index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
Commit message (
Collapse
)
Author
Age
Files
Lines
...
*
Use certificate subject to get a public key of the TLS server
Martin Willi
2010-08-05
1
-7
/
+11
|
*
Some Doxygen fixes.
Tobias Brunner
2010-08-05
3
-2
/
+3
|
*
added some more TLS debug output
Andreas Steffen
2010-08-05
2
-9
/
+29
|
*
fixed type in cipher suite list build
Andreas Steffen
2010-08-05
1
-1
/
+1
|
*
log selected TLS version and cipher suite
Andreas Steffen
2010-08-05
3
-38
/
+441
|
*
log TLS handshake messages in debug level 2
Andreas Steffen
2010-08-04
1
-0
/
+4
|
*
Fixed loading of secrets with IDs.
Tobias Brunner
2010-08-04
1
-1
/
+1
|
|
|
|
|
Since the ID string is manually terminated by a null character, write permission is required for the mmapped ipsec.secrets.
*
Fixed loading of private keys without password.
Tobias Brunner
2010-08-04
1
-1
/
+1
|
|
|
|
|
The chunk storing the password was not correctly initialized, resulting in a segmentation fault when no password was specified in ipsec.secrets.
*
Accept EAP_ONLY_AUTHENTICATION notifies from any client, now that IANA ↵
Tobias Brunner
2010-08-04
1
-3
/
+2
|
|
|
|
allocated an ID.
*
IKEv2 notification types updated.
Tobias Brunner
2010-08-04
2
-27
/
+34
|
*
Reimplemented mem pool to support multiple leases for a single identity
Martin Willi
2010-08-04
1
-129
/
+172
|
*
Save/Load state of PKCS#11 hasher
Martin Willi
2010-08-04
1
-47
/
+100
|
*
Do initial slot enumeration manually
Martin Willi
2010-08-04
2
-7
/
+23
|
*
Implemented hasher_t using PKCS#11
Martin Willi
2010-08-04
4
-0
/
+336
|
*
Defer certificate loading until all PKCS#11 modules are loaded
Martin Willi
2010-08-04
1
-3
/
+8
|
*
Destroy IKE_SA Managers crypto primitives during flush, the plugins are gone ↵
Martin Willi
2010-08-04
2
-2
/
+5
|
|
|
|
in destroy
*
Provide a public PKCS#11 mechanism enumerator
Martin Willi
2010-08-04
3
-44
/
+117
|
*
Added PKCS#11 private key support to the pki tool
Martin Willi
2010-08-04
4
-22
/
+81
|
*
The pki tool uses a callback credential set to read in passphrase/PIN
Martin Willi
2010-08-04
1
-0
/
+67
|
*
Pass type of requested key in the callback credential set
Martin Willi
2010-08-04
4
-4
/
+25
|
*
Support PKCS#11 keys requiring reauthentication for each operation
Martin Willi
2010-08-04
1
-11
/
+64
|
*
Do not try to log in if we already have a user session
Martin Willi
2010-08-04
1
-0
/
+13
|
*
Obseleted BUILD_PASSPHRASE(_CALLBACK) for private key loading, use ↵
Martin Willi
2010-08-04
11
-228
/
+301
|
|
|
|
credential sets
*
Use a dedicated build part for challenge passwords, BUILD_PASSPHRASE gets ↵
Martin Willi
2010-08-04
5
-3
/
+6
|
|
|
|
obsolete
*
Use credential sets to load smartcard keys
Martin Willi
2010-08-04
3
-52
/
+150
|
*
Handle PIN: as a magic keyword for prompt, use getpass() to silently read ↵
Martin Willi
2010-08-04
2
-9
/
+22
|
|
|
|
credentials
*
Implemented a callback based credential set, currently for shared keys only
Martin Willi
2010-08-04
6
-98
/
+268
|
*
Implemented a generic in-memory credential set, currently for shared keys only
Martin Willi
2010-08-04
4
-0
/
+285
|
*
mmap() ipsec.secrets instead malloc(), proper error checking
Martin Willi
2010-08-04
1
-18
/
+30
|
*
Splitted up the load_secrets() function
Martin Willi
2010-08-04
1
-263
/
+301
|
*
Updated ipsec.secrets.5 regarding IKEv2 smartcard support
Martin Willi
2010-08-04
1
-5
/
+7
|
*
%prompt support for smartcard PIN via "ipsec secrets"
Martin Willi
2010-08-04
1
-28
/
+95
|
*
Implemented callback PIN invocation for PKCS#11 login
Martin Willi
2010-08-04
1
-8
/
+47
|
*
Implemented keyid discovery on all modules/slots
Martin Willi
2010-08-04
1
-7
/
+80
|
*
Pass the PKCS11 keyid as chunk, not as string
Martin Willi
2010-08-04
4
-21
/
+25
|
*
Reuse generic passphrase build part, not a dedicated PIN part
Martin Willi
2010-08-04
5
-22
/
+18
|
*
Implemented private key on top of a PKCS#11 token
Martin Willi
2010-08-04
4
-0
/
+427
|
*
Extended the PKCS#11 object enumerator by attribute retrieval
Martin Willi
2010-08-04
3
-69
/
+111
|
*
Use the PKCS#11 object enumerator
Martin Willi
2010-08-04
1
-25
/
+6
|
*
Implemented a generic PKCS#11 object enumerator
Martin Willi
2010-08-04
2
-1
/
+78
|
*
Unload plugins in reverse order
Martin Willi
2010-08-04
1
-3
/
+3
|
*
Support module names in %smartcard specifier, streamlined smartcard building
Martin Willi
2010-08-04
5
-26
/
+95
|
*
Added enumerator for PKCS#11 tokens
Martin Willi
2010-08-04
3
-15
/
+140
|
*
Handle NOT_SUPPORT return value from WaitForSlot
Martin Willi
2010-08-04
1
-1
/
+1
|
*
Reenabled dlclose
Martin Willi
2010-08-04
1
-1
/
+1
|
*
Implemented a credential set on top of a PKCS#11 token
Martin Willi
2010-08-04
5
-1
/
+420
|
*
Added NSPR PR_CallOnce to leak detective whitelist
Martin Willi
2010-08-04
1
-0
/
+2
|
*
Added buffer checking variants of syslog functions to leak detective
Martin Willi
2010-08-04
1
-0
/
+2
|
*
Added a token add/remove callback function to the manager
Martin Willi
2010-08-04
3
-3
/
+45
|
*
Enumerate tokens and their mechanisms, wait for slot events
Martin Willi
2010-08-04
1
-9
/
+222
|
[prev]
[next]