aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
...
* Use certificate subject to get a public key of the TLS serverMartin Willi2010-08-051-7/+11
|
* Some Doxygen fixes.Tobias Brunner2010-08-053-2/+3
|
* added some more TLS debug outputAndreas Steffen2010-08-052-9/+29
|
* fixed type in cipher suite list buildAndreas Steffen2010-08-051-1/+1
|
* log selected TLS version and cipher suiteAndreas Steffen2010-08-053-38/+441
|
* log TLS handshake messages in debug level 2Andreas Steffen2010-08-041-0/+4
|
* Fixed loading of secrets with IDs.Tobias Brunner2010-08-041-1/+1
| | | | | Since the ID string is manually terminated by a null character, write permission is required for the mmapped ipsec.secrets.
* Fixed loading of private keys without password.Tobias Brunner2010-08-041-1/+1
| | | | | The chunk storing the password was not correctly initialized, resulting in a segmentation fault when no password was specified in ipsec.secrets.
* Accept EAP_ONLY_AUTHENTICATION notifies from any client, now that IANA ↵Tobias Brunner2010-08-041-3/+2
| | | | allocated an ID.
* IKEv2 notification types updated.Tobias Brunner2010-08-042-27/+34
|
* Reimplemented mem pool to support multiple leases for a single identityMartin Willi2010-08-041-129/+172
|
* Save/Load state of PKCS#11 hasherMartin Willi2010-08-041-47/+100
|
* Do initial slot enumeration manuallyMartin Willi2010-08-042-7/+23
|
* Implemented hasher_t using PKCS#11Martin Willi2010-08-044-0/+336
|
* Defer certificate loading until all PKCS#11 modules are loadedMartin Willi2010-08-041-3/+8
|
* Destroy IKE_SA Managers crypto primitives during flush, the plugins are gone ↵Martin Willi2010-08-042-2/+5
| | | | in destroy
* Provide a public PKCS#11 mechanism enumeratorMartin Willi2010-08-043-44/+117
|
* Added PKCS#11 private key support to the pki toolMartin Willi2010-08-044-22/+81
|
* The pki tool uses a callback credential set to read in passphrase/PINMartin Willi2010-08-041-0/+67
|
* Pass type of requested key in the callback credential setMartin Willi2010-08-044-4/+25
|
* Support PKCS#11 keys requiring reauthentication for each operationMartin Willi2010-08-041-11/+64
|
* Do not try to log in if we already have a user sessionMartin Willi2010-08-041-0/+13
|
* Obseleted BUILD_PASSPHRASE(_CALLBACK) for private key loading, use ↵Martin Willi2010-08-0411-228/+301
| | | | credential sets
* Use a dedicated build part for challenge passwords, BUILD_PASSPHRASE gets ↵Martin Willi2010-08-045-3/+6
| | | | obsolete
* Use credential sets to load smartcard keysMartin Willi2010-08-043-52/+150
|
* Handle PIN: as a magic keyword for prompt, use getpass() to silently read ↵Martin Willi2010-08-042-9/+22
| | | | credentials
* Implemented a callback based credential set, currently for shared keys onlyMartin Willi2010-08-046-98/+268
|
* Implemented a generic in-memory credential set, currently for shared keys onlyMartin Willi2010-08-044-0/+285
|
* mmap() ipsec.secrets instead malloc(), proper error checkingMartin Willi2010-08-041-18/+30
|
* Splitted up the load_secrets() functionMartin Willi2010-08-041-263/+301
|
* Updated ipsec.secrets.5 regarding IKEv2 smartcard supportMartin Willi2010-08-041-5/+7
|
* %prompt support for smartcard PIN via "ipsec secrets"Martin Willi2010-08-041-28/+95
|
* Implemented callback PIN invocation for PKCS#11 loginMartin Willi2010-08-041-8/+47
|
* Implemented keyid discovery on all modules/slotsMartin Willi2010-08-041-7/+80
|
* Pass the PKCS11 keyid as chunk, not as stringMartin Willi2010-08-044-21/+25
|
* Reuse generic passphrase build part, not a dedicated PIN partMartin Willi2010-08-045-22/+18
|
* Implemented private key on top of a PKCS#11 tokenMartin Willi2010-08-044-0/+427
|
* Extended the PKCS#11 object enumerator by attribute retrievalMartin Willi2010-08-043-69/+111
|
* Use the PKCS#11 object enumeratorMartin Willi2010-08-041-25/+6
|
* Implemented a generic PKCS#11 object enumeratorMartin Willi2010-08-042-1/+78
|
* Unload plugins in reverse orderMartin Willi2010-08-041-3/+3
|
* Support module names in %smartcard specifier, streamlined smartcard buildingMartin Willi2010-08-045-26/+95
|
* Added enumerator for PKCS#11 tokensMartin Willi2010-08-043-15/+140
|
* Handle NOT_SUPPORT return value from WaitForSlotMartin Willi2010-08-041-1/+1
|
* Reenabled dlcloseMartin Willi2010-08-041-1/+1
|
* Implemented a credential set on top of a PKCS#11 tokenMartin Willi2010-08-045-1/+420
|
* Added NSPR PR_CallOnce to leak detective whitelistMartin Willi2010-08-041-0/+2
|
* Added buffer checking variants of syslog functions to leak detectiveMartin Willi2010-08-041-0/+2
|
* Added a token add/remove callback function to the managerMartin Willi2010-08-043-3/+45
|
* Enumerate tokens and their mechanisms, wait for slot eventsMartin Willi2010-08-041-9/+222
|