication config optionMartin Willi2010-08-312-0/+10
|
* Added strongswan.conf options for EAP-TLS/TTLS fragment sizeMartin Willi2010-08-314-14/+30
|
* Support processing of partial TLS record headersMartin Willi2010-08-311-15/+39
|
* Migrated EAP-TTLS to the generic TLS helperMartin Willi2010-08-311-281/+21
|
* Migrated EAP-TLS to the generic TLS helperMartin Willi2010-08-311-272/+19
|
* Implemented a generic TLS EAP helper to implement EAP-TLS, TTLS and other ↵Martin Willi2010-08-313-0/+415
| | | | variants
* Support output fragmentation of TLS recordsMartin Willi2010-08-315-52/+123
|
* Moved EAP type/code definitions to a seprate header file in libstrongswanMartin Willi2010-08-319-179/+228
|
* Implemented buffering of partial records in TLS stackMartin Willi2010-08-311-15/+65
|
* Log TLS handshake subtypes as handshakesMartin Willi2010-08-311-5/+5
|
* Do not strdup() zero length strings in identification_create_from_string()Martin Willi2010-08-311-4/+20
|
* Enable the generation of unencrypted messages (e.g. ME connectivity checks).Tobias Brunner2010-08-301-9/+10
|
* fixed copy-and-paste errorsAndreas Steffen2010-08-302-2/+2
|
* created an eap-tnc method hullAndreas Steffen2010-08-306-0/+363
|
* for the time being assume a single request/response exchange for a given EAP ↵Andreas Steffen2010-08-301-2/+3
| | | | method
* Port floating patch partially reversed.Tobias Brunner2010-08-302-12/+8
| | | | | | If MOBIKE is enabled, we do have to switch to port 4500 with the IKE_AUTH request, that is, before we know whether the other peer actually supports MOBIKE or not.
* Slightly refactored port floating.Tobias Brunner2010-08-305-35/+39
| | | | In case of MOBIKE, only float to port 4500 if the other peer actually supports MOBIKE.
* defined EAP-TNCAndreas Steffen2010-08-302-2/+8
|
* Unwrap crlNumber INTEGER in openssl CRL parsingMartin Willi2010-08-301-4/+13
|
* Added crl support to pki --printMartin Willi2010-08-301-7/+52
|
* Typo in doxygen comment fixed.Tobias Brunner2010-08-301-1/+1
|
* Fixed ME after introduction of AEAD wrapper.Tobias Brunner2010-08-301-1/+1
|
* Fixed pluto smartcard support after introducing encryption schemesMartin Willi2010-08-301-2/+2
|
* Win7 might send up to 7k of certificate requestsAndreas Steffen2010-08-273-3/+3
|
* Fixed documentation of XAUTH in ipsec.secrets.Tobias Brunner2010-08-261-3/+3
|
* Prefer AES/Camellia suites over 3DES/NULL encryptionMartin Willi2010-08-251-16/+16
|
* Send TLS alerts for errors in TLS handshake buildingMartin Willi2010-08-253-0/+12
|
* Refactored fragment building, use correct TLS content type for non-first ↵Martin Willi2010-08-251-67/+82
| | | | fragments
* Update delete_payload length when adding SPIsMartin Willi2010-08-251-0/+1
|