aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Collapse)AuthorAgeFilesLines
...
* | | Use IP address as ID as responder if not configured or no IDr received.Tobias Brunner2012-04-161-3/+11
| | |
* | | Fall back on IP address as IDi if none is configured at all.Tobias Brunner2012-04-161-7/+7
| | |
* | | Use auth_cfg_t.replace_value where appropriate.Tobias Brunner2012-04-162-26/+5
| | |
* | | Added a simple method to replace the value of a rule in auth_cfg_t.Tobias Brunner2012-04-162-32/+74
| | |
* | | Fixed IDi in case neither left nor leftid is configured.Tobias Brunner2012-04-161-0/+21
| | |
* | | fixed parsing of port ranges in Scanner IMVAndreas Steffen2012-04-151-4/+4
| | |
* | | Don't invoke child_updown hook twice as responderMartin Willi2012-04-111-3/+8
| | |
* | | Accept zero-length certificate request payloadsMartin Willi2012-04-111-2/+1
| | |
* | | Properly initialize src in ike_sa_t.is_any_path_valid().Tobias Brunner2012-04-061-1/+1
| | |
* | | checksum need a libradius_init() symbolAndreas Steffen2012-04-052-0/+13
| | |
* | | remove leading zero in ASN.1 encoded serial numbersAndreas Steffen2012-04-056-12/+14
| | |
* | | ASN.1 two's complement encoding prevents overflow in CRL serial numberAndreas Steffen2012-04-041-10/+18
| | |
* | | Make AES-CMAC actually usable for IKEv2.Tobias Brunner2012-04-042-0/+6
| | |
* | | represent 0 as a single byteAndreas Steffen2012-04-031-5/+1
| | |
* | | moved chunk_skip_zero to chunk.hAndreas Steffen2012-04-033-19/+21
| | |
* | | added IKEv2 Generic Secure Password Authentication MethodAndreas Steffen2012-04-032-3/+10
| | |
* | | added IKEv2 Generic Secure Password Authentication MethodAndreas Steffen2012-04-032-6/+17
| | |
* | | added GSPM IKEv2 payloadAndreas Steffen2012-04-032-8/+20
| | |
* | | fixed typoAndreas Steffen2012-04-031-2/+2
| | |
* | | Doxygen fixes.Tobias Brunner2012-04-032-2/+2
| | |
* | | Added test vectors for AES-CMAC.Tobias Brunner2012-04-033-0/+153
| | |
* | | Implemented AES-CMAC based PRF and signer.Tobias Brunner2012-04-0310-0/+922
| | | | | | | | | | | | | | | | | | The cmac plugin implements AES-CMAC as defined in RFC 4493 and the signer and PRF based on it as defined in RFC 4494 and RFC 4615, respectively.
* | | Fixed GNU license header in hmac and xcbc plugins.Tobias Brunner2012-04-032-4/+4
| | |
* | | Add support for dnQualifier in DNs.Tobias Brunner2012-03-293-1/+6
| | |
* | | remove leading zeros in ASN.1 encoded serial numbersAndreas Steffen2012-03-271-2/+22
| | |
* | | Make resolvconf interface prefix configurable.Tobias Brunner2012-03-271-2/+10
| | |
* | | Added support for the resolvconf framework in resolve plugin.Tobias Brunner2012-03-271-52/+149
| | | | | | | | | | | | | | | If /sbin/resolvconf is found nameservers are not written directly to /etc/resolv.conf but instead resolvconf is invoked.
* | | Don't cast second argument of mem_printf_hook (%b) to size_t.Tobias Brunner2012-03-279-19/+25
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Also treat the given number as unsigned int. Due to the printf hook registration the second argument of mem_printf_hook (if called via printf etc.) is always of type int*. Casting this to a size_t pointer and then dereferencing that as int does not work on big endian machines if int is smaller than size_t (e.g. on ppc64). In order to make this change work if the argument is of a type larger than int, size_t for instance, the second argument for %b has to be casted to (u_)int.
* | | smp: Use proper signed type to get return value of read(2).Tobias Brunner2012-03-271-1/+1
| | |
* | | pluto: Use time_monotonic() instead of a custom implementation.Tobias Brunner2012-03-271-12/+1
| | |
* | | Don't include individual glib headers in nm plugin.Tobias Brunner2012-03-261-1/+1
| | | | | | | | | | | | | | | Expections are glib/gi18n.h, glib/gi18n-lib.h, glib/gprintf.h and glib/gstdio.h.
* | | fixed parsing of IF-MAP SOAP responsesAndreas Steffen2012-03-211-35/+30
|/ /
* | added the strongswan.conf options of the tnc-pdp pluginAndreas Steffen2012-03-161-1/+1
| |
* | eliminate unneeded private variableAndreas Steffen2012-03-141-3/+3
| |
* | use MAX_RADIUS_ATTRIBUTE_SIZE constant from radius_message header fileAndreas Steffen2012-03-142-4/+3
| |
* | make the mppe salt uniqueAndreas Steffen2012-03-141-8/+18
| |
* | straightene radius_mppe header fileAndreas Steffen2012-03-141-9/+4
| |
* | implemented MS_MPPE encryptionAndreas Steffen2012-03-134-35/+148
| |
* | use predefined Microsoft PENAndreas Steffen2012-03-131-6/+2
| |
* | use MAX_RADIUS_ATTRIBUTE_SIZE constantAndreas Steffen2012-03-131-1/+1
| |
* | use RADIUS_TUNNEL_TYPE_ESP defined in header fileAndreas Steffen2012-03-131-3/+1
| |
* | implemented RADIUS Filter-ID attributeAndreas Steffen2012-03-134-24/+89
| |
* | removed double library entryAndreas Steffen2012-03-131-2/+0
| |
* | adapted debug outputAndreas Steffen2012-03-131-1/+1
| |
* | keep a list of RADIUS connections with EAP method statesAndreas Steffen2012-03-134-12/+320
| |
* | apply maximum RADIUS attribute size to outbound EAP messagesAndreas Steffen2012-03-131-0/+9
| |
* | read PDP server name from strongswan.confAndreas Steffen2012-03-131-7/+29
| |
* | define MAX_RADIUS_ATTRIBUTE_SIZEAndreas Steffen2012-03-132-4/+7
| |
* | define peer and server identitiesAndreas Steffen2012-03-131-2/+9
| |
* | added EAP_SUCCESS/FAILURE message to RADIUS Accept/RejectAndreas Steffen2012-03-131-2/+7
| |